Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

user priveledges

This thread has been viewed 1 times
  • 1.  user priveledges

    Posted Aug 19, 2014 07:19 AM

    does anybody know of an xml file for Clearpass i can import to only allow

    access to Clearpass guest admin (not policy manager!).

    we need to give a customer access so that their web design guys can create

    a self-registration page.

    cheers

    Pete

     



  • 2.  RE: user priveledges

    Posted Aug 19, 2014 07:22 AM
    In the help guide you should be able to find the values necessary to do this


  • 3.  RE: user priveledges

    Posted Aug 19, 2014 07:24 AM

    tried that not much help



  • 4.  RE: user priveledges

    Posted Aug 19, 2014 07:25 AM

    do you have a sample xml file i can import to do this



  • 5.  RE: user priveledges

    EMPLOYEE
    Posted Aug 19, 2014 08:02 AM

    pete_elms,

     

    The easiest way would be to re-use a management role that already exists on the ClearPass Policy Manager side.  On the ClearPass Policy Manager Side, go to Administration> Users and Privileges.  Click on Admin users and Create a user with privilege level of Help Desk.  Remember the username and password.

     

    Next, go to the ClearPass Guest Side by going to Dashboard> ClearPass Guest.

     

    Go to Administrator> Operator Logins> Profiles and Edit the Help Desk operator profile.  To manage Web Content, you would need to modify the Help Hesk operator profile so that it only has Custom Access to Platform and Full access to Content Manager, which allows uploads and deletions of HTML content.  Make sure other options like Guest and Onboard also have "No Access" next to them.

     

    web-editor.

    content.png

     

    Open a different browser and go to https:<ip address of clearpass>/guest/auth_login.php and login with that helpdesk user you just created.  You should be able to see and upload content.  Depending on what you ultimately want to do and the type of testing, you probably have to enable more permissions in the Help Desk operator profile.

     

    content2.png

     

     



  • 6.  RE: user priveledges

    Posted Aug 19, 2014 08:53 AM

    thanks Colin right on the money.

    appreciate you taking the time

    cheers

    Pete