Wireless Access

 View Only
last person joined: yesterday 

Access network design for branch, remote, outdoor, and campus locations with HPE Aruba Networking access points and mobility controllers.

Restricting the number of active sessions per user for 802.1x through controller.

This thread has been viewed 5 times
  • 1.  Restricting the number of active sessions per user for 802.1x through controller.

    Posted Jan 30, 2018 01:19 AM

    Hi All,

     

    Is there a way out in Aruba controller, to restrict the maximum number of active sessions to two per AD account?

     

    My environment comprises of Cisco ISE as the authentication server and Active Directory to maintain user databases.

     

    I have gone through few informative posts, but as they are old, would want to confirm if it isn't possible even in latest AirOS codes.

     

    Excerpt:(2014) For 802.1x authentication, there is no means of restricting the active sessions per user, meaning, a user can log on to multiple client devices at the same time.

    https://community.arubanetworks.com/t5/Controller-Based-WLANs/How-do-we-restrict-the-number-of-active-sessions-per-user-for/ta-p/186978

     

    (2013)The multiple sessions enforcement is normally a feature of radius servers.  Aruba does this, but only on the captive portal.  it is also not a typical feature provided by WLAN providers.

    http://community.arubanetworks.com/t5/Wireless-Access/Limit-log-in-session/td-p/60328