Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Guest + VLAN derivation

This thread has been viewed 1 times
  • 1.  Guest + VLAN derivation

    Posted Aug 16, 2017 05:00 AM

    Hello,

     

    I'm using the Guest MAC Caching Template which is working fine so far. Now I want to add VLAN derivation for the different Locations to it.

     

    Therefore my tought was to add an enforcement profile to the MAC Authentication Service, because we have L2 Auth and either way if MAC Caching failes or succeeds the Radius Reponse includes Aruba-User-VLAN.

     

    In the Access Tracker I can see the correct RADIUS Response set, but I feel like that the Response doesnt get set, because authentication ist Rejected.

     

    Is this true? And if yes, how would u guys do the VLAN derivation in combination with the Guest Template.

     

    Greets



  • 2.  RE: Guest + VLAN derivation

    EMPLOYEE
    Posted Aug 16, 2017 07:36 AM
    Attributes are only sent on a RADIUS accept.