ISE Device Management is a cloud-based extension to Cisco Identity Services Engine (ISE), developed by Netgraph to simplify and automate endpoint administration across enterprise and service provider environments.
It enables secure, scalable, and delegated control of devices and identities, allowing organizations to maintain centralized policy enforcement in Cisco ISE while empowering distributed teams or third-party suppliers to manage endpoints through a self-service framework.
Key Features and Benefits #
-
Cloud-Based Extension for Cisco ISE
ISE Device Management integrates directly with Cisco ISE using secure APIs, extending its native capabilities without the need for additional on-premise components.
The solution enhances ISE with automation, delegation, and simplified endpoint operations — reducing administrative overhead while preserving existing ISE configurations. -
Secure Delegation via Self-Service Portal
The Self-Service Portal allows authorized users or partners to add, edit, and remove endpoints within assigned ISE Endpoint Groups.
Users can manage MAC addresses, review session details, and view authentication information — all with full activity logging and audit trails for accountability. -
Centralized Administration and Visibility
Through the Administration Portal, IT teams can browse endpoint groups, monitor session data, and define role-based access control (RBAC) policies.
Administrators decide which groups are available for self-service and can track all endpoint modifications and API activities from a single interface. -
Group-Based Policy Enforcement
Administrators can define custom attributes such as VLAN IDs, Security Group Tags (SGTs), and Access Control Lists (ACLs) at the group level.
These attributes are automatically applied to all endpoints within the group, ensuring consistent policy enforcement and simplified configuration management. -
Simplified Access with SAML Single Sign-On
Support for SAML-based SSO enables seamless and secure access to both the administration and self-service portals, improving usability while maintaining strong identity assurance. -
Scalable, Automated, and Audited
Built for multi-tenant operation and distributed endpoint management, ISE Device Management scales with organizational needs.
All endpoint and administrative actions are logged to ensure transparency, traceability, and compliance with internal and regulatory requirements.