• [Day 47] Cisco ISE Mastery Training: Customizing Guest Device Registration Portal

    [Day 47] Cisco ISE Mastery Training: Customizing Guest Device Registration Portal

    Introduction The Guest Device Registration Portal (GDRP) in Cisco ISE lets visitors self-register devices (MAC caching) and receive time-bound internet access—without burdening IT or exposing corporate networks. Customization matters because it directly controls security (device limits, expiries, CAPTCHA/OTP), user experience (branding, languages, fields), and operations […]

  • [Day 46] Cisco ISE Mastery Training: Guest Sponsor Portal Configuration

    [Day 46] Cisco ISE Mastery Training: Guest Sponsor Portal Configuration

    Introduction In enterprise environments, guest network access must be controlled, logged, and approved — without overwhelming the IT helpdesk. The Cisco ISE Guest Sponsor Portal enables authorized staff (sponsors) to create, manage, and approve guest accounts securely through a web-based interface. This approach ensures that […]

  • [Day 45] Cisco ISE Mastery Training: Wireless Guest Access Flow

    [Day 45] Cisco ISE Mastery Training: Wireless Guest Access Flow

    Introduction In modern enterprises, guest Wi-Fi access is no longer just a convenience — it’s an expectation. Whether it’s vendors, customers, contractors, or interview candidates, visitors expect to connect instantly and securely. But here’s the challenge: Cisco ISE’s Wireless Guest Access Flow solves this with […]

  • [Day 44] Cisco ISE Mastery Training: WPA2-Enterprise Configuration

    [Day 44] Cisco ISE Mastery Training: WPA2-Enterprise Configuration

    Introduction WPA2-Enterprise is the gold standard for securing enterprise Wi-Fi networks. Unlike WPA2-PSK (which uses a single shared key), WPA2-Enterprise leverages 802.1X authentication with a RADIUS server to provide per-user authentication, dynamic encryption keys, and granular network access control. In Cisco ISE, WPA2-Enterprise forms the […]

  • [Day 43] Cisco ISE Mastery Training: Wireless MAB Authentication

    [Day 43] Cisco ISE Mastery Training: Wireless MAB Authentication

    Introduction Wireless MAC Authentication Bypass (MAB) is one of the foundational network access control mechanisms in Cisco Identity Services Engine (ISE) — particularly critical in environments where certain wireless devices cannot perform 802.1X authentication (e.g., IoT sensors, IP phones, barcode scanners, printers). Unlike 802.1X, which […]

  • [Day 86] Cisco ISE Mastery Training: REST API Automation Overview

    [Day 86] Cisco ISE Mastery Training: REST API Automation Overview

    Introduction “Today you’ll turn Cisco ISE into an automation platform. We’ll use the ERS (External RESTful Services) API and the MnT (Monitoring) A to do real work: auto-onboard endpoints, push ANC quarantine, read live sessions, and integrate with tools like SecureX/CI/CD. By the end, you’ll […]

  • [Day 85] Cisco ISE Mastery Training: Threat Response Automation with pxGrid

    [Day 85] Cisco ISE Mastery Training: Threat Response Automation with pxGrid

    Introduction “Today we wire real-time threat response: when FMC/FTD, Secure Endpoint (AMP), or Stealthwatch flags a compromised host, ISE auto-quarantines it over the network. We’ll use pxGrid for secure event and identity exchange, and ANC for enforcement (dACL / SGT / VLAN). You’ll leave with […]

  • [Day 84] Cisco ISE Mastery Training: Configuring pxGrid Between ISE & FMC

    [Day 84] Cisco ISE Mastery Training: Configuring pxGrid Between ISE & FMC

    Introduction Cisco Identity Services Engine (ISE) and Firepower Management Center (FMC) form a powerful threat-centric NAC ecosystem when integrated via pxGrid. But here’s the reality: In production, engineers often struggle with cert trust failures, pxGrid client not connecting, SGT not being seen in FMC, or […]

  • [Day 83] – Cisco ISE Mastery Training: pxGrid Overview & Use Cases

    [Day 83] – Cisco ISE Mastery Training: pxGrid Overview & Use Cases

    Introduction What you’ll master today: Building, securing, and validating pxGrid 2.0 so Cisco ISE can publish identity, posture, SGT, profiling, endpoint status, and ANC to your security ecosystem (FMC/FTD, SecureX, Stealthwatch/Secure Network Analytics, AMP/Secure Endpoint, Splunk/SIEM, DNAC, custom apps). You’ll configure end-to-end, prove data flows, […]

  • [Day 90] Cisco ISE Mastery Training: Integrating with SIEM Solutions

    [Day 90] Cisco ISE Mastery Training: Integrating with SIEM Solutions

    Introduction When Cisco ISE is the source of truth for identity, posture, and policy, your SIEM is the source of detection, investigation, and response. This day turns you into the glue: you’ll wire ISE to multiple SIEMs (Splunk, QRadar, Microsoft Sentinel, Elastic, ArcSight) using reliable […]