Security

Reply
Frequent Contributor II
Posts: 109
Registered: ‎01-01-2012

control devices to be onboarded

It might be a strange query but how can we control devices to be onboarded.

I know we can do it based on os/device type , importing mac list and assigning attributes..but can we differentiate between two windows devices by any other method

so if i dont want personal laptop to be onboarded but company laptop is required to be onboarded , how can we achieve this

 

-harshad

MVP
Posts: 4,238
Registered: ‎07-20-2011

Re: control devices to be onboarded

In the enforcement policy you can define a rule to only onboard only machine authenticated laptops of course this will work with devices in the domain
Thank you

Victor Fabian
Lead Mobility Engineer @ Integration Partners
AMFX | ACMX | ACDX | ACCX | CWAP | CWDP | CWNA
Frequent Contributor II
Posts: 109
Registered: ‎01-01-2012

Re: control devices to be onboarded

 

How to achive machine authentication based enforcement..

 

My setup is Cisco WLC -ACS based authentication and I will be moving this authentication to WLC-CPPM.

When a new device is connected to onboard SSID how it will get machine authenticaticated - where to enable something like enforce machine authentication as we do in aruba Controller ? - The machine authentication status determination and user athentication will happen in same session ?

 

 

MVP
Posts: 4,238
Registered: ‎07-20-2011

Re: control devices to be onboarded

Please see this thread
http://community.arubanetworks.com/t5/AAA-NAC-Guest-Access-BYOD/Enforce-Machine-Authentication/m-p/58918/highlight/true#M4585
Thank you

Victor Fabian
Lead Mobility Engineer @ Integration Partners
AMFX | ACMX | ACDX | ACCX | CWAP | CWDP | CWNA
Search Airheads
Showing results for 
Search instead for 
Did you mean: