Security

last person joined: 22 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).

Role mapping functions in lab but not in production

This thread has been viewed 0 times
  • 1.  Role mapping functions in lab but not in production

    Posted Feb 05, 2018 01:59 PM

    I re-worked my role mapping in my lab where I have 3 services with 3 separate role mappings. All is good.

    This is a Clearpass Guest w/ Cisco WLC (server-initiated) setup.

     

    Initial mac-auth occurs, users is given a "pre-auth" role on CPPM.

    User processes portal, is marked known, COA occurs, user comes back into the same mac auth service but is given back the same pre-auth role and not the proper role for me to push the "ACK ACL" to the controller..

     

    I have gone through the configuration up and down to make sure it matches, service rules, policies, profiles, etc..

     

    Is there something I might not be checking and I should...