Security

last person joined: 21 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Radius CoA for Onguard

This thread has been viewed 8 times
  • 1.  Radius CoA for Onguard

    Posted Jun 03, 2015 09:00 AM

    Hi All,

    Is there any need to have radius CoA for Onguard to work.

     



  • 2.  RE: Radius CoA for Onguard

    EMPLOYEE
    Posted Jun 03, 2015 09:04 AM
    If you want to change a users role, you'll need a CoA.

    Thanks,
    Tim


  • 3.  RE: Radius CoA for Onguard

    Posted Jun 03, 2015 09:09 AM

    I just want to change the VLAN,

    Means if device is healthy then healthy VLAN, if not then quarantine VLAN.



  • 4.  RE: Radius CoA for Onguard

    EMPLOYEE
    Posted Jun 03, 2015 09:15 AM
    You may want to use bounce client instead. Some clients don't like having the VLAN changed out from under them.


    Thanks,
    Tim


  • 5.  RE: Radius CoA for Onguard

    Posted Jun 09, 2015 11:31 AM

    Thanks Tim,

    I configured Onguard and Its working fine, i am bouncing the client to change the VLAN.

    Now I have one question..

    I configured posture to check McAfee AV with latest version.. But donno from where clearpass will collect the information weather the AV is latest or not.



  • 6.  RE: Radius CoA for Onguard
    Best Answer

    EMPLOYEE
    Posted Jun 09, 2015 11:52 AM

    They are updated in the background as part of your subscription ID. It is recommended to allow a few revisions back (N-3).

     

    profile-updates.PNG



  • 7.  RE: Radius CoA for Onguard

    Posted Jun 09, 2015 12:25 PM

    Thanks, got my answer.