NAC integration
Automate Cisco ISE NAC with plain language
Read endpoints, identity groups and authorization policy from Cisco ISE, and drive quarantine or profile changes through the ERS and Open APIs using an ERS admin account.
What you can do
Cisco Identity Services Engine — ERS / Open API
- List endpoints and endpoint identity groups
- Read authorization and policy sets
- Quarantine or reassign an endpoint group
Connection: basic authentication against https://ise.example.com:9060. Credentials are encrypted at rest, or prompted per action if you prefer never to store them.
Example
Ask in plain English
Prompt: “Show all non-compliant endpoints in Cisco ISE”
Result: VernacSecure SuperBot™ pulls the endpoint inventory, filters by compliance state and returns a sortable table.
Read actions
- Fetch endpoints — Lists endpoints known to ISE.
- Fetch endpoint groups — Lists endpoint identity groups.
- Fetch authorization profiles — Lists authorization profiles used by policy sets.
Write actions
- Quarantine endpoint — Moves the named MAC into the quarantine identity group.
Related nac automation pages
Arista AGNI · Extreme Networks · Forescout · Fortinet FortiNAC · Genians · HPE Aruba ClearPass