Security

Reply
New Contributor
Posts: 3
Registered: ‎05-19-2015

Wired network protection with Clearpass x Domain

I wanna protect my wired network with Clearpass so clients that are not in my domain can't access it. Today this users, guests or BYOD's, when wired connected, can get an IP address and see network stuffs.

Guru Elite
Posts: 8,456
Registered: ‎09-08-2010

Re: Wired network protection with Clearpass x Domain

Wired 802.1X can be very a large project to setup. Are you working with an Aruba Partner?

 

What kind of switches and what code levels?


Tim Cappalli | Aruba Security TME
@timcappalli | timcappalli.me | ACMX #367 / ACCX #480
New Contributor
Posts: 3
Registered: ‎05-19-2015

Re: Wired network protection with Clearpass x Domain

Hi Tim, 

We have an Aruba partner but i will have their contact in the next days, because the person that have it is out of office.

I wanna that solution for access switches, like Cisco WS2960. My company is 80% Enterasys and 20% Cisco. 

Thanks in advance!

MVP
Posts: 1,413
Registered: ‎11-30-2011

Re: Wired network protection with Clearpass x Domain

what exactly are you asking for here? you want to know if it is possible or do you want a whole design done?

 

as Tim already suggests it is something you want to setup with a partner or SE. there are many things to think about and to test before rolling it out through a whole company.

 

in my experience a proof of concept would be a good first step, get a trial clearpass setup and see if your switches support the needed functionallity. ClearPass can do this easily, but a lot depends on your clients (desktops, printers, ...) and your switches. and then just Cisco and subtype is not enough.

 

when i look at the 2960 with LAN base firm it seems to support some of the important parts:

Flexible authentication that supports multiple authentication mechanisms including 802.1X, MAC Authentication Bypass and web authentication using a single, consistent configuration.

RADIUS Change of Authorization and downloadable calls for comprehensive policy management capabilities.

 

but again, how well it works will have to be tested.

New Contributor
Posts: 3
Registered: ‎05-19-2015

Re: Wired network protection with Clearpass x Domain

Boneyard,

I wanna know if it is possíble and how difficult it is. I am already in contact with an Aruba partner to start a POC. I believe in some days i will be able to share my experience with you.

Thank you very much for your reply!

Regards,

Marcelo

MVP
Posts: 1,413
Registered: ‎11-30-2011

Re: Wired network protection with Clearpass x Domain

that is good to hear Marcelo, in my opinion if you know your limitation then wired dot1x is very possible and ClearPass helps a lot in deploying it.

New Contributor
Posts: 1
Registered: ‎11-11-2015

Re: Wired network protection with Clearpass x Domain

mrodryguez - did you find a solution.

I have similar issue I have clearpass managing the wifi in hotel and want to use it to manage the guest access on the wired points in the room

Guru Elite
Posts: 8,456
Registered: ‎09-08-2010

Re: Wired network protection with Clearpass x Domain

What specifically do you need assistance with?


Tim Cappalli | Aruba Security TME
@timcappalli | timcappalli.me | ACMX #367 / ACCX #480
Search Airheads
Showing results for 
Search instead for 
Did you mean: