Security

 View Only
  • 1.  Intune attributes

    Posted Apr 21, 2023 03:36 AM

    hi Airheads,
    i have a customer running 6.10 Clearpass and we are trying to make decisions made on Intune attributes.
    we have the app installed and we can see about 40 attributes downloaded to endpoint database for all Intune registered clients.
    This works abaolutely fine, however we are struggling to find a way of changing an attribute in intune\azure that will then get downloaded
    and then we use the change as a means of revoking the client.
    I know you can change the "registered" attribute but the customer is reluctant to use that one as re-registering the device is a bit painful.
    any ideas ?
    Peter



  • 2.  RE: Intune attributes

    Posted Apr 21, 2023 04:05 AM




  • 3.  RE: Intune attributes

    Posted Apr 21, 2023 04:08 AM

    hello Airheads ,
    update on my original post.
    the screenshot i've just posted shows "Intune device category display name" attribute = LOST.
    Anyone ever used something similar ?




  • 4.  RE: Intune attributes

    Posted Apr 23, 2023 07:46 PM

    What method are you using to sync?




  • 5.  RE: Intune attributes

    Posted Apr 25, 2023 07:27 AM

    The new attribute is supposed to be synchronized to the ClearPass endpoint database at the next synchronization cycle.

    Depending on how you evaluate the Intune attributes:
    - using the endpoint database: after the next sync, the first re-authentication would take the new attributes
    - using realtime (HTTP) check: the first re-authentication would would take the new attributes.

    So one of the 'prerequisites' would be that you have re-authentication configured, and depending on that interval and the sync interval in the extension , that determines how quick the new values are taken into account.



    ------------------------------
    Herman Robers
    ------------------------
    If you have urgent issues, always contact your Aruba partner, distributor, or Aruba TAC Support. Check https://www.arubanetworks.com/support-services/contact-support/ for how to contact Aruba TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.

    In case your problem is solved, please invest the time to post a follow-up with the information on how you solved it. Others can benefit from that.
    ------------------------------