Controllerless Networks

last person joined: 12 hours ago 

Instant Mode - the controllerless Wi-Fi solution that's easy to set up, is loaded with security and smarts, and won't break your budget
Expand all | Collapse all

IAP 205 vlan and device onboard

This thread has been viewed 0 times
  • 1.  IAP 205 vlan and device onboard

    Posted Sep 16, 2016 07:22 AM

    Hi guys,

     

    with ClearPass I already done several times vlan or device tag. Meaning if a device is type android and vlan is x , I send them to a role that i created.

     

    Is it possible to do that on a virtual controller without Clearpass? Devices like android and belonging to a specific vlan add a different role.

     

    I read that identifying  device OS types could be only done with CPPM, but as I see that IAP VC identifies the devices, I have this dought..

     

    Regards

     

    Regards

     

     



  • 2.  RE: IAP 205 vlan and device onboard

    EMPLOYEE
    Posted Sep 16, 2016 07:24 AM
    Yes you can. Same setup.


  • 3.  RE: IAP 205 vlan and device onboard

    Posted Sep 16, 2016 07:30 AM

    @cappalli wrote:
    Yes you can. Same setup.

    But without Clearpass? Client does not have Clearpass..

    Where can I tell if a device is an android and comes from vlan x goes to role A?

     

    Regards



  • 4.  RE: IAP 205 vlan and device onboard

    EMPLOYEE
    Posted Sep 16, 2016 07:33 AM
    Sorry, saw "Onboard" and misunderstood. If not ClearPass, what RADIUS server are you using?


  • 5.  RE: IAP 205 vlan and device onboard

    Posted Sep 16, 2016 08:04 AM

    Hi

     

    I am just seeking information on what Radius we used at the client for config an SSID "corporate" , that uses radius users to authenticate.

     

    I will brief you shortly..



  • 6.  RE: IAP 205 vlan and device onboard

    Posted Sep 16, 2016 10:50 AM

    Got It

     

    One windows for windows authentication and a tek radius for mac authentication.

    Is this scenario is it possible to choose based on device and vlan? like in Clearpass?

     

    Regards



  • 7.  RE: IAP 205 vlan and device onboard

    Posted Sep 19, 2016 05:26 AM

    @cappalli wrote:
    Sorry, saw "Onboard" and misunderstood. If not ClearPass, what RADIUS server are you using?

    Hi,

     

    One Radius for windows authentication and a tek radius for mac authentication.

    In this scenario is it possible to choose based on device and vlan? like in Clearpass?

    Or the cleanner way is to have ClearPAss?

     

    I also saw a document in airheads , using dhcp fingerprint, but seemed confused and not "clean".

     

    Regards

     


  • 8.  RE: IAP 205 vlan and device onboard

    Posted Sep 21, 2016 06:08 AM

    Hi

     

    Is this the wright conclusion?

     

    Regards



  • 9.  RE: IAP 205 vlan and device onboard

    EMPLOYEE
    Posted Sep 21, 2016 06:15 AM

    What kind of authentication are you using?



  • 10.  RE: IAP 205 vlan and device onboard

    Posted Sep 21, 2016 08:29 AM

    Hi

     

    I am using 802.1x with radius server