Security

last person joined: 18 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Clearpass CP-HW-500 maximum number of guest accounts (not endpoints)

This thread has been viewed 4 times
  • 1.  Clearpass CP-HW-500 maximum number of guest accounts (not endpoints)

    Posted Nov 18, 2014 07:18 PM

    I know how the endpoint licences are for Clearpass, but how many guest accounts (inactive and active) can Clearpass CP-HW-500 retain ?

     



  • 2.  RE: Clearpass CP-HW-500 maximum number of guest accounts (not endpoints)

    Posted Nov 18, 2014 08:28 PM
    250


  • 3.  RE: Clearpass CP-HW-500 maximum number of guest accounts (not endpoints)
    Best Answer

    Posted Nov 18, 2014 10:48 PM

    @Smithsa3 wrote:

    ........... but how many guest accounts (inactive and active) can Clearpass CP-HW-500 retain ?

     



    If you are referring to how many guest accounts can be created and stored in the guest user database, there is no real software limit.  How many do you need to support on that platform?



  • 4.  RE: Clearpass CP-HW-500 maximum number of guest accounts (not endpoints)

    Posted Nov 18, 2014 11:08 PM

    In theory... the limit of the disk.... in practise it will be managed by how you set cleanup and the mode of the box.... i.e. in High Capacity Guest Mode....

     

    Session Log Details in the database

    3 Days

    Known Endpoints

    3 Days

    Unknown Endpoints

    3 Days

    Profiled Unknown Endpoints

    3 Days

    Profiled Known Endpoints

    True

    Expired Guest Accounts

    10 Days

    Old Audit Records

    10 Days

     

     



  • 5.  RE: Clearpass CP-HW-500 maximum number of guest accounts (not endpoints)

    Posted Nov 19, 2014 04:19 AM

    Hi,

    We have a 500Gb disk that is hwoing 86% free - so we have 430Gb free (we have 800 on there at present as well as the system files)

    Does anyone know how much disk space each 1000 accounts require ?  I may have to be able to store 210,000.

     

    Thanks

     

     



  • 6.  RE: Clearpass CP-HW-500 maximum number of guest accounts (not endpoints)

    EMPLOYEE
    Posted Nov 19, 2014 04:24 AM
    Each account is a very small byte. Less than a Meg. Why would you keep 210,000 accounts on a cp500?


  • 7.  RE: Clearpass CP-HW-500 maximum number of guest accounts (not endpoints)

    Posted Nov 19, 2014 04:32 AM

    There is a reason that we may need to store 'inactive' 200K accounts from legacy system that we need to replace.

    It will all depend on the disk requirements, hence my questions around how many accounts can a CP-500-HW store.  Is there any evidence from Aruba as to how much space is required for each arecord on the disk ?



  • 8.  RE: Clearpass CP-HW-500 maximum number of guest accounts (not endpoints)

    EMPLOYEE
    Posted Nov 19, 2014 04:43 AM
    It's just a database entry and it comes down to how long the username/password and any extra information that is stored with the users account. Every account is different size so there is no set account size calculation. The accounts will not be your issue it will be the logs and how much historical information you keep. Just remember you can only have 500 unique Mac address auth to a CP-500 in a 24 hour period