Clearpass Onboard - Alcatel-Lucent OmniSwitch 9900 Series Network Configuration Manual

Omniswitch aos release 8
Table of Contents

Advertisement

Configuring Access Guardian
Unified Policy Access Manager and ClearPass Policy Manager
The OmniSwitch BYOD solution requires the association and configuration of the OmniVista Unified
Policy Access Manager (UPAM) or the ClearPass Policy Manager (CPPM).
Note. This section describes the various services, features, and settings specific to CPPM. For information
about the various UPAM services, features, and settings, refer to the OmniVista UPAM documentation.
ClearPass Guest
The BYOD solution supports guest self registration, sponsored guest access, and pre-registration of guest
devices using MAC and Captive Portal authentication.
Self Registration
– An integrated external Captive Portal for guest or visitor registration.
– Redirection to a customizable guest registration Captive Portal
Sponsored Access
– SMS and text email notification
ClearPass Policy Manager
ClearPass provides a user and device-independent framework that supports any BYOD initiative, large or
small, by providing:
Self-service onboarding, provisioning, and revocation of access for all major mobile devices.
Device profiling as a basis for grooming traffic and improving network security based on device
category, such as:
– Device Category - Computer, Printer, AP
– OS Family - MAC, Android, Windows, Linux
– Device name and OS version
– Useful for wired devices such as printers, access points, IP Phones, and cameras
Controlled access and remediation for compromised devices
Device disconnect if device signature changes
– Secure guest network access with simplified workflows.

ClearPass Onboard

The BYOD solution supports the following services for device on-boarding and device management for
guest and registered devices:
Automatic configuration of Wireless, Wired 802.1X, VPN settings of personal and corporate devices
that are connecting to the network for the first time.
Management of digital certificates.
Device on-boarding system is integrated with the external Captive Portal, which is separate from the
internal OmniSwitch Captive Portal.
Integration with the Enterprise Active Directory for authentication of employee credentials before
device credentials are issued.
Device provisioning supported through Aruba Quick Connect or Apple OTA API.
OmniSwitch AOS Release 8 Network Configuration Guide
Bring Your Own Devices (BYOD) Overview
December 2017
page 28-117

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents