Hi,
We are trying to use Clearpass Endpoint database with Insight to report on wired devices as they connect to the network.
We have configured the SVI on the switch (ip helper) to forward the DHCP discover packet to Clearpass. We see devices successfully added to the Endpoint database with the respective host, NAD IP and NAD Port.
What we would like to do, on a daily basis, is report on devices connected to the respective NAD IP/NAD Port based on the DHCP discover packet sent to Clearpass. Some devices will always remain on the same switchport, whilst others may have initally been added to the Endpoint database on one switchport only for this to change the next day.
The issue I am experiencing is that when I try to run a report in Insight based on 'Endpoint Overview', I do not see the device in the report beyond the date it was initially added to the Endpoint database. I'm not sure if this is by design as I can't find any documentation to support this?
To be clear, what I was hoping to see and do is the below, is this even possible?
- Device is connected to the network via a wired port
- DHCP discover is forwarded to Clearpass and Clearpass profiles the device using a DHCP fingerprint or NMAP
- Device is added to Endpoint database
- For each day I would like to run a report from Insight to show the devices connected to each NAD IP (based on a filter on the report in Insight)
- For existing devices the port may remain the same or may be updated if the device appears elsewhere in the network
Currently, I can only report on a device based on the date is was first added to the Endpoint database.
Hope this makes sense?