<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Security Archives - Morten</title>
	<atom:link href="https://www.morten.com.tr/en/category/blog/security-blog/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.morten.com.tr/en/category/blog/security-blog/</link>
	<description></description>
	<lastBuildDate>Mon, 03 Nov 2025 20:17:23 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updateperiod>
	hourly	</sy:updateperiod>
	<sy:updatefrequency>
	1	</sy:updatefrequency>
	<generator>https://wordpress.org/?v=6.6.2</generator>

<image>
	<url>https://www.morten.com.tr/wp-content/uploads/2024/12/cropped-Morten-Logo-Bordo-Kopya-2-32x32.png</url>
	<title>Security Archives - Morten</title>
	<link>https://www.morten.com.tr/en/category/blog/security-blog/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Cisco Secure Workload (Formerly Tetration)</title>
		<link>https://www.morten.com.tr/en/cisco-secure-workload/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=cisco-secure-workload</link>
		
		<dc:creator><![CDATA[dvususer]]></dc:creator>
		<pubDate>Tue, 23 May 2023 05:19:08 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Cisco]]></category>
		<guid ispermalink="false">https://tecnologia.vamtam.com/?p=8435</guid>

					<description><![CDATA[<p>Yazar:  Emin YÖNEY &#124; Kıdemli Çözüm Danışmanı</p>
<p>Cisco Secure Workload (Tetration), bir ağ güvenliği ve analiz platformudur. Bu platform, kurumsal ağlarınızda gerçek zamanlı trafik analizi yaparak, ağınızda olan herhangi bir tehdidi tespit edebilmenizi sağlar.</p>
<p>The post <a href="https://www.morten.com.tr/en/cisco-secure-workload/">Cisco Secure Workload (Formerly Tetration)</a> appeared first on <a href="https://www.morten.com.tr/en">Morten</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div data-elementor-type="wp-post" data-elementor-id="8435" class="elementor elementor-8435" data-elementor-post-type="post">
						<section class="elementor-section elementor-top-section elementor-element elementor-element-6a09389 elementor-section-boxed elementor-section-height-default elementor-section-height-default" data-id="6a09389" data-element_type="section" data-e-type="section">
						<div class="elementor-container elementor-column-gap-no">
					<div class="elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-523d815" data-id="523d815" data-element_type="column" data-e-type="column">
			<div class="elementor-widget-wrap elementor-element-populated">
						<div class="elementor-element elementor-element-9b91692 elementor-widget elementor-widget-text-editor" data-id="9b91692" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p style="font-weight: 400;"><strong>Author:  Emin YÖNEY | Senior Solution Consultant</strong></p><p style="font-weight: 400;">Cisco Secure Workload (Tetration) is a network security and analysis platform. This platform allows you to detect any threats on your network by analyzing real-time traffic on your corporate networks.</p><p style="font-weight: 400;">It monitors applications, processes, users, and devices on your network and helps understand their relationships so you can be alerted immediately if any threats come to your network.</p>								</div>
				</div>
				<div class="elementor-element elementor-element-e9bc072 elementor-widget elementor-widget-image" data-id="e9bc072" data-element_type="widget" data-e-type="widget" data-widget_type="image.default">
				<div class="elementor-widget-container">
															<img fetchpriority="high" decoding="async" width="945" height="494" src="https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170502.webp" class="attachment-2048x2048 size-2048x2048 wp-image-996237" alt="" srcset="https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170502.webp 945w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170502-300x157.webp 300w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170502-768x401.webp 768w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170502-18x9.webp 18w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170502-750x392.webp 750w" sizes="(max-width: 945px) 100vw, 945px" />															</div>
				</div>
				<div class="elementor-element elementor-element-76d8e47 elementor-widget elementor-widget-text-editor" data-id="76d8e47" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p style="font-weight: 400;">It also tracks where applications on your network are running and what resources they are using, so you can identify performance issues. </p><p style="font-weight: 400;">Cisco Secure Work Load (Tetration) also supports cloud-native applications, so you can monitor all applications in your enterprise network and understand the relationships between different platforms.</p>								</div>
				</div>
				<div class="elementor-element elementor-element-87b6000 elementor-widget elementor-widget-image" data-id="87b6000" data-element_type="widget" data-e-type="widget" data-widget_type="image.default">
				<div class="elementor-widget-container">
															<img decoding="async" width="856" height="349" src="https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523171859.webp" class="attachment-2048x2048 size-2048x2048 wp-image-996238" alt="" srcset="https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523171859.webp 856w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523171859-300x122.webp 300w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523171859-768x313.webp 768w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523171859-18x7.webp 18w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523171859-750x306.webp 750w" sizes="(max-width: 856px) 100vw, 856px" />															</div>
				</div>
				<div class="elementor-element elementor-element-0c70aa0 elementor-widget elementor-widget-image" data-id="0c70aa0" data-element_type="widget" data-e-type="widget" data-widget_type="image.default">
				<div class="elementor-widget-container">
															<img decoding="async" width="860" height="484" src="https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170525.webp" class="attachment-2048x2048 size-2048x2048 wp-image-996240" alt="" srcset="https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170525.webp 860w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170525-300x169.webp 300w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170525-768x432.webp 768w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170525-18x10.webp 18w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170525-750x422.webp 750w" sizes="(max-width: 860px) 100vw, 860px" />															</div>
				</div>
				<div class="elementor-element elementor-element-a6e16d3 elementor-widget elementor-widget-text-editor" data-id="a6e16d3" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p style="font-weight: 400;">The main features offered by the application in network security and analysis are as follows.</p><ul><li style="font-weight: 400;">Secure Workload’s (Tetration) automated approach helps in rapid deployment of Microsegmentation.</li><li style="font-weight: 400;">Zero Trust in the Micro Segmentation application model enables you to implement Micro Segmentation.</li><li style="font-weight: 400;">It quickly detects threats in the network by performing real-time traffic analysis.</li><li style="font-weight: 400;">Relationship mapping helps to understand the relationships between application, process, user and device.</li><li style="font-weight: 400;">It detects performance issues and optimizes resources by monitoring resource usage.</li><li style="font-weight: 400;">It is compatible with and supports applications running on popular cloud-based application services such as AWS, Microsoft Azure, and Google Cloud Platform. It also supports applications running in your own private cloud environment.</li><li style="font-weight: 400;">Monitors application performance and detects performance issues.</li><li style="font-weight: 400;">It detects malicious content by performing content inspection.</li><li style="font-weight: 400;">Provides useful information for the business by analyzing data.</li><li style="font-weight: 400;">It summarizes the data and presents it in an understandable way.</li><li style="font-weight: 400;">Automatically manages and edits policies.</li><li style="font-weight: 400;">Detects malware on your network.</li></ul>								</div>
				</div>
				<div class="elementor-element elementor-element-8eeb924 elementor-widget elementor-widget-image" data-id="8eeb924" data-element_type="widget" data-e-type="widget" data-widget_type="image.default">
				<div class="elementor-widget-container">
															<img loading="lazy" decoding="async" width="831" height="394" src="https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170754.webp" class="attachment-2048x2048 size-2048x2048 wp-image-996241" alt="" srcset="https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170754.webp 831w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170754-300x142.webp 300w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170754-768x364.webp 768w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170754-18x9.webp 18w, https://www.morten.com.tr/wp-content/uploads/2023/05/image20230523170754-750x356.webp 750w" sizes="(max-width: 831px) 100vw, 831px" />															</div>
				</div>
				<div class="elementor-element elementor-element-f71941d elementor-widget elementor-widget-text-editor" data-id="f71941d" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p style="font-weight: 400;">To summarize, Cisco Secure Workload (Tetration) is a groundbreaking platform in network security and analytics. It monitors all applications, processes, users, and devices on your network, allowing you to detect any threats and troubleshoot performance issues.</p>								</div>
				</div>
					</div>
		</div>
					</div>
		</section>
				</div><p>The post <a href="https://www.morten.com.tr/en/cisco-secure-workload/">Cisco Secure Workload (Formerly Tetration)</a> appeared first on <a href="https://www.morten.com.tr/en">Morten</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>ISE 3.0 ile Gelen Yeni Özelikler</title>
		<link>https://www.morten.com.tr/en/ise-3-0-ile-gelen-yeni-ozelikler/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=ise-3-0-ile-gelen-yeni-ozelikler</link>
		
		<dc:creator><![CDATA[dvususer]]></dc:creator>
		<pubDate>Fri, 27 Aug 2021 13:12:17 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<guid ispermalink="false">http://10.41.150.12/?p=989942</guid>

					<description><![CDATA[<p>Yazar: Fatih Ermiş &#124; Kıdemli Çözüm Danışmanı ISE 3.0 ile beraber daha sade bir arayüz oluşturulmuş, eski arayüze nazaran daha kullanıcı dostu ve daha göz yormayan bir arayüz bizi karşılıyor. Yeni arayüzde menü öğelerinin üst satırı kaldırılırken, yerine sol üst köşeye hamburger buton eklenerek, ISE 3.0 tamamen önceki versiyonlarda olmayan yeni bir görünüm kazandırdığı çok...</p>
<p>The post <a href="https://www.morten.com.tr/en/ise-3-0-ile-gelen-yeni-ozelikler/">ISE 3.0 ile Gelen Yeni Özelikler</a> appeared first on <a href="https://www.morten.com.tr/en">Morten</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div class="gfmr-markdown-container"><div class="gfmr-markdown-source" style="display: none;">		&lt;div data-elementor-type=&quot;wp-post&quot; data-elementor-id=&quot;989942&quot; class=&quot;elementor elementor-989942&quot; data-elementor-post-type=&quot;post&quot;&gt;
				&lt;div class=&quot;elementor-element elementor-element-8176e98 e-flex e-con-boxed e-con e-parent&quot; data-id=&quot;8176e98&quot; data-element_type=&quot;container&quot; data-e-type=&quot;container&quot;&gt;
					&lt;div class=&quot;e-con-inner&quot;&gt;
				&lt;div class=&quot;elementor-element elementor-element-4806b7c elementor-widget elementor-widget-text-editor&quot; data-id=&quot;4806b7c&quot; data-element_type=&quot;widget&quot; data-e-type=&quot;widget&quot; data-widget_type=&quot;text-editor.default&quot;&gt;
				&lt;div class=&quot;elementor-widget-container&quot;&gt;
									&lt;strong&gt;Author: Fatih Ermis | Senior Solution Consultant&lt;/strong&gt;

With ISE 3.0, a simpler interface has been created, more user-friendly and easier on the eyes than the old interface.

