Security Policy Considerations; Airgroup Deployment Process - Dell Powerconnect W-ClearPass Hardware Appliances Deployment Manual

W-clearpass guest 6.0 deployment guide
Hide thumbs Also See for Powerconnect W-ClearPass Hardware Appliances:
Table of Contents

Advertisement

Security Policy Considerations

To ensure that your network remains secure, decisions have to be made regarding guest access:
Do you wish to segregate guest access? Do you want a different VLAN, or different physical network
l
infrastructure to be used by your guests?
What resources are you going to make available to guests (for example, type of network access; permitted times
l
of day; bandwidth allocation)?
Will guest access be separated into different roles? If so, what roles are needed?
l
How will you prioritize traffic on the network to differentiate quality of service for guest accounts and non-guest
l
accounts?
What will be the password format for guest accounts? Will you be changing this format on a regular basis?
l
What requirements will you place on the shared secret, between NAS and the RADIUS server to ensure network
l
security is not compromised?
What IP address ranges will operators be using to access the server?
l
Should HTTPS be required in order to access the visitor management server?
l

AirGroup Deployment Process

AirGroup allows users to register their personal mobile devices on the local network and define a group of friends or
associates who are allowed to share them. You use ClearPass Guest to define AirGroup administrators and operators.
AirGroup administrators can then use ClearPass Guest to register and manage an organization's shared devices and
configure access according to username, role, or location. AirGroup operators (end users) can use ClearPass Guest to
register their personal devices and define the group who can share them.
Table 5
summarizes the steps for configuring AirGroup functionality in ClearPass Guest. Details for these steps are
provided in the relevant sections of this Guide. This table does not include the configuration steps performed in
ClearPass Policy Manager or the W-Series controller. For complete AirGroup deployment information, refer to the
AirGroup Deployment Guide and the ClearPass Policy Manager documentation.
Table 5:
Summary of AirGroup Configuration Steps in ClearPass Guest
Step
Create AirGroup administrators
Create AirGroup operators
Configure an operator's device limit
To authenticate AirGroup users via LDAP:
Define the LDAP server
l
Define appropriate translation rules
l
AirGroup administrator: Register devices or groups of
devices
AirGroup operator: Register personal devices
(Optional) Configure device registration form with drop-
down lists for existing locations and roles
Dell Networking W-ClearPass Guest 6.0 | Deployment Guide
Section in this Guide
"Creating a New Operator" on page 248
"Creating a New Operator" on page 248
"Configuring AirGroup Operator Device Limit " on page 247
"External Operator Authentication" on page 248
"LDAP Translation Rules " on page 254
"AirGroup Device Registration " on page 53
"AirGroup Device Registration " on page 53
"Customizing AirGroup Registration Forms " on page 147
Security Policy Considerations | 23

Advertisement

Table of Contents
loading

This manual is also suitable for:

Networking w-clearpass guest 6.0

Table of Contents