Security

 View Only
Expand all | Collapse all

Clearpas cleanup of profiled unknown endpoints

This thread has been viewed 16 times
  • 1.  Clearpas cleanup of profiled unknown endpoints

    Posted Nov 01, 2021 04:57 AM
      |   view attached
    Hi

    Clearpass 6.10.2

    Cluster has been accepting  DHCP collector information since before Feb 21, initially running 6.9.6, upgraded to 6.10.2 last  Friday

    All the cluster does at present is accept DHCP info, no authentication so everything in end[points is flagged as profiled and unknown.

    Cleanup option for profiled/unknown devices is 90 days (as shown)

    Problem is that even for devices last seen in March they're still in endpoints and haven't been flushed out

    Cleanup options in attached image

    ------------------------------
    Alex Sharaz
    ------------------------------


  • 2.  RE: Clearpas cleanup of profiled unknown endpoints

    Posted Nov 04, 2021 05:19 AM
    The cleanup has changed from 'date added' to 'last seen' in ClearPass 6.10 versus the older versions.

    I just checked, and the 'last seen' (shown as Updated at in the Endpoint) seems to be set to the time of the upgrade for devices already in the endpoint database during the upgrade; which makes sense to me. For me that is May 2021, so past the 90 days... but if you just upgraded it may take another 90 days for the cleanup to become active.

    If you can't wait, the API may allow you to create your own filters and (semi-)automated run the cleanup according to your own rules.


    ------------------------------
    Herman Robers
    ------------------------
    If you have urgent issues, always contact your Aruba partner, distributor, or Aruba TAC Support. Check https://www.arubanetworks.com/support-services/contact-support/ for how to contact Aruba TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.

    In case your problem is solved, please invest the time to post a follow-up with the information on how you solved it. Others can benefit from that.
    ------------------------------