Security

 View Only
last person joined: 2 days ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Onboard authentication via domain joined machine

This thread has been viewed 27 times
  • 1.  Onboard authentication via domain joined machine

    Posted Jul 07, 2021 10:34 AM
    Hi everyone,

    I have a new question,
    I only want devices that have joined the domain to be onboard, and devices that have a domain account but have not joined the domain are not onboard.
    Can we do that?

    thanks,

    ------------------------------
    tam nguyen duc
    ------------------------------


  • 2.  RE: Onboard authentication via domain joined machine

    MVP EXPERT
    Posted Jul 07, 2021 12:03 PM
    No. Onboard is not designed for use with managed devices.

    ------------------------------
    Tim C
    ------------------------------



  • 3.  RE: Onboard authentication via domain joined machine

    Posted Jul 07, 2021 10:43 PM
    Hi, Timms
    I use a Domain account for authentication,
    Now I want to check which devices have joined the domain to be onboard.

    ------------------------------
    tam nguyen duc
    ------------------------------



  • 4.  RE: Onboard authentication via domain joined machine

    MVP EXPERT
    Posted Jul 07, 2021 10:48 PM
    Managed devices need to get their certificates and supplicant configuration via GPO or MDM.

    ------------------------------
    Tim C
    ------------------------------



  • 5.  RE: Onboard authentication via domain joined machine

    Posted Jul 08, 2021 04:46 AM
    I want
    User Domain --> cannot be Onboard
    device in Domain + User Domain --> Onboard


    ------------------------------
    tam nguyen duc
    ------------------------------



  • 6.  RE: Onboard authentication via domain joined machine

    MVP EXPERT
    Posted Jul 08, 2021 07:42 AM
    Again, Onboard is not designed for use with managed devices, this is workflow is not really possible.

    ------------------------------
    Tim C
    ------------------------------