&lt;img src=&quot;https://www.morten.com.tr/UpImages/image20210827140245.png&quot; /&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;In the new interface, while the top row of menu items is removed, a hamburger button is added to the upper left corner, and it can be easily said that ISE 3.0 has a completely new look that was not in previous versions. It is worth mentioning that all configurations can be made under the menu.&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;It can be said that the dark mode is a different touch and gives a new image to the ISE interface, while the previous versions were all blue tones on a white background, dark colors were included with ISE 3.0. However, the &ldquo;Make a Wish&rdquo; feedback that we know from Meraki has not been forgotten in the menu, I think this feature, which I think Cisco will integrate into all its products from now on, especially for user / administrator feedback, is really very important for both parties.&lt;/p&gt;
&lt;img src=&quot;https://www.morten.com.tr/UpImages/image20210827140254.png&quot; /&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;At the same time, thanks to the search tab added to this menu, ISE 3.0 is one step ahead, both user-friendly and very fast access to the desired configuration. Shortcuts have been added to the lower left corner of the Dark Mode, so it is very easy to open or close the Menu.&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;In addition, it is noticeable that the switching speed between tabs in ISE 3.0 is much faster than before.&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;&lt;img style=&quot;box-sizing: inherit; border-width: 0px; border-style: initial; display: inline-block; vertical-align: middle; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; text-align: center; background-color: #fefefe; padding-bottom: 10px; padding-right: 10px;&quot; src=&quot;https://www.morten.com.tr/UpImages/image20210827140426.png&quot; /&gt;&lt;img style=&quot;box-sizing: inherit; border-width: 0px; border-style: initial; display: inline-block; vertical-align: middle; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; text-align: center; background-color: #fefefe; padding-bottom: 10px; padding-right: 10px;&quot; src=&quot;https://www.morten.com.tr/UpImages/image20210827140431.png&quot; /&gt;&lt;img style=&quot;box-sizing: inherit; border-width: 0px; border-style: initial; display: inline-block; vertical-align: middle; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; text-align: center; background-color: #fefefe; padding-bottom: 10px; padding-right: 10px;&quot; src=&quot;https://www.morten.com.tr/UpImages/image20210827140437.png&quot; /&gt;&lt;img style=&quot;box-sizing: inherit; border-width: 0px; border-style: initial; display: inline-block; vertical-align: middle; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; text-align: center; background-color: #fefefe; padding-bottom: 10px; padding-right: 10px;&quot; src=&quot;https://www.morten.com.tr/UpImages/image20210827140443.png&quot; /&gt;&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;We mentioned that the Make a Wish section was added to the bottom section for both user/admin experience and easy feedback (complaints, requests or suggestions). Cisco actually says to users, &lsquo;We listen to you, we improve our systems with your suggestions&rsquo;, with this tradition we are used to from Meraki, and this gives users/admins the opportunity to be a part of these developments, I think it is a fast feedback feature that brings both the producer and the users together from the same perspective.&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;One of the user-friendly features that comes with ISE 3.0 is the &ldquo;interactive help&rdquo; feature, which can be accessed both from the Help Menu in the upper right corner and from the tab in the lower right corner.&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;This feature, which is not available in older versions of Cisco ISE, actually provides the user with a faster and easier use in many ways. For example, we want to configure Posture, when we click on the Posture section, it brings up all the tabs we need regarding Posture.&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;When we click on the Agentless Posture feature, a wizard appears before us, showing us all the necessary steps for configuration step by step. Thus, everything that needs to be done to make Agentless Posture is provided very easily, when we complete each step and click on the (Next) option, we can move on to the next step, while at the same time it provides the opportunity to define the configurations starting from the desired step.&lt;/p&gt;
&nbsp;&lt;img src=&quot;https://www.morten.com.tr/UpImages/image20210827140507.png&quot; /&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;All components needed throughout the configuration process are presented to you by these wizards and you are asked to complete the relevant configurations.&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;It is important to remember that you must have the correct licenses for the relevant configurations.&lt;/p&gt;

&lt;ul&gt;
 	&lt;li style=&quot;font-weight: 400;&quot;&gt;&lt;b&gt;&lt;strong&gt;Agentless Posture Windows and MacOS Feature:&lt;/strong&gt;&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;Agentless posture can be used with ISE 3.0 for &ldquo;Microsoft and Apple&rdquo; devices without installing anyconnect agents on endpoints.&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;&lt;img style=&quot;box-sizing: inherit; border-width: 0px; border-style: initial; display: inline-block; vertical-align: middle; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; text-align: center; background-color: #fefefe; padding-bottom: 10px; padding-right: 10px;&quot; src=&quot;https://www.morten.com.tr/UpImages/image20210827140645.png&quot; /&gt;&lt;img style=&quot;box-sizing: inherit; border-width: 0px; border-style: initial; display: inline-block; vertical-align: middle; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; text-align: center; background-color: #fefefe; padding-bottom: 10px; padding-right: 10px;&quot; src=&quot;https://www.morten.com.tr/UpImages/image20210827140651.png&quot; /&gt;&lt;/p&gt;

&lt;ul&gt;
 	&lt;li&gt;&lt;strong&gt;End User Visibility and Custom Script Feature&lt;/strong&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;Thanks to this feature, special scripts can be written for Windows and Mac end users, points to be considered;&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;o   Only admins with SuperAdmin authority can run these scripts,&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;o&nbsp;&nbsp;&nbsp;You must have Domain Admin information and/or Local admin user information,&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;o PowerShell for Windows machines,&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;o SSH access for Mac,&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;o&nbsp;&nbsp;&nbsp;CURL 34+ for both Mac and Windows&lt;/p&gt;
&lt;img src=&quot;https://www.morten.com.tr/UpImages/image20210827140701.png&quot; /&gt;
&lt;ul&gt;
 	&lt;li style=&quot;font-weight: 400;&quot;&gt;&lt;b&gt;&lt;strong&gt;ODBC Multiple Attributes Lookup Feature&lt;/strong&gt;&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;Instead of specifying attributes manually, the authorization profile can be conveniently configured to use VLAN from the ODBC database based on specified entry attributes (such as MAC address, username, called-station-ID, or device location).&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;&nbsp;&lt;img style=&quot;box-sizing: inherit; border-width: 0px; border-style: initial; display: inline-block; vertical-align: middle; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; text-align: center; padding-bottom: 10px; padding-right: 10px;&quot; src=&quot;https://www.morten.com.tr/UpImages/image20210827140714.png&quot; /&gt;&lt;img style=&quot;box-sizing: inherit; border-width: 0px; border-style: initial; display: inline-block; vertical-align: middle; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; text-align: center; padding-bottom: 10px; padding-right: 10px;&quot; src=&quot;https://www.morten.com.tr/UpImages/image20210827140719.png&quot; /&gt;&lt;/p&gt;

&lt;ul&gt;
 	&lt;li style=&quot;font-weight: 400;&quot;&gt;&lt;b&gt;&lt;strong&gt;Certificate Fingerprinting for Multiple CA s Feature&lt;/strong&gt;&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;Thanks to this feature that comes with ISE 3.0, a secure mechanism is provided for multiple certificates to support different domains, and thus the reliability of many domains will be increased by multiple certificates.&lt;/p&gt;
&nbsp;&lt;img src=&quot;https://www.morten.com.tr/UpImages/image20210827140731.png&quot; /&gt;
&lt;ul&gt;
 	&lt;li style=&quot;font-weight: 400;&quot;&gt;&lt;b&gt;&lt;strong&gt;PassiveID and Windows Event API Feature&lt;/strong&gt;&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;Cisco ISE S&uuml;r&uuml;m 3.0 ile beraber Pasif Kimlik (Passive Identity) i&ccedil;in MS-Eventing API veya Microsoft Uzaktan Yardım &Ccedil;ağrısı (MSRPC) protokol&uuml; kullanılabilmektedir. Cisco ISE&rsquo;de Node iletişimi kurmak ve Node lar arasındaki heartbeats izlemek i&ccedil;in MSRPC protokol&uuml;n&uuml; kullanır. Bu se&ccedil;enek, Pasif Kimlik hizmeti i&ccedil;in WMI protokol&uuml;ne ek olarak bulunmaktadır. ISE 3.0 ile gelen bu &ouml;zellik ile Pasif kimlik, WMI yerine MS RPC API&rsquo;lerini kullanarak genel performansı &ouml;nemli &ouml;l&ccedil;&uuml;de iyileştirecektir.&lt;/p&gt;
&lt;img src=&quot;https://www.morten.com.tr/UpImages/image20210827140741.png&quot; /&gt;
&lt;ul&gt;
 	&lt;li style=&quot;font-weight: 400;&quot;&gt;&lt;b&gt;&lt;strong&gt;API Gateway Feature&lt;/strong&gt;&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;Cisco ISE ( API Gatwey ) ağ ge&ccedil;idi, daha iyi g&uuml;venlik ve trafik y&ouml;netimi sağlamak i&ccedil;in birden &ccedil;ok Cisco ISE Hizmet API&rsquo;sine tek bir giriş noktası g&ouml;revi g&ouml;ren bir API y&ouml;netim &ccedil;&ouml;z&uuml;m&uuml; olarak ISE 3.0 ile yeni gelen bir &ouml;zellik olarak karşımıza &ccedil;ıkıyor. Harici istemcilerden gelen API istekleri, Cisco ISE&rsquo;deki API ağ ge&ccedil;idine y&ouml;nlendirilir ve istekler ayrıca, API Ağ Ge&ccedil;idinde yapılandırılan kurallara g&ouml;re hizmet verir, API&rsquo;lerinin &ccedil;alıştığı Cisco ISE Node&rsquo;larına iletilir ( route edilir ).&lt;/p&gt;
&nbsp;&lt;img src=&quot;https://www.morten.com.tr/UpImages/image20210827140751.png&quot; /&gt;
&lt;ul&gt;
 	&lt;li style=&quot;font-weight: 400;&quot;&gt;&lt;b&gt;&lt;strong&gt;Device Identifier Change Feature for Windows Devices&lt;/strong&gt;&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;A new device identifier based on CN/SAN certificate attributes used between ISE and MDM is used to query compliance independent of the MAC address on end-user devices. (UDID: Unique Device Identifier)&lt;/p&gt;
&nbsp;&lt;img src=&quot;https://www.morten.com.tr/UpImages/image20210827140806.png&quot; /&gt;
&lt;ul&gt;
 	&lt;li style=&quot;font-weight: 400;&quot;&gt;&lt;b&gt;&lt;strong&gt;Baseline Policies Feature with Microsoft SCCM&lt;/strong&gt;&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;With ISE 3.0, ISE Admins can select specific base policies and have only those policies checked for compliance.&lt;/p&gt;
&lt;img src=&quot;https://www.morten.com.tr/UpImages/image20210827140817.png&quot; /&gt;
&lt;ul&gt;
 	&lt;li style=&quot;font-weight: 400;&quot;&gt;&lt;b&gt;&lt;strong&gt;Posture AV/AM Minimum Version Control Feature&lt;/strong&gt;&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;There are many different Anti-virus and many different Anti-malware products, the policies created at this stage were either very general or very specific, with ISE 3.0, AV/AMs can be specified as a minimum version and be compliant on the relevant version. It should not be overlooked that OPSWAT support is mandatory here.&lt;/p&gt;
&lt;img src=&quot;https://www.morten.com.tr/UpImages/image20210827140833.png&quot; /&gt;
&lt;ul&gt;
 	&lt;li style=&quot;font-weight: 400;&quot;&gt;&lt;b&gt;&lt;strong&gt;Health Check Feature&lt;/strong&gt;&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;One of the most frequently used features by admins coming with ISE 3.0 will undoubtedly be the Health Check feature. ISE 3.0 offers an optional system health check option to diagnose all nodes in your distribution. Running a health check on all nodes before any operation helps identify critical issues that may cause an outage, if any. Health Check shows the operating status and health status of all dependent components. In the event of a component failure, the operation is carried out smoothly and offers troubleshooting suggestions to resolve the issue. Another innovation in ISE 3.0 is that&lt;/p&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;It is worth mentioning that it is an excellent solution for detecting and solving many problems before upgrades and for performing upgrades without any problems.&lt;/p&gt;
&nbsp;&lt;img src=&quot;https://www.morten.com.tr/UpImages/image20210827140842.png&quot; /&gt;
&lt;ul&gt;
 	&lt;li style=&quot;font-weight: 400;&quot;&gt;&lt;b&gt;&lt;strong&gt;Debugging Feature in Profiles by Function&lt;/strong&gt;&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;The Debug Wizard contains predefined debug templates that you can use to troubleshoot issues on ISE Nodes. You can easily configure Debug Profiles and Debug Logs from here. Another plus of this feature is that Cisco TAC can now easily enable debug logs across multiple Nodes in a Cisco ISE deployment. This feature will help in faster troubleshooting. Also, the created debug profiles can be used across multiple Nodes.&lt;/p&gt;
&lt;img src=&quot;https://www.morten.com.tr/UpImages/image20210827140854.png&quot; /&gt;
&lt;ul&gt;
 	&lt;li style=&quot;font-weight: 400;&quot;&gt;&lt;b&gt;&lt;strong&gt;More functional TCP Dump Feature&lt;/strong&gt;&lt;/b&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style=&quot;font-weight: 400;&quot;&gt;With ISE 3.0, you can control the collected data by specifying the file size, number of files, processing time, on which interfaces the dump file should be created (always in raw format / TCP dump format), including connected interfaces.&lt;/p&gt;
&lt;p style=&quot;box-sizing: inherit; margin-bottom: 1rem; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: center;&quot;&gt;&nbsp;&lt;img style=&quot;box-sizing: inherit; border-width: 0px; border-style: initial; display: inline-block; vertical-align: middle; padding-bottom: 10px; padding-right: 10px;&quot; src=&quot;https://www.morten.com.tr/UpImages/image20210827140915.png&quot; /&gt;&lt;/p&gt;
&lt;p style=&quot;box-sizing: inherit; margin-bottom: 1rem; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: center;&quot;&gt;&lt;img style=&quot;box-sizing: inherit; border-width: 0px; border-style: initial; display: inline-block; vertical-align: middle; padding-bottom: 10px; padding-right: 10px;&quot; src=&quot;https://www.morten.com.tr/UpImages/image20210827140925.png&quot; /&gt;&lt;/p&gt;
&lt;p style=&quot;box-sizing: inherit; margin-bottom: 1rem; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: left;&quot; class=&quot;translation-block&quot;&gt;&middot;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&lt;b&gt;ISE 3.0 Supported Platforms ( SNS 35XX series EOL )&lt;/b&gt;&lt;/p&gt;
&lt;img src=&quot;https://www.morten.com.tr/UpImages/image20210827141004.png&quot; /&gt;
&lt;ul&gt;
 	&lt;li class=&quot;MsoListParagraphCxSpFirst&quot; style=&quot;box-sizing: inherit; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: justify; text-indent: -18pt;&quot;&gt;&lt;span style=&quot;box-sizing: inherit; font-size: 0.875rem; line-height: 25px; font-family: Symbol;&quot;&gt;&lt;span style=&quot;box-sizing: inherit; font-size: 7pt; line-height: normal; font-variant-numeric: normal; font-variant-east-asian: normal; font-stretch: normal; font-family: &#039;Times New Roman&#039;;&quot;&gt;&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;box-sizing: inherit; font-weight: bold;&quot;&gt;Platform Destekleri &ndash; Cloud&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p class=&quot;MsoListParagraphCxSpMiddle&quot; style=&quot;box-sizing: inherit; margin-bottom: 1rem; margin-left: 72pt; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: justify; text-indent: -18pt;&quot;&gt;&lt;span style=&quot;box-sizing: inherit; font-size: 0.875rem; line-height: 25px; font-family: &#039;Courier New&#039;;&quot;&gt;o&lt;span style=&quot;box-sizing: inherit; font-size: 7pt; line-height: normal; font-variant-numeric: normal; font-variant-east-asian: normal; font-stretch: normal; font-family: &#039;Times New Roman&#039;;&quot;&gt;&nbsp;&nbsp;&nbsp;&lt;/span&gt;&lt;/span&gt;Amazon Vmware Cloud&lt;/p&gt;
&lt;p class=&quot;MsoListParagraphCxSpLast&quot; style=&quot;box-sizing: inherit; margin-bottom: 1rem; margin-left: 72pt; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: justify; text-indent: -18pt;&quot;&gt;&lt;span style=&quot;box-sizing: inherit; font-size: 0.875rem; line-height: 25px; font-family: &#039;Courier New&#039;;&quot;&gt;o&lt;span style=&quot;box-sizing: inherit; font-size: 7pt; line-height: normal; font-variant-numeric: normal; font-variant-east-asian: normal; font-stretch: normal; font-family: &#039;Times New Roman&#039;;&quot;&gt;&nbsp;&nbsp;&nbsp;&lt;/span&gt;&lt;/span&gt;SAML SSO Support with Azure Active Directory&lt;/p&gt;
&lt;p class=&quot;MsoListParagraphCxSpLast&quot; style=&quot;box-sizing: inherit; margin-bottom: 1rem; margin-left: 72pt; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: justify; text-indent: -18pt;&quot;&gt;&lt;img style=&quot;box-sizing: inherit; border-width: 0px; border-style: initial; display: inline-block; vertical-align: middle; padding-bottom: 10px; padding-right: 10px;&quot; src=&quot;https://www.morten.com.tr/UpImages/image20210827141030.png&quot; /&gt;Now available via the ISE web portal&nbsp;&lt;span style=&quot;box-sizing: inherit; font-weight: bold;&quot;&gt;Azure AD&lt;/span&gt;&nbsp;&lt;span style=&quot;box-sizing: inherit; font-weight: bold;&quot;&gt;SAML 2.0&lt;/span&gt;&nbsp;MFA feature can be used with ISE 3.0. (Guest, BYOD and My Devices Portal)&lt;/p&gt;
&lt;p class=&quot;MsoListParagraphCxSpLast&quot; style=&quot;box-sizing: inherit; margin-bottom: 1rem; margin-left: 72pt; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: &#039;Open Sans&#039;, sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: justify; text-indent: -18pt;&quot;&gt;&lt;span style=&quot;box-sizing: inherit; font-weight: bold;&quot;&gt;&lt;span style=&quot;box-sizing: inherit; font-size: 11pt; line-height: 15.6933px; font-family: Calibri, sans-serif;&quot;&gt;ROPC&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;box-sizing: inherit; font-size: 11pt; line-height: 15.6933px; font-family: Calibri, sans-serif;&quot;&gt;&nbsp;using 802.1X Azure AD (Resource Owner Password Credentials)&lt;/span&gt;&lt;br style=&quot;box-sizing: inherit;&quot; /&gt;&lt;img style=&quot;box-sizing: inherit; border-width: 0px; border-style: initial; display: inline-block; vertical-align: middle; padding-bottom: 10px; padding-right: 10px;&quot; src=&quot;https://www.morten.com.tr/UpImages/image20210827141159.png&quot; /&gt;&lt;span style=&quot;box-sizing: inherit; font-size: 11pt; line-height: 25px; font-family: Calibri, sans-serif;&quot;&gt;With ISE 3.0 802.1X, users can be authenticated directly to Azure AD using OAuth ROPC.&lt;/span&gt;&lt;/p&gt;								&lt;/div&gt;
				&lt;/div&gt;
					&lt;/div&gt;
				&lt;/div&gt;
				&lt;/div&gt;
		</div><div class="gfmr-markdown-rendered">		<div data-elementor-type="wp-post" data-elementor-id="989942" class="elementor elementor-989942" data-elementor-post-type="post">
				<div class="elementor-element elementor-element-8176e98 e-flex e-con-boxed e-con e-parent" data-id="8176e98" data-element_type="container" data-e-type="container">
					<div class="e-con-inner">
				<div class="elementor-element elementor-element-4806b7c elementor-widget elementor-widget-text-editor" data-id="4806b7c" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<strong>Author: Fatih Ermis | Senior Solution Consultant</strong>

With ISE 3.0, a simpler interface has been created, more user-friendly and easier on the eyes than the old interface.

<img decoding="async" src="https://www.morten.com.tr/UpImages/image20210827140245.png" />
<p style="font-weight: 400">In the new interface, while the top row of menu items is removed, a hamburger button is added to the upper left corner, and it can be easily said that ISE 3.0 has a completely new look that was not in previous versions. It is worth mentioning that all configurations can be made under the menu.</p>
<p style="font-weight: 400">It can be said that the dark mode is a different touch and gives a new image to the ISE interface, while the previous versions were all blue tones on a white background, dark colors were included with ISE 3.0. However, the “Make a Wish” feedback that we know from Meraki has not been forgotten in the menu, I think this feature, which I think Cisco will integrate into all its products from now on, especially for user / administrator feedback, is really very important for both parties.</p>
<img decoding="async" src="https://www.morten.com.tr/UpImages/image20210827140254.png" />
<p style="font-weight: 400">At the same time, thanks to the search tab added to this menu, ISE 3.0 is one step ahead, both user-friendly and very fast access to the desired configuration. Shortcuts have been added to the lower left corner of the Dark Mode, so it is very easy to open or close the Menu.</p>
<p style="font-weight: 400">In addition, it is noticeable that the switching speed between tabs in ISE 3.0 is much faster than before.</p>
<p style="font-weight: 400"><img decoding="async" style="border-width: 0px;border-style: initial;display: inline-block;vertical-align: middle;color: #444444;font-family: 'Open Sans', sans-serif;font-size: 14px;font-style: normal;font-weight: 400;text-align: center;background-color: #fefefe;padding-bottom: 10px;padding-right: 10px" src="https://www.morten.com.tr/UpImages/image20210827140426.png" /><img decoding="async" style="border-width: 0px;border-style: initial;display: inline-block;vertical-align: middle;color: #444444;font-family: 'Open Sans', sans-serif;font-size: 14px;font-style: normal;font-weight: 400;text-align: center;background-color: #fefefe;padding-bottom: 10px;padding-right: 10px" src="https://www.morten.com.tr/UpImages/image20210827140431.png" /><img decoding="async" style="border-width: 0px;border-style: initial;display: inline-block;vertical-align: middle;color: #444444;font-family: 'Open Sans', sans-serif;font-size: 14px;font-style: normal;font-weight: 400;text-align: center;background-color: #fefefe;padding-bottom: 10px;padding-right: 10px" src="https://www.morten.com.tr/UpImages/image20210827140437.png" /><img decoding="async" style="border-width: 0px;border-style: initial;display: inline-block;vertical-align: middle;color: #444444;font-family: 'Open Sans', sans-serif;font-size: 14px;font-style: normal;font-weight: 400;text-align: center;background-color: #fefefe;padding-bottom: 10px;padding-right: 10px" src="https://www.morten.com.tr/UpImages/image20210827140443.png" /></p>
<p style="font-weight: 400">We mentioned that the Make a Wish section was added to the bottom section for both user/admin experience and easy feedback (complaints, requests or suggestions). Cisco actually says to users, ‘We listen to you, we improve our systems with your suggestions’, with this tradition we are used to from Meraki, and this gives users/admins the opportunity to be a part of these developments, I think it is a fast feedback feature that brings both the producer and the users together from the same perspective.</p>
<p style="font-weight: 400">One of the user-friendly features that comes with ISE 3.0 is the “interactive help” feature, which can be accessed both from the Help Menu in the upper right corner and from the tab in the lower right corner.</p>
<p style="font-weight: 400">This feature, which is not available in older versions of Cisco ISE, actually provides the user with a faster and easier use in many ways. For example, we want to configure Posture, when we click on the Posture section, it brings up all the tabs we need regarding Posture.</p>
<p style="font-weight: 400">When we click on the Agentless Posture feature, a wizard appears before us, showing us all the necessary steps for configuration step by step. Thus, everything that needs to be done to make Agentless Posture is provided very easily, when we complete each step and click on the (Next) option, we can move on to the next step, while at the same time it provides the opportunity to define the configurations starting from the desired step.</p>
 <img decoding="async" src="https://www.morten.com.tr/UpImages/image20210827140507.png" />
<p style="font-weight: 400">All components needed throughout the configuration process are presented to you by these wizards and you are asked to complete the relevant configurations.</p>
<p style="font-weight: 400">It is important to remember that you must have the correct licenses for the relevant configurations.</p>

<ul>
 	<li style="font-weight: 400"><b><strong>Agentless Posture Windows and MacOS Feature:</strong></b></li>
</ul>
<p style="font-weight: 400">Agentless posture can be used with ISE 3.0 for “Microsoft and Apple” devices without installing anyconnect agents on endpoints.</p>
<p style="font-weight: 400"><img decoding="async" style="border-width: 0px;border-style: initial;display: inline-block;vertical-align: middle;color: #444444;font-family: 'Open Sans', sans-serif;font-size: 14px;font-style: normal;font-weight: 400;text-align: center;background-color: #fefefe;padding-bottom: 10px;padding-right: 10px" src="https://www.morten.com.tr/UpImages/image20210827140645.png" /><img decoding="async" style="border-width: 0px;border-style: initial;display: inline-block;vertical-align: middle;color: #444444;font-family: 'Open Sans', sans-serif;font-size: 14px;font-style: normal;font-weight: 400;text-align: center;background-color: #fefefe;padding-bottom: 10px;padding-right: 10px" src="https://www.morten.com.tr/UpImages/image20210827140651.png" /></p>

<ul>
 	<li><strong>End User Visibility and Custom Script Feature</strong></li>
</ul>
<p style="font-weight: 400">Thanks to this feature, special scripts can be written for Windows and Mac end users, points to be considered;</p>
<p style="font-weight: 400">o   Only admins with SuperAdmin authority can run these scripts,</p>
<p style="font-weight: 400">o   You must have Domain Admin information and/or Local admin user information,</p>
<p style="font-weight: 400">o PowerShell for Windows machines,</p>
<p style="font-weight: 400">o SSH access for Mac,</p>
<p style="font-weight: 400">o   CURL 34+ for both Mac and Windows</p>
<img decoding="async" src="https://www.morten.com.tr/UpImages/image20210827140701.png" />
<ul>
 	<li style="font-weight: 400"><b><strong>ODBC Multiple Attributes Lookup Feature</strong></b></li>
</ul>
<p style="font-weight: 400">Instead of specifying attributes manually, the authorization profile can be conveniently configured to use VLAN from the ODBC database based on specified entry attributes (such as MAC address, username, called-station-ID, or device location).</p>
<p style="font-weight: 400"> <img decoding="async" style="border-width: 0px;border-style: initial;display: inline-block;vertical-align: middle;color: #444444;font-family: 'Open Sans', sans-serif;font-size: 14px;font-style: normal;font-weight: 400;text-align: center;padding-bottom: 10px;padding-right: 10px" src="https://www.morten.com.tr/UpImages/image20210827140714.png" /><img decoding="async" style="border-width: 0px;border-style: initial;display: inline-block;vertical-align: middle;color: #444444;font-family: 'Open Sans', sans-serif;font-size: 14px;font-style: normal;font-weight: 400;text-align: center;padding-bottom: 10px;padding-right: 10px" src="https://www.morten.com.tr/UpImages/image20210827140719.png" /></p>

