Техническая Инструкция для Cisco Cisco Identity Services Engine Software

Скачать
Страница из 21
Contents
Introduction
Prerequisites
Requirements
Components Used
Configure
High Level Flow Diagram
Configure Qualys Cloud and Scanner
Step 1. Deploy Qualys Scanner
Step 2. Configure Qualys Scanner
Configure ISE
Step 1. Tune Qualys Cloud Settings for Integration with ISE
Step 2. Enable TC-NAC Services
Step 3. Configure Qualys Adapter Connectivity to ISE VA Framework
Step 4. Configure Authorization Profile to trigger VA Scan
Step 5. Configure Authorization Policies
Verify
Identity Services Engine
Qualys Cloud
Troubleshoot
Debugs on ISE
Typical Issues
References
Introduction
This document describes how to configure Threat-Centric NAC with Qualys on Identity Services
Engine (ISE) 2.1. Threat Centric Network Access Control (TC-NAC) feature enables you to create
authorization policies based on the threat and vulnerability attributes received from the threat and
vulnerability adapters.
Prerequisites
Requirements
Cisco recommends that you have basic knowledge of these topics:
Cisco Identity Service Engine
Qualys ScanGuard
Components Used
The information in this document is based on these software and hardware versions: