Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Can user derivation rules e used with Aruba Via?

This thread has been viewed 0 times
  • 1.  Can user derivation rules e used with Aruba Via?

    Posted May 09, 2013 10:05 AM

    I have laptop users connecting remotely with Aruba Via.  I also have users that want to be able to connect using iPADs.  I would like all users when connecting with iPADs to be given the user roll "iPAD-user" and with their laptop their normal roll.

     

    Is it possible to use user derivation rules for VIA clients?



  • 2.  RE: Can user derivation rules e used with Aruba Via?

    Posted May 10, 2013 12:53 AM

    VIA user-traffic wont hit the AAA profile (where User-Derivation-Rules are configured), so the answer is NO.

     

    But you can achieve this using server-derivation-rules in the server-group of via profile (if the respective server is capable of classifying the users and sending attributes back to controller, which can be used for role-derivation)