(Instant AP)(airgroup-service)# id <airgroupservice-ID>
(Instant AP)(airgroup-service)# description <text>
(Instant AP)(airgroup-service)# disallow-role <role>
(Instant AP)(airgroup-service)# disallow-vlan <vlan-ID>
(Instant AP)(airgroup-service)# end
(Instant AP)# commit apply
To verify the AirGroup configuration status:
(Instant AP)# show airgroup status
Configuring AirGroup and ClearPass Policy Manager Interface in Instant
Configure the Instant and ClearPass Policy Manager interface to allow an AirGroup IAP and ClearPass Policy
Manager to exchange information regarding device sharing, and location. The configuration options define the
RADIUS server that is used by the AirGroup RADIUS client.
The AirGroup configuration with ClearPass Policy Manager involves the following steps:
1.
2.
Assigning a Server to AirGroup
3.
Configuring ClearPass Policy Manager to Enforce Registration
4.
Configuring Change of Authorization (CoA)
Creating a RADIUS Server
You can create a RADIUS server in the
Air Group
window. Navigate to
Services > AirGroup > Clear Pass
Settings > CPPM server 1 >
and select
New
from the drop-down list.
You can configure an external RADIUS Security window. For more information on configuring ClearPass Policy
Manager server, see
Configuring an External Server for Authentication on page 156
.
Assigning a Server to AirGroup
To associate the ClearPass Policy Manager server with AirGroup, select the ClearPass Policy Manager server
from the
CPPM Server 1
drop-down list.
If two ClearPass Policy Manager servers are configured, the CPPM server 1 acts as a primary server and the
CPPM server 2 acts as a backup server.
After the configuration is complete, this particular server will be displayed in the CoA server option. To view this
server go to
Services > AirGroup > ClearPass Settings > CoA server
.
Configuring ClearPass Policy Manager to Enforce Registration
When ClearPass Policy Manager registration is enforced, the devices registered with ClearPass Policy Manager
will be discovered by Bonjour devices, based on the ClearPass Policy Manager policy.
Configuring Change of Authorization (CoA)
When a RADIUS server is configured with Change of Authorization (CoA) with the ClearPass Policy Manager
server, the guest users are allowed to register their devices. For more information on configuring
RADIUS server with CoA , see
Configuring an External Server for Authentication on page 156
You can also create a
CoA only server
in the
Services > AirGroup > Clear Pass Settings > CoA server
window.
Aruba Instant 6.5.0.0-4.3.0.0 | User Guide
Services |
290