Security

 View Only
last person joined: 23 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

ClearPass Admin Privileges role privileges not correctly

This thread has been viewed 12 times
  • 1.  ClearPass Admin Privileges role privileges not correctly

    Posted Mar 13, 2023 06:47 AM

    I create new role ClearPass Admin Privileges and assign client read,write on static hostlist but when i test authen and test add mac-address on static hostlist it work then i try to test delete it can delete mac address on static hostlist, i think this not correctly.



  • 2.  RE: ClearPass Admin Privileges role privileges not correctly

    EMPLOYEE
    Posted Mar 15, 2023 07:52 AM

    I would think that the Read,Write applies to the Static Host List itself. Which this setting you probably can't delete the Static Host List. Adding or removing entries on the list probably falls under 'Write'.

    Not sure what you try to achieve, but it may be that Static Host List is not the best way, and using Endpoint Repository or Guest Device Repository (use Guest Operator Profiles in that case for maximum flexibility) is probably better to reach your goal.



    ------------------------------
    Herman Robers
    ------------------------
    If you have urgent issues, always contact your Aruba partner, distributor, or Aruba TAC Support. Check https://www.arubanetworks.com/support-services/contact-support/ for how to contact Aruba TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.

    In case your problem is solved, please invest the time to post a follow-up with the information on how you solved it. Others can benefit from that.
    ------------------------------