<ul>
 	<li style="font-weight: 400"><b><strong>Certificate Fingerprinting for Multiple CA s Feature</strong></b></li>
</ul>
<p style="font-weight: 400">Thanks to this feature that comes with ISE 3.0, a secure mechanism is provided for multiple certificates to support different domains, and thus the reliability of many domains will be increased by multiple certificates.</p>
 <img decoding="async" src="https://www.morten.com.tr/UpImages/image20210827140731.png" />
<ul>
 	<li style="font-weight: 400"><b><strong>PassiveID and Windows Event API Feature</strong></b></li>
</ul>
<p style="font-weight: 400">With Cisco ISE Version 3.0, the MS-Eventing API or Microsoft Remote Assistance Call (MSRPC) protocol can be used for Passive Identity. Cisco ISE uses the MSRPC protocol to establish node communication and monitor heartbeats between nodes. This option is in addition to the WMI protocol for Passive Identity service. With this feature coming with ISE 3.0, Passive Identity will significantly improve overall performance by using MS RPC APIs instead of WMI.</p>
<img decoding="async" src="https://www.morten.com.tr/UpImages/image20210827140741.png" />
<ul>
 	<li style="font-weight: 400"><b><strong>API Gateway Feature</strong></b></li>
</ul>
<p style="font-weight: 400">The Cisco ISE (API Gatwey) gateway is a new feature in ISE 3.0, an API management solution that acts as a single entry point to multiple Cisco ISE Service APIs to provide better security and traffic management. API requests from external clients are routed to the API gateway in Cisco ISE, and requests are also routed to the Cisco ISE Nodes that run their APIs, providing service according to the rules configured in the API Gateway.</p>
 <img decoding="async" src="https://www.morten.com.tr/UpImages/image20210827140751.png" />
<ul>
 	<li style="font-weight: 400"><b><strong>Device Identifier Change Feature for Windows Devices</strong></b></li>
</ul>
<p style="font-weight: 400">A new device identifier based on CN/SAN certificate attributes used between ISE and MDM is used to query compliance independent of the MAC address on end-user devices. (UDID: Unique Device Identifier)</p>
 <img decoding="async" src="https://www.morten.com.tr/UpImages/image20210827140806.png" />
<ul>
 	<li style="font-weight: 400"><b><strong>Baseline Policies Feature with Microsoft SCCM</strong></b></li>
</ul>
<p style="font-weight: 400">With ISE 3.0, ISE Admins can select specific base policies and have only those policies checked for compliance.</p>
<img decoding="async" src="https://www.morten.com.tr/UpImages/image20210827140817.png" />
<ul>
 	<li style="font-weight: 400"><b><strong>Posture AV/AM Minimum Version Control Feature</strong></b></li>
</ul>
<p style="font-weight: 400">There are many different Anti-virus and many different Anti-malware products, the policies created at this stage were either very general or very specific, with ISE 3.0, AV/AMs can be specified as a minimum version and be compliant on the relevant version. It should not be overlooked that OPSWAT support is mandatory here.</p>
<img decoding="async" src="https://www.morten.com.tr/UpImages/image20210827140833.png" />
<ul>
 	<li style="font-weight: 400"><b><strong>Health Check Feature</strong></b></li>
</ul>
<p style="font-weight: 400">One of the most frequently used features by admins coming with ISE 3.0 will undoubtedly be the Health Check feature. ISE 3.0 offers an optional system health check option to diagnose all nodes in your distribution. Running a health check on all nodes before any operation helps identify critical issues that may cause an outage, if any. Health Check shows the operating status and health status of all dependent components. In the event of a component failure, the operation is carried out smoothly and offers troubleshooting suggestions to resolve the issue. Another innovation in ISE 3.0 is that</p>
<p style="font-weight: 400">It is worth mentioning that it is an excellent solution for detecting and solving many problems before upgrades and for performing upgrades without any problems.</p>
 <img decoding="async" src="https://www.morten.com.tr/UpImages/image20210827140842.png" />
<ul>
 	<li style="font-weight: 400"><b><strong>Debugging Feature in Profiles by Function</strong></b></li>
</ul>
<p style="font-weight: 400">The Debug Wizard contains predefined debug templates that you can use to troubleshoot issues on ISE Nodes. You can easily configure Debug Profiles and Debug Logs from here. Another plus of this feature is that Cisco TAC can now easily enable debug logs across multiple Nodes in a Cisco ISE deployment. This feature will help in faster troubleshooting. Also, the created debug profiles can be used across multiple Nodes.</p>
<img decoding="async" src="https://www.morten.com.tr/UpImages/image20210827140854.png" />
<ul>
 	<li style="font-weight: 400"><b><strong>More functional TCP Dump Feature</strong></b></li>
</ul>
<p style="font-weight: 400">With ISE 3.0, you can control the collected data by specifying the file size, number of files, processing time, on which interfaces the dump file should be created (always in raw format / TCP dump format), including connected interfaces.</p>
<p style="margin-bottom: 1rem;font-size: 14px;line-height: 25px;color: #444444;font-family: 'Open Sans', sans-serif;font-style: normal;font-weight: 400;background-color: #fefefe;text-align: center"> <img decoding="async" style="border-width: 0px;border-style: initial;display: inline-block;vertical-align: middle;padding-bottom: 10px;padding-right: 10px" src="https://www.morten.com.tr/UpImages/image20210827140915.png" /></p>
<p style="margin-bottom: 1rem;font-size: 14px;line-height: 25px;color: #444444;font-family: 'Open Sans', sans-serif;font-style: normal;font-weight: 400;background-color: #fefefe;text-align: center"><img decoding="async" style="border-width: 0px;border-style: initial;display: inline-block;vertical-align: middle;padding-bottom: 10px;padding-right: 10px" src="https://www.morten.com.tr/UpImages/image20210827140925.png" /></p>
<p style="margin-bottom: 1rem;font-size: 14px;line-height: 25px;color: #444444;font-family: 'Open Sans', sans-serif;font-style: normal;font-weight: 400;background-color: #fefefe;text-align: left" class="translation-block">·         <b>ISE 3.0 Supported Platforms ( SNS 35XX series EOL )</b></p>
<img decoding="async" src="https://www.morten.com.tr/UpImages/image20210827141004.png" />
<ul>
 	<li class="MsoListParagraphCxSpFirst" style="font-size: 14px;line-height: 25px;color: #444444;font-family: 'Open Sans', sans-serif;font-style: normal;font-weight: 400;background-color: #fefefe;text-align: justify;text-indent: -18pt"><span style="font-size: 0.875rem;line-height: 25px;font-family: Symbol"><span style="font-size: 7pt;line-height: normal;font-family: 'Times New Roman'">          </span></span><span style="font-weight: bold">Platform Supports – Cloud</span></li>
</ul>
<p class="MsoListParagraphCxSpMiddle" style="margin-bottom: 1rem;margin-left: 72pt;font-size: 14px;line-height: 25px;color: #444444;font-family: 'Open Sans', sans-serif;font-style: normal;font-weight: 400;background-color: #fefefe;text-align: justify;text-indent: -18pt"><span style="font-size: 0.875rem;line-height: 25px;font-family: 'Courier New'">o<span style="font-size: 7pt;line-height: normal;font-family: 'Times New Roman'">   </span></span>Amazon Vmware Cloud</p>
<p class="MsoListParagraphCxSpLast" style="margin-bottom: 1rem;margin-left: 72pt;font-size: 14px;line-height: 25px;color: #444444;font-family: 'Open Sans', sans-serif;font-style: normal;font-weight: 400;background-color: #fefefe;text-align: justify;text-indent: -18pt"><span style="font-size: 0.875rem;line-height: 25px;font-family: 'Courier New'">o<span style="font-size: 7pt;line-height: normal;font-family: 'Times New Roman'">   </span></span>SAML SSO Support with Azure Active Directory</p>
<p class="MsoListParagraphCxSpLast" style="margin-bottom: 1rem;margin-left: 72pt;font-size: 14px;line-height: 25px;color: #444444;font-family: 'Open Sans', sans-serif;font-style: normal;font-weight: 400;background-color: #fefefe;text-align: justify;text-indent: -18pt"><img decoding="async" style="border-width: 0px;border-style: initial;display: inline-block;vertical-align: middle;padding-bottom: 10px;padding-right: 10px" src="https://www.morten.com.tr/UpImages/image20210827141030.png" />Now available via the ISE web portal <span style="font-weight: bold">Azure AD</span> <span style="font-weight: bold">SAML 2.0</span> MFA feature can be used with ISE 3.0. (Guest, BYOD and My Devices Portal)</p>
<p class="MsoListParagraphCxSpLast" style="margin-bottom: 1rem;margin-left: 72pt;font-size: 14px;line-height: 25px;color: #444444;font-family: 'Open Sans', sans-serif;font-style: normal;font-weight: 400;background-color: #fefefe;text-align: justify;text-indent: -18pt"><span style="font-weight: bold"><span style="font-size: 11pt;line-height: 15.6933px;font-family: Calibri, sans-serif">ROPC</span></span><span style="font-size: 11pt;line-height: 15.6933px;font-family: Calibri, sans-serif"> using 802.1X Azure AD (Resource Owner Password Credentials)</span><br /><img decoding="async" style="border-width: 0px;border-style: initial;display: inline-block;vertical-align: middle;padding-bottom: 10px;padding-right: 10px" src="https://www.morten.com.tr/UpImages/image20210827141159.png" /><span style="font-size: 11pt;line-height: 25px;font-family: Calibri, sans-serif">With ISE 3.0 802.1X, users can be authenticated directly to Azure AD using OAuth ROPC.</span></p>								</div>
				</div>
					</div>
				</div>
				</div>
		</div></div><p>The post <a href="https://www.morten.com.tr/en/ise-3-0-ile-gelen-yeni-ozelikler/">ISE 3.0 ile Gelen Yeni Özelikler</a> appeared first on <a href="https://www.morten.com.tr/en">Morten</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Cisco Firepower NGFW / NGIPS</title>
		<link>https://www.morten.com.tr/en/cisco-firepower/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=cisco-firepower</link>
		
		<dc:creator><![CDATA[dvususer]]></dc:creator>
		<pubDate>Mon, 11 Jan 2021 05:10:09 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Cisco Firepower]]></category>
		<guid ispermalink="false">https://tecnologia.vamtam.com/?p=8414</guid>

