Chapter 7. Building a Device Security Policy

The Cisco Identity Services Engine takes into account the security of the individual devices when determining the network access control policy to invoke. Chapter 6, “Building a Cisco ISE Network Access Security Policy,” discussed the creation of a network access security policy, part of which took into account the device’s security posture. Device posture assessment is one of two tools that Cisco ISE can use to determine the actual security of a network-connected device. ISE can use the following features to determine the device security policy to implement:

Image Host security posture assessment

Device ...

Get Cisco ISE for BYOD and Secure Unified Access now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.