Security

Reply
New Contributor
Posts: 3
Registered: ‎04-15-2014

ClearPass 6.2 static host list management

Hi,

 

We would like to use regular expressions to authenticate hosts on our network.

For example, allow host using vendor part of MAC address (OUI).

CP.png

 

The problem is that we don't understand how to make regular expressions. We are a little bit lost with . or * !

 

Thank you.

Regards

MVP
Posts: 4,008
Registered: ‎07-20-2011

Re: ClearPass 6.2 static host list management

Use this instead :

 

782BCB*

Thank you

Victor Fabian
Lead Mobility Engineer @ Integration Partners
AMFX | ACMX | ACDX | ACCX | CWAP | CWDP | CWNA
Aruba
Posts: 1,635
Registered: ‎04-13-2009

Re: ClearPass 6.2 static host list management

Thanks Victor, didn't realize you could even use an * for the RegEx field.    @bencoolen; if you need some added flexibility, the regular expression you were looking for is the following. 

 

78-2b-cb-([0-9A-F]{2}-){2}([0-9A-F]{2})$

 

 

------------------------------------------------
Systems Engineer, Northeast USA
ACCX | ACDX | ACMX

New Contributor
Posts: 3
Registered: ‎04-15-2014

Re: ClearPass 6.2 static host list management

Hello,

 

Thank you for your answer. This is not working. The host I use to perform this test is not recognized and so, not allowed on my network. It sounds good but do you know if we have to define role mapping condition differently than a classic static host list (list of MAC addresses, not regex).

 

The above condition uses normal static list. The second one is the regex.

CP2.png

Guru Elite
Posts: 7,836
Registered: ‎09-08-2010

Re: ClearPass 6.2 static host list management

Why not just do



Client-Mac-Address BEGINS_WITH (oui)

Tim Cappalli | Aruba ClearPass TME
@timcappalli | ACMX #367 / ACCX #480 / ACEAP / CWSP
New Contributor
Posts: 3
Registered: ‎04-15-2014

Re: ClearPass 6.2 static host list management

Hello,

 

This is what we do right now :smileyhappy: We manage that in the rule mappings.

Using groups allow us to give names (e.g. Xerox printers, Samsung printers for the role : Printers)

 

Thank you

Search Airheads
Showing results for 
Search instead for 
Did you mean: