Hello,
Trying to push Clearpass instead of another brand through a proof of concept. "Clearpass is amazing so no problem" I hear you say? :smileyvery-happy:
You would be right, but the competition has one major advantage.
Apparently when a user authenticates on that B-brand device the users authentication status is relayed to a few external devices (i.e. bluecoat proxy) so that the user does not need to log in additionally on those devices. Furthermore bluecoat can apparently use the info to give different permissions to that user.
Now I hear Clearpass might support SSO in a future version but we can't wait for that.
Sofar all we've come up with is to drop the different users (groups realy) into different vlans so bluecoat can use the subnet and make decisions that way but that has poor scaleable at best and a plethora of other problems associated with it.
So please, who has a trick to relay extra info to that Bluecoat? Doesn't have to be clearpass config.. if we can use bluecoat tricks to do the same that's fine as well.