Security

 View Only
last person joined: 19 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Clearpass CoA and multiple Switch OS

This thread has been viewed 20 times
  • 1.  Clearpass CoA and multiple Switch OS

    Posted Jan 06, 2022 05:46 AM
    Hello,

    I Have a question about clearpass CoA and multiple switchen falvours.

    When you have a service in clearpass for mac-authentication at the end you can do a CoA (bounce port) but this can only filled in for one vendor ... for example only Aruba OS. But what if you have a mix of comware - Aruba Os and Aruba CX? I don't see any option to add a second option ...

    Does this mean that we need a service for every switch flavour (OS)? Because this is a lot a work and very confusion at the end and makes room for error

    ------------------------------
    Peter Van Rietvelde
    ------------------------------


  • 2.  RE: Clearpass CoA and multiple Switch OS

    MVP GURU
    Posted Jan 06, 2022 08:50 AM
    Hi Peter,

    Yes, a service by CoA type... , you can use Network Device Group for help

    ------------------------------
    PowerArubaSW : Powershell Module to use Aruba Switch API for Vlan, VlanPorts, LACP, LLDP...

    PowerArubaCP: Powershell Module to use ClearPass API (create NAD, Guest...)

    PowerArubaCL: Powershell Module to use Aruba Central

    PowerArubaCX: Powershell Module to use ArubaCX API (get interface/vlan/ports info)..

    ACEP / ACMX #107 / ACDX #1281
    ------------------------------



  • 3.  RE: Clearpass CoA and multiple Switch OS

    Posted Jan 08, 2022 03:20 AM
    Yes. This is a real nuisance when doing multivendor implementation. Maybe it is worth to request this feature in Aruba Innovation zone.

    Best, Gorazd

    ------------------------------
    Gorazd Kikelj
    ------------------------------



  • 4.  RE: Clearpass CoA and multiple Switch OS

    MVP EXPERT
    Posted Jan 08, 2022 04:16 AM
    Think I suggested doing something about that a few years ago, :-(

    Sent from my iPhone




  • 5.  RE: Clearpass CoA and multiple Switch OS

    MVP EXPERT
    Posted Jan 07, 2022 04:10 AM
    Have to agree, when you are providing same functionality over multiple vendor switches, its a pain to have to have different services just for the CoA functionality
    A