Cisco ISE Deep Dive Training

40 hours
The Cisco Identity Services Engine (ISE) Deep Dive Training is structured as a hybrid workshop and is delivered by a technology specific Subject Matter Expert in a workshop format, either virtually via the customer's preferred meeting application or onsite at the customer's location. The engagement combines an SME engagement, workshop, training and lab demo all in one interactive experience that focuses on learning a new technology, best practices and how it will fit into the customer's current environment.

What to Expect

The following items are included in this training: 

  • Demonstrating design strategies
  • Demonstrate flexibility and use cases of different design and migration changes
  • Execution concepts & whiteboarding
  • Automate, operate and secure concept walkthrough
  • Provision, validation and troubleshooting commands


Our expert-led training workshops help you gain a better understanding of the Cisco Identity Services Engine (ISE) technologies and solutions. Upon completion you'll have the working knowledge and skills to develop, deploy and maintain ISE within your environment.


The following is a summary of the 5-day agenda, concepts and inclusions for the training:

Day 1

Course Intro

Cisco ISE Architecture and Deployment

  • Using Cisco ISE as a Network Access Policy Engine
  • Cisco ISE Use Cases
  • Describing Cisco ISE Functions
  • Cisco ISE Deployment models
  • Context Visibility
  • Installation, Initial Setup and Certificate Usage

Cisco ISE Policy Enforcement

  • Using 802.1 X for Wired and Wireless Access
  • Using MAC Authentication Bypass for Wired and Wireless Access
  • Introducing Identity Management
  • Configuring Certificate Services
  • Integrating Cisco ISE with Active Directory

Day 2

Cisco ISE Policy Enforcement

  • Introducing Cisco ISE Policy
  • Configuring Cisco ISE Policy
  • Implementing third-party network access device support
  • Introducing Cisco TrustSec
  • TrustSec configuration
  • Easy Connect
  • Configuring Access Policy for Easy Connect

WebAuth and Guest Services

  • Introducing Web Access with Cisco ISE
  • Introducing Guest Access components

Day 3

WebAuth and Guest Services

  • Configuring Guest Access settings
  • Configuring Sponsor and Guests Portals
  • Configure Guest Access Operations
  • Create Guest Reports

Cisco ISE Profiler

  • Introducing Cisco ISE Profiler
  • Profiling Deployment and Best Practices
  • Configure Profiling
  • Customized Cisco ISE Profiling Configuration
  • Create Cisco ISE Profiling reports

Day 4


  • Introducing Cisco ISE BYOD process
  • Describing BYOD flow
  • Configuring the My Devices Portal
  • Configuring certificates in BYOD scenarios
  • Configure BYOD
  • Blacklist a device

Cisco ISE Endpoint Compliance

  • Introducing Endpoint Compliance Services
  • Configuring Cisco ISE Compliance Services
  • Configuring Client Posture Services and Provisioning,
  • Configure Client provisioning
  • Configure Posture Policies
  • Test and monitor compliance-based access
  • Test compliance policy

Day 5

Cisco ISE Endpoint Compliance

  • pxGrid

Working with Network Access Devices

  • review AAA
  • Cisco ISE TACACS+ Device administration
  • Configuring TACACS+ Device administration
  • TACACS+ Device administration guidelines and best practices
  • Migrating from Cisco ACS to Cisco ISE
  • Configure Cisco ISE for basic device administration
  • Configure TACACS+ command authorization

ASA VPN Integration

  • ASA and ISE integration for VPN users
  • Configuring ASA
  • Configuring Cisco ISE for VPN Authentication and Authorization
  • Configuring Cisco ISE for Posture and VPN