					<description><![CDATA[<p>Yazar: Huzeyfe Himmetoğlu &#124; Kıdemli Ağ ve Güvenlik Uzmanı<br />
Cisco Firepower yalnız kurt değildir!Firepower gücünü arkasındaki TALOS istihbarat ekibi ve ona içerik sağlayan Resim-1’de de gösterilen ürün ailesinden almaktadır.</p>
<p>The post <a href="https://www.morten.com.tr/en/cisco-firepower/">Cisco Firepower NGFW / NGIPS</a> appeared first on <a href="https://www.morten.com.tr/en">Morten</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div data-elementor-type="wp-post" data-elementor-id="8414" class="elementor elementor-8414" data-elementor-post-type="post">
						<section class="elementor-section elementor-top-section elementor-element elementor-element-173290c2 elementor-section-boxed elementor-section-height-default elementor-section-height-default" data-id="173290c2" data-element_type="section" data-e-type="section">
						<div class="elementor-container elementor-column-gap-no">
					<div class="elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-42bc66c8" data-id="42bc66c8" data-element_type="column" data-e-type="column">
			<div class="elementor-widget-wrap elementor-element-populated">
						<div class="elementor-element elementor-element-74389f61 elementor-widget elementor-widget-text-editor" data-id="74389f61" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p><strong>Author: Huzeyfe Himmetoglu | Senior Network and Security Specialist</strong></p><p>Cisco Firepower is not a lone wolf! Firepower derives its power from the TALOS intelligence team behind it and the product family shown in Figure-1 that provides it with content. Cisco has long acquired the best companies in their fields within the framework of end-to-end security approach in Figure-1 and ensured their integration. For this reason, Cisco Firepower never has to fight against endless attack methods alone. Thanks to Network Discovery, a feature I like about Firepower, it recognizes your inventory and services and optimizes IPS signatures for relevant traffic.</p><p><span lang="EN-US"> </span><img loading="lazy" decoding="async" class="aligncenter" src="https://www.morten.com.tr/UpImages/image20210111143439.png" alt="" width="701" height="373" /></p><p> </p><p>Cisco's Next Generation IPS and Firewall adventure begins with the acquisition of SourceFire by Martin Roesch, founder of the 2.7 billion open source intrusion detection platform SNORT, in 2013. Regardless of the continuation of this process, we can actually date Firepower's birth year to 1998, the year Snort was released. A few years after the acquisition, Cisco combined the ASA (IOS) Firewall with the SourceFire software and ran the system within the scope of FTD (Firepower Threat Defense). The anatomy of Firepower is summarized in Figure-2.</p><p> </p><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20210111143449.png" /></p><p style="font-weight: 400;">Cisco's series and short descriptions for use in small/medium businesses, enterprises and ISP/Datacenters are shown in Figure-3. Firepower 4100 and 9300 devices work with the chassis operating system FXOS and you can install more than one FTD in it. If you want, you can also run them as active/active or active/passive redundant. If you have ASA Firewalls and want to replace them with Firepower NGFW, you can quickly replace your operating system with FTD with the Firepower Migration Tool without changing your devices. You can access the relevant compatibility table from the link below.</p><p style="font-weight: 400;"><a href="https://www.cisco.com/c/en/us/td/docs/security/firepower/compatibility/firepower-compatibility.html">https://www.cisco.com/c/en/us/td/docs/security/firepower/compatibility/firepower-compatibility.html</a></p><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20210111143500.png" /></p><p style="font-weight: 400;">Please contact us for detailed information.</p><p style="font-weight: 400;">Useful links:</p><p style="font-weight: 400;">FirePower<br /><a href="https://www.cisco.com/c/tr_tr/products/security/firewalls/index.html">https://www.cisco.com/c/tr_tr/products/security/firewalls/index.html</a></p><p style="font-weight: 400;">Talos Web Address<br /><a href="https://talosintelligence.com/">https://talosintelligence.com/</a></p><p style="font-weight: 400;">Integration link with security manufacturers<br /><a href="https://www.cisco.com/c/m/en_us/products/security/technical-alliance-partners.html">https://www.cisco.com/c/m/en_us/products/security/technical-alliance-partners.html</a></p>								</div>
				</div>
					</div>
		</div>
					</div>
		</section>
				</div><p>The post <a href="https://www.morten.com.tr/en/cisco-firepower/">Cisco Firepower NGFW / NGIPS</a> appeared first on <a href="https://www.morten.com.tr/en">Morten</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Operasyonel Teknolojilerin ( OT ) Güvenliği için Cisco Cyber Vision</title>
		<link>https://www.morten.com.tr/en/operasyonel-teknolojilerin-guvenligi-icin-cisco-cyber-vision/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=operasyonel-teknolojilerin-guvenligi-icin-cisco-cyber-vision</link>
		
		<dc:creator><![CDATA[dvususer]]></dc:creator>
		<pubDate>Thu, 26 Nov 2020 05:08:07 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Cisco Cyber]]></category>
		<guid ispermalink="false">https://tecnologia.vamtam.com/?p=8408</guid>

					<description><![CDATA[<p>Yazar: Fatih Ermiş &#124; Çözüm Danışmanı</p>
<p>Bölüm 1: Cisco Cyber Vision Nedir?</p>
<p>IT için sarf edilen güvenlik katmanları artık OT güvenliği içinde günümüzde olmazsa olmazlar arasına girmiştir.</p>
<p>The post <a href="https://www.morten.com.tr/en/operasyonel-teknolojilerin-guvenligi-icin-cisco-cyber-vision/">Operasyonel Teknolojilerin ( OT ) Güvenliği için Cisco Cyber Vision</a> appeared first on <a href="https://www.morten.com.tr/en">Morten</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div data-elementor-type="wp-post" data-elementor-id="8408" class="elementor elementor-8408" data-elementor-post-type="post">
						<section class="elementor-section elementor-top-section elementor-element elementor-element-d456a24 elementor-section-boxed elementor-section-height-default elementor-section-height-default" data-id="d456a24" data-element_type="section" data-e-type="section">
						<div class="elementor-container elementor-column-gap-no">
					<div class="elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-90331ea" data-id="90331ea" data-element_type="column" data-e-type="column">
			<div class="elementor-widget-wrap elementor-element-populated">
						<div class="elementor-element elementor-element-30e77e92 elementor-widget elementor-widget-text-editor" data-id="30e77e92" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p><strong>Author: Fatih Ermis | Senior Solution Consultant</strong></p><p style="font-weight: 400;"><b><strong>Section 1: What is Cisco Cyber Vision?</strong></b></p><p style="font-weight: 400;">The security layers used for IT have now become indispensable for OT security. Especially recently, most data leaks are made by infiltrating the inside through different means. It is seen that security products positioned for North-South internet traffic are not sufficient for such leaks. In addition to North-South traffic, similar data leaks can be prevented by routine anomaly/vulnerability scans on the East-West, i.e. horizontal axis.</p><p style="font-weight: 400;">Although most OT products work on intranet (closed circuit / closed to the internet) systems, information security gaps can occur at many points with different integrations. One of the biggest problems in OT technologies is visibility. One of the reasons for this is that there are too many devices in the structures and the structure is constantly being expanded uncontrollably by making additions. In addition, it can be added that a structure of this size cannot be intervened without any problems. Both the fact that critical services are running on it and that very serious financial losses can be experienced in the event of a problem can cause obstacles by the management in making the necessary improvements and/or security additions.</p><p style="font-weight: 400;">To prevent similar situations from occurring, Cisco aims to prevent such problems with its Cyber ​​Vision product, which increases the visibility of OT environments, reveals existing threats, and creates existing inventories.</p><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20201126170003.png" /></p><p style="font-weight: 400;">Cyber ​​Vision to your institution;</p><ul><li style="font-weight: 400;">Providing full visibility for OT environments (assets and processes)</li><li style="font-weight: 400;">Real-time monitoring of your dynamically changing inventory and network</li></ul><p style="font-weight: 400;">( Dynamic Asset Management and Monitoring )</p><ul><li style="font-weight: 400;">Providing the same information security for the OT network as for IT,</li><li style="font-weight: 400;">It will take your organization's security to the next level with comprehensive threat intelligence.</li></ul><p style="font-weight: 400;"><b><strong>Security Assessments</strong></b></p><p style="font-weight: 400;">Securing your OT infrastructure starts with a clear view of your asset inventory, communication models, and accurately positioned network maps (network topologies). Cyber ​​Vision automatically generates a list of your industrial assets and detailed network maps.</p><p> <img decoding="async" src="https://www.morten.com.tr/UpImages/image20201126170025.png" /></p><p style="font-weight: 400;"><b><strong>Network Segmentation</strong></b></p><p style="font-weight: 400;">Industrial security applications (best practices) recommend that networks be moved to compatible architectures, and in order to prevent a possible attack from spreading to the entire architecture, network segmentation and the ability to create policies between these segmented networks provide great benefits to institutions in terms of information security vulnerabilities. In this area, Cisco Cyber ​​Vision product integrates with Cisco ISE (Identity Service Engine) to create asset groups and enables segmentation policies to be applied dynamically (dynamic network segmentation).</p><p style="box-sizing: inherit; margin-bottom: 1rem; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: 'Open Sans', sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: center;"> <img decoding="async" style="box-sizing: inherit; vertical-align: middle; border-width: 0px; border-style: initial; display: inline-block; padding-bottom: 10px; padding-right: 10px;" src="https://www.morten.com.tr/UpImages/image20201126170047.png" /></p><p style="box-sizing: inherit; margin-bottom: 1rem; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: 'Open Sans', sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: center;"><img decoding="async" style="box-sizing: inherit; vertical-align: middle; border-width: 0px; border-style: initial; display: inline-block; padding-bottom: 10px; padding-right: 10px;" src="https://www.morten.com.tr/UpImages/image20201126170225.png" /></p><p style="font-weight: 400;">Standard IT cyber security solutions and methods may not always be sufficient to meet OT cyber security needs. In response to this need, Cisco has introduced its Cyber ​​Vision product for the security of OT technologies.</p><p style="font-weight: 400;"><b><strong>Chapter 2: Cyber ​​Vision Installation</strong></b></p><p style="font-weight: 400;">To download Cyber ​​Vision Center software;</p><p style="font-weight: 400;"><a href="https://software.cisco.com/download/home/286325414/type">https://software.cisco.com/download/home/286325414/type</a></p><p style="font-weight: 400;">Features required for a virtual environment;</p><p style="font-weight: 400;">You can install and test Cyber ​​Vision Center in a virtual environment with 2 CPUs, 6G RAM and 50GB HDD.</p><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20201126170303.png" /></p><p style="font-weight: 400;">The installation steps are as follows;</p><ul><li style="font-weight: 400;">Cyber ​​Vision software is downloaded from Cisco's website<img decoding="async" src="https://www.morten.com.tr/UpImages/image20201126170318.png" /></li></ul><ul><li style="font-weight: 400;">The downloaded .ova file is uploaded to the virtual environment.</li></ul><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20201126170421.png" /></p><ul><li>The installed virtual machine is opened and the system is started.</li></ul><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20201126170431.png" /></p><ul><li style="font-weight: 400;">Click “Start” to start the Cyber ​​Vision Center installation.</li></ul><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20201126170446.png" /></p><ul><li style="font-weight: 400;">Relevant DHCP settings are made.</li></ul><div><p style="box-sizing: inherit; margin-bottom: 1rem; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: 'Open Sans', sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: center;" align="center"><img decoding="async" style="box-sizing: inherit; vertical-align: middle; border-width: 0px; border-style: initial; display: inline-block; padding-bottom: 10px; padding-right: 10px;" src="https://www.morten.com.tr/UpImages/image20201126170545.png" /></p><p style="box-sizing: inherit; margin-bottom: 1rem; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: 'Open Sans', sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: center;" align="center"><img decoding="async" style="box-sizing: inherit; vertical-align: middle; border-width: 0px; border-style: initial; display: inline-block; padding-bottom: 10px; padding-right: 10px;" src="https://www.morten.com.tr/UpImages/image20201126170624.png" /></p><ul><li style="font-weight: 400;">Once the configuration is complete, the necessary information is entered into the Cyber ​​Vision Center interface.</li></ul><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20201126170649.png" /></p><p style="font-weight: 400;">The Cyber ​​Vision Center main screen is designed very simply and the Dashboard screen includes event levels with descriptions as critical, high, medium and low.</p><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20201126170700.png" /></p><p style="font-weight: 400;">If we need to summarize Cyber ​​Vision in 4 main features, we can summarize it as collecting all the information of the inventories by collecting meaningful information from your OT network via passive sensors using DPI technology; taking these inventories under control, generating an alarm when any possible opening/anomaly is detected and finally, providing comparative data for taking action by examining the records of past traffic movements.</p><p style="box-sizing: inherit; margin-bottom: 1rem; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: 'Open Sans', sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: center;"><img decoding="async" style="box-sizing: inherit; vertical-align: middle; border-width: 0px; border-style: initial; display: inline-block; padding-bottom: 10px; padding-right: 10px;" src="https://www.morten.com.tr/UpImages/image20201126170730.png" /><img decoding="async" style="box-sizing: inherit; vertical-align: middle; border-width: 0px; border-style: initial; display: inline-block; padding-bottom: 10px; padding-right: 10px;" src="https://www.morten.com.tr/UpImages/image20201126170736.png" /></p><p style="box-sizing: inherit; margin-bottom: 1rem; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: 'Open Sans', sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: center;"><img decoding="async" style="box-sizing: inherit; vertical-align: middle; border-width: 0px; border-style: initial; display: inline-block; padding-bottom: 10px; padding-right: 10px;" src="https://www.morten.com.tr/UpImages/image20201126170744.png" /><img decoding="async" style="box-sizing: inherit; vertical-align: middle; border-width: 0px; border-style: initial; display: inline-block; padding-bottom: 10px; padding-right: 10px;" src="https://www.morten.com.tr/UpImages/image20201126170748.png" /></p><p style="font-weight: 400;">There are 2 options for Cyber ​​Vision Licensing. Essential and Advantage licenses. In addition </p><p style="font-weight: 400;"><img decoding="async" style="box-sizing: inherit; vertical-align: middle; border-width: 0px; border-style: initial; display: inline-block; color: #444444; font-family: 'Open Sans', sans-serif; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; text-align: center; background-color: #fefefe; padding-bottom: 10px; padding-right: 10px;" src="https://www.morten.com.tr/UpImages/image20201126170805.png" /></p><p style="font-weight: 400;">As with many of Cisco's security products, a 90-day Essential or Advantage trial license is available.</p><p style="box-sizing: inherit; margin-bottom: 1rem; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: 'Open Sans', sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: center;" align="center"><img decoding="async" style="box-sizing: inherit; vertical-align: middle; border-width: 0px; border-style: initial; display: inline-block; padding-bottom: 10px; padding-right: 10px;" src="https://www.morten.com.tr/UpImages/image20201126170813.png" /></p><p style="box-sizing: inherit; margin-bottom: 1rem; font-size: 14px; line-height: 25px; text-rendering: optimizelegibility; color: #444444; font-family: 'Open Sans', sans-serif; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; background-color: #fefefe; text-align: center;" align="center"><img decoding="async" style="box-sizing: inherit; vertical-align: middle; border-width: 0px; border-style: initial; display: inline-block; padding-bottom: 10px; padding-right: 10px;" src="https://www.morten.com.tr/UpImages/image20201126170821.png" /></p><p style="font-weight: 400;">Cyber ​​Vision consists of 2 main components, Cyber ​​vision center (Hardware and Software) and Sensors. Cyber ​​vision center can be installed in a virtual environment.</p><p style="font-weight: 400;">You can monitor security activities in your OT network from the Cyber ​​Vision Center interface.</p><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20201126170831.png" /></p></div><p>With the Network Explore feature, the map of which TAGGED or unTAGED devices are communicating with whom will increase the visibility of your network.</p><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20201126170838.png" /></p><p>You can easily access reports on what type of vulnerabilities there are in your network, the score information, and the vulnerabilities that need to be closed.</p>								</div>
				</div>
					</div>
		</div>
					</div>
		</section>
				</div><p>The post <a href="https://www.morten.com.tr/en/operasyonel-teknolojilerin-guvenligi-icin-cisco-cyber-vision/">Operasyonel Teknolojilerin ( OT ) Güvenliği için Cisco Cyber Vision</a> appeared first on <a href="https://www.morten.com.tr/en">Morten</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Cisco SecureX ile Tüm Güvenlik Ürünlerinizin Görünürlüğünü Arttırın!</title>
		<link>https://www.morten.com.tr/en/cisco-securex-ile-guvenlik-urunlerinizin-gorunurlugunu-arttirin/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=cisco-securex-ile-guvenlik-urunlerinizin-gorunurlugunu-arttirin</link>
		
		<dc:creator><![CDATA[dvususer]]></dc:creator>
		<pubDate>Wed, 08 Jul 2020 08:47:34 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Cisco]]></category>
		<guid ispermalink="false">https://tecnologia.vamtam.com/?p=2819</guid>

					<description><![CDATA[<p>Yazar:  Fatih Ermiş &#124; Çözüm Danışmanı</p>
<p>Cisco SecureX platformu ağınızda bulunan tüm güvenlik ürünleri ile entegre olarak görünürlüğü arttırdığı gibi, güvenlik analizleri yapmakta,</p>
<p>The post <a href="https://www.morten.com.tr/en/cisco-securex-ile-guvenlik-urunlerinizin-gorunurlugunu-arttirin/">Cisco SecureX ile Tüm Güvenlik Ürünlerinizin Görünürlüğünü Arttırın!</a> appeared first on <a href="https://www.morten.com.tr/en">Morten</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div data-elementor-type="wp-post" data-elementor-id="2819" class="elementor elementor-2819" data-elementor-post-type="post">
						<section class="elementor-section elementor-top-section elementor-element elementor-element-21497814 elementor-section-boxed elementor-section-height-default elementor-section-height-default" data-id="21497814" data-element_type="section" data-e-type="section">
						<div class="elementor-container elementor-column-gap-no">
					<div class="elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-62677f3b" data-id="62677f3b" data-element_type="column" data-e-type="column">
			<div class="elementor-widget-wrap elementor-element-populated">
						<div class="elementor-element elementor-element-79725477 elementor-widget elementor-widget-text-editor" data-id="79725477" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<p><strong>Author:  Fatih Ermiş | Solution Consultant</strong></p><p style="font-weight: 400;">The Cisco SecureX platform integrates with all security products in your network to increase visibility, perform security analysis, detect threats, and automate workflows to accelerate response to these threats.</p><p style="font-weight: 400;">SecureX, offered as a cloud solution by Cisco, is a platform that simplifies the methods of eliminating the complexities experienced by information security managers and collects visibility at a single point. </p><p style="font-weight: 400;"><img decoding="async" src="https://www.morten.com.tr/UpImages/image20200708171606.png" /></p><p>Cisco SecureX threat response uses an integrated security architecture that automates integrations across Cisco Security products to simplify threat investigations and responses. With Cisco SecureX threat response, you can paste these observables into the “Investigate” user interface or use an easy browser plug-in on any web page.</p><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20200708171615.png" /></p><p style="font-weight: 400;">It brings all information from intelligence sources and security products together on a single screen and displays results in seconds. It will become indispensable for SOC teams with a single console for direct remediation, access to threat intelligence, and tools such as casebooks and incident managers. It overcomes many challenges by making threat investigations faster, simpler, and more effective. Leveraging the success of Threat Response with Security Operations teams, SecureX takes this foundation to the next level to increase collaboration between SecOps, NetOps, and ITOps. SecureX simplifies security by:</p><ul style="font-weight: 400;"><li>Integrate visibility into all solutions that make up our customers' security inventories at a single point.</li><li>Providing added value to your customers in a very short time through a completely cloud-based and multi-user solution.</li><li>Analyze activities and data across network traffic from millions of endpoints, switches, and routers.</li><li>Determine who/what is being targeted in your network in a short time,</li><li>Providing the opportunity to take rapid action against threats by feeding threat intelligence sources.</li><li>Bringing the power of Cisco Talos to our customers’ security operations center (SOC) instantly.</li></ul><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20200708171625.png" /></p><ul><li>Automation is enabled in workflows to maximize operational efficiency by eliminating repetitive tasks and human error.</li></ul><p><img decoding="async" src="https://www.morten.com.tr/UpImages/image20200708171641.png" /></p><ul style="font-weight: 400;"><li> To increase visibility into our customers' security products and networks while consolidating and eliminating complexity.</li></ul><p style="font-weight: 400;"> </p><p style="font-weight: 400;"><b><strong>Results of Cisco SecureX;</strong></b></p><p style="font-weight: 400;"> </p><ul style="font-weight: 400;"><li>To have a large number of security outputs in a shorter time,</li><li>Reduces mean time to repair (MTTR) and exposures,</li><li>Increases the efficiency of SOC teams,</li><li>Provides research and intervention functions through a single window,</li><li>Providing automation and orchestration capabilities</li><li>Provides savings;</li></ul><p style="font-weight: 400;">o   It reduces personnel costs,</p><p style="font-weight: 400;">o It saves Operation and Development time,</p><p style="font-weight: 400;">o It saves analyst time,</p><p style="font-weight: 400;">o It saves processing time and software budget,</p><p style="font-weight: 400;">o   It reduces potential financial and legal exposure,</p>								</div>
				</div>
					</div>
		</div>
					</div>
		</section>
				</div><p>The post <a href="https://www.morten.com.tr/en/cisco-securex-ile-guvenlik-urunlerinizin-gorunurlugunu-arttirin/">Cisco SecureX ile Tüm Güvenlik Ürünlerinizin Görünürlüğünü Arttırın!</a> appeared first on <a href="https://www.morten.com.tr/en">Morten</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Son Kullanıcı Güvenlik Görünürlüğü Bundan Sonra Sorun Olmayacak!</title>
		<link>https://www.morten.com.tr/en/son-kullanici-guvenlik-gorunurlugu-bundan-sonra-sorun-olmayacak-2/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=son-kullanici-guvenlik-gorunurlugu-bundan-sonra-sorun-olmayacak-2</link>
		
		<dc:creator><![CDATA[dvususer]]></dc:creator>
		<pubDate>Wed, 10 Jun 2020 13:34:02 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<guid ispermalink="false">http://10.41.150.12/?p=989967</guid>

					<description><![CDATA[<p>Yazar: Fatih ERMİŞ &#124; Çözüm Danışmanı Cisco Endpoint Security Analytics ( CESA ) Cisco en az Network alanında olduğu kadar Güvenlik alanında çok ciddi yatırımlarda bulunmaktadır. Son yıllarda yaptığı büyük yatırımlarla birlikte network güvenliği alanında olduğu kadar uç noktaların ( son kullanıcıların ) da güvenliği için birçok çözüm sunmaktadır. Uç nokta güvenliği için geliştirilmiş olan...</p>
<p>The post <a href="https://www.morten.com.tr/en/son-kullanici-guvenlik-gorunurlugu-bundan-sonra-sorun-olmayacak-2/">Son Kullanıcı Güvenlik Görünürlüğü Bundan Sonra Sorun Olmayacak!</a> appeared first on <a href="https://www.morten.com.tr/en">Morten</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div data-elementor-type="wp-post" data-elementor-id="989967" class="elementor elementor-989967" data-elementor-post-type="post">
				<div class="elementor-element elementor-element-aa97bc5 e-flex e-con-boxed e-con e-parent" data-id="aa97bc5" data-element_type="container" data-e-type="container">
					<div class="e-con-inner">
				<div class="elementor-element elementor-element-13945a2 elementor-widget elementor-widget-text-editor" data-id="13945a2" data-element_type="widget" data-e-type="widget" data-widget_type="text-editor.default">
				<div class="elementor-widget-container">
									<strong>Yazar: Fatih ERMİŞ | Çözüm Danışmanı</strong>
<p style="font-weight: 400;"><b><strong>Cisco Endpoint Security Analytics ( CESA )</strong></b></p>
<p style="font-weight: 400;">Cisco makes serious investments in the field of Security as well as in the field of Network. With the large investments it has made in recent years, it offers many solutions for the security of endpoints (end users) as well as network security. These solutions developed for endpoint security are successful products that “protect against advanced malware threats”; AMP (Advanced Malware Protection) and Cisco Umbrella (DNS Security) products. Although these products provide security against many of the threats that occur for endpoints, there were still unresolved security gaps in endpoints.</p>
<p style="font-weight: 400;">These developments in Cisco endpoint security are recently emerging to fuel the Endpoint Security Analytics (CESA) solution. CESA, along with the Cisco AnyConnect Network Visibility Module (NVM Agent), maximizes endpoint and user network visibility by collecting endpoint telemetry and integrating telemetry data with Splunk Enterprise. It is based on nvzFlow (en-vizzy-flow), the foundation of NVM technology. Cisco AnyConnect NVM supports the Cisco Network Visibility Stream protocol, or nvzFlow for short. The protocol is designed to provide endpoints with better visibility into the network by augmenting standard IPFIX with a small set of high-value endpoint binding data.</p>
 <img decoding="async" src="https://www.morten.com.tr/UpImages/image20200610212356.png" />
<p style="font-weight: 400;"><b><strong>CESA Story</strong></b></p>
<p style="font-weight: 400;">The CESA solution was developed by the Cisco Security CTO Office. Cisco Information Security Teams were not able to obtain all the endpoint data they needed to perform incident response and were experiencing many difficulties in gaining endpoint visibility. Together with Cisco Information Security Teams, they integrated Cisco AnyConnect and Splunk products to solve some of the problems. Many Cisco employees were working off-site; they had some blind spots in the endpoint security area because they were connected to both corporate and cloud resources at the same time. They needed a way to collect and store at least a year of data for incident analysis. They also needed real-time information to see what was happening on the network. CESA was developed as an answer to all this confusion.</p>
<p style="font-weight: 400;"><b><strong>CESA Benefits</strong></b></p>
<p style="font-weight: 400;" class="translation-block"><b><strong>Endpoints (End User)  provide device visibility</strong></b>:  It helps find endpoint threats at zero point without problems such as malware, dangerous user behavior, data leakage, etc., provides visibility into which applications or software as a service (SaaS) are in use, and provides visibility into device types and operating systems in the network for incident response.</p>
<img decoding="async" src="https://www.morten.com.tr/UpImages/image20200610212446.png" />
<p style="font-weight: 400;" class="translation-block"><b><strong>Endpoints (End User) Allows tracking wherever they go</strong></b>: It ensures whether the device is connected to the network through endpoint telemetry.</p>
<p style="font-weight: 400;" class="translation-block"><b><strong>Quickly and easily find searches</strong></b>: Leverages existing AnyConnect telemetry (no additional endpoint agents required), instantly gain insights from pre-built Splunk dashboards, and easily find the questions and answers you need through searches.</p>
<p style="font-weight: 400;" class="translation-block"><b><strong>Provides predictable costs</strong></b>: Can be budgeted per endpoint rather than per variable volume of data transferred to Splunk.</p>
<p style="font-weight: 400;" class="translation-block"><b><strong>Support for different devices</strong></b>: Windows, macOS, Linux and Samsung Knoxenabled devices are supported.</p>
<img decoding="async" src="https://www.morten.com.tr/UpImages/image20200610212540.png" />
<p style="font-weight: 400;"><b><strong>How Does CESA Work?</strong></b></p>
<p style="font-weight: 400;">Many companies want to know what their employees and devices are doing at work, on the road, or at the coffee shop. That’s why Cisco invented the AnyConnect Network Visibility Module (NVM) to provide unprecedented endpoint behavioral visibility.</p>
<p style="font-weight: 400;">Cisco AnyConnect NVM is enabled with AnyConnect agent version 4.2 and is supported in later versions. NVM can generate IPFIX endpoint telemetry when the device is in use, even when the device is off the network. This data is streamed to stream collectors and forwarded to Splunk, where it becomes instantly available. With the “Splunk NVM” application developed by Cisco, users get ready-to-use dashboards so they can quickly understand the data and start using it to answer critical security questions (incident response).</p>
<p style="font-weight: 400;">CESA can be used as a standalone NVM analytics deployment or added to an existing Splunk Enterprise environment. Cisco Endpoint Security Analytics built on Splunk provides deep endpoint visibility. Cisco AnyConnect NVM is powered by Splunk Enterprise.</p>
<img decoding="async" src="https://www.morten.com.tr/UpImages/image20200610212610.png" />
<p style="font-weight: 400;">The AnyConnect Network Visibility Module provides visibility into mobile devices with rich user behavior data through IPFIX data (IP Flow Information Export), allowing employees to monitor whether they are endpoints and threatening their company’s security. The behavioral data generated by NVM is complementary to antimalware agents that primarily focus on file analysis, such as Cisco Advanced Malware Protection (AMP) for Endpoints.</p>
<p style="font-weight: 400;">NVM telemetry is captured and analyzed in CESA Built-Splunk to address endpoint security use cases such as:</p>
<p style="font-weight: 400;">Data loss detection</p>

<ul style="font-weight: 400;">
 	<li> Data accumulation activity — download and upload behavior</li>
 	<li> Excessive filtering — loading external domains and network shares</li>
</ul>
<p style="font-weight: 400;">Zero-day malware and threat detection</p>

<ul style="font-weight: 400;">
 	<li> Unusual application/process behavior — running on standard or non-standard ports</li>
 	<li> Command and Control detection — creation of connections to new, unusual or bad domains</li>
 	<li> Threat detection – hosting domain correlation</li>
</ul>
<p style="font-weight: 400;">Zero trust monitoring</p>

<ul style="font-weight: 400;">
 	<li> Off-network device monitoring — user, device, traffic, application and data behavior monitoring</li>
 	<li> SaaS usage behavior — Monitoring SaaS services</li>
 	<li> Untrusted connections — track who connects to untrusted networks</li>
</ul>
<p style="font-weight: 400;">Unapproved apps and SaaS visibility</p>

<ul style="font-weight: 400;">
 	<li> Access to SaaS domains — connections and SaaS behavior are used</li>
 	<li> Application and process visibility — find applications and processes running on devices</li>
</ul>
<p style="font-weight: 400;">Security evasion and user attribution</p>

<ul style="font-weight: 400;">
 	<li> Endpoint security applications — detecting if they are disabled</li>
 	<li> CESA — detecting whether it is disabled</li>
 	<li> Attribute user network access — user activity goes down to the network interface controller level</li>
</ul>
<p style="font-weight: 400;">Asset inventory</p>

<ul style="font-weight: 400;">
 	<li> Device type and OS inventory — can be defined and reported by type</li>
 	<li> Data privacy compliance</li>
</ul>								</div>
				</div>
					</div>
				</div>
				</div><p>The post <a href="https://www.morten.com.tr/en/son-kullanici-guvenlik-gorunurlugu-bundan-sonra-sorun-olmayacak-2/">Son Kullanıcı Güvenlik Görünürlüğü Bundan Sonra Sorun Olmayacak!</a> appeared first on <a href="https://www.morten.com.tr/en">Morten</a>.</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>