Device Fingerprinting
Device fingerprinting helps categorize the devices by analyzing the data sent by the end devices. When a specific device is fingerprinted, the details can be used to provide:
-
Telemetry data to Aruba Central. You can find clients’ details such as the type of device, host name, vendor identification, and capability of the device, using Device Fingerprinting
-
Controlled network access and bandwidth for the end devices by ClearPass Policy Manager. You can create appropriate access and enforcement policies in ClearPass during authentication. For example, the devices that are fingerprinted or profiled as computers will be given access to specific VLAN and the devices that are categorized as phones will be given access to another VLAN.
Fingerprinting of end devices is achieved by configuring switch to collect the required traffic patterns. The collected protocol data is forwarded securely to either Aruba Central or ClearPass. Device fingerprinting can be enabled per-port.
-
If Aruba Central URL is configured on the switch, then the data will be sent to Aruba Central, irrespective of ClearPass IP configuration.
-
If Aruba Central URL is configured but in COP offline mode, then the data will data will be sent to ClearPass if configