Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

How to blacklist a client on Aruba OS8?

This thread has been viewed 40 times
  • 1.  How to blacklist a client on Aruba OS8?

    Posted Oct 05, 2017 10:43 AM

    How do I blacklist a client on Aruba OS 8?

     

     



  • 2.  RE: How to blacklist a client on Aruba OS8?
    Best Answer

    EMPLOYEE
    Posted Oct 05, 2017 11:19 AM

    Hi, 

     

    You can use the command " #stm add-blacklist-client <client-mac> to blacklist a client. To verify, use "show ap blacklist-clients". 

     

    Example, 

     

    (Rajaguru-INFINITY-MM) [mynode] #stm add-blacklist-client 22:22:22:22:22:22 
    <cr>
    (Rajaguru-INFINITY-MM) [mynode] #stm add-blacklist-client 22:22:22:22:22:22
    (Rajaguru-INFINITY-MM) [mynode] #
    (Rajaguru-INFINITY-MM) [mynode] #show ap blacklist-clients
    Blacklisted Clients
    -------------------
    STA reason block-time(sec) remaining time(sec)
    --- ------ --------------- -------------------
    11:11:11:11:11:11 user-defined 80 3520
    22:22:22:22:22:22 user-defined 5 3595
    (Rajaguru-INFINITY-MM) [mynode] #


  • 3.  RE: How to blacklist a client on Aruba OS8?

    Posted Oct 05, 2017 11:21 AM

    Is available in the web ui? 

     

     



  • 4.  RE: How to blacklist a client on Aruba OS8?

    Posted Dec 03, 2018 10:14 AM
      |   view attached

    >in MM node navigate to Configuration > Auth > L2-Auth

    >select the dot1x auth. profile from  the list.

    >Enter a value for number of auth. failures before blacklist at Max auth. failure option.

    > click on submit.

     

    Find the screen shot attached one.



  • 5.  RE: How to blacklist a client on Aruba OS8?

    Posted Aug 01, 2019 09:34 PM

    Is it still possible to make the blacklist permante?  Ive attempted 

     

     

    ap ap-blacklist-time 0

     

    But get an error.



  • 6.  RE: How to blacklist a client on Aruba OS8?

    Posted Aug 02, 2019 01:49 AM

    You can set the blacklist timers in the VAP. The timer named "Blacklist Time" applies to manual blacklisted clients too.

     

    I don't know of a way to set different timers to individual clients. I don't think that's possible.

     

    Edit: To answer your question, set the blacklist time in the VAP profile to 0 to make it permanent.

     

    Annotation 2019-08-01 224823.png