Security

 View Only
last person joined: 13 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

ClearPass profiling for device with static ip

This thread has been viewed 11 times
  • 1.  ClearPass profiling for device with static ip

    Posted Jul 17, 2024 02:35 AM

    Hi there!

    I have a generic OT device that does not support DHCP, only static IP. Is there a way to profile it? Network/Subnet Scan will eventually find the IP but add no data to the endpoint information as this is a non windows/linux machine. I've manually set the device to Known so that it won't get deleted during automatic cleanup. 

    Is there a best practice to handle this? E.g. manually add information to the endpoint information and use those information in my policies?

    Regards
    Robert



  • 2.  RE: ClearPass profiling for device with static ip

    Posted Jul 17, 2024 09:07 AM

    Adding attributes for role/vlan in the endpoint is something that I've seen multiple times for such exception devices; or for devices that in addition of profiling require manual approval. So seems you are on a good track.



    ------------------------------
    Herman Robers
    ------------------------
    If you have urgent issues, always contact your Aruba partner, distributor, or Aruba TAC Support. Check https://www.arubanetworks.com/support-services/contact-support/ for how to contact Aruba TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.

    In case your problem is solved, please invest the time to post a follow-up with the information on how you solved it. Others can benefit from that.
    ------------------------------