Cisco ISE Update for Microsoft Security Identifiers
Cisco ISE TME Pavan Gupta explains who needs the patch update for Microsoft SIDs and why. 🕒 Topics: 00:00 Intro and Agenda 01:29 ISE Field Notice FN74227: https://www.cisco.com/c/en/us/support/docs/field-notices/742/fn74227.html 02:00 Slido Poll (no longer available) 05:08 Microsoft Update for Security Identifiers (May 2022): https://support.microsoft.com/en-us/topic/kb5014754-certificate-based-authentication-changes-on-windows-domain-controllers-ad2c23b0-15d8-4340-a468-4d4f3b188f16 06:32 Mapping Security Identifiers 08:34 Security Identifiers Stronger Mapping (When the ISE Update is Required) 09:30 Security Identifiers in Certificates (SAN field) 11:00 Impacted ISE Use Cases and Patches ISE 3.1 P10 or later ISE 3.2 P7 or later ISE 3.3 P4 or later ISE 3.4 P1 or later 14:44 Workaround with Active Directory 16:00 ISE Integration with MDM/UEM: Services and MDM Integrations 18:30 ISE MDM API Versions v2 (MAC Address) and v3 (GUID+MAC) 24:26 ISE MDM API v2 vs v3 Summary Table 25:46 Multi-MDM/UEM Support 26:56 MDM Optimizations: Compliance Cache Expiration and Polling Interval 30:47 ISE Integration with Micorosoft Intune 34:32 Intune Certificate Provisioning and SCEP 36:12 Demo: Intune SCEP Profile Configuration 38:00 Demo: ISE 3.4p1 Cert Based Authentication & Intune Compliance Check 39:39 Demo: ISE Certificate Authentication Profiles 42:07 Demo: ISE Intune Integration 45:08 Demo: MDM Policy Set 46:54 Demo: Intune & SCEP Configuration 52:30 Demo: Intune Endpoint Enrollment 58:02 Demo: ISE CAP with UPN and Device Identifiers 1:00:08 Demo: 802.1X Endpoint Certificate Authentication and MDM Verification Resources: Cisco ISE Software and Patch: cs.co/ise-software ISE + Microsoft: cs.co/ise-berg#microsoft ISE + AD: cs.co/ise-berg#ad ISE + Intune : cs.co/ise-berg#intune ISE Field Notice FN74227: https://www.cisco.com/c/en/us/support/docs/field-notices/742/fn74227.html Microsoft Update for Security Identifiers (May 2022): https://support.microsoft.com/en-us/topic/kb5014754-certificate-based-authentication-changes-on-windows-domain-controllers-ad2c23b0-15d8-4340-a468-4d4f3b188f16
Download
1 formatsVideo Formats
Right-click 'Download' and select 'Save Link As' if the file opens in a new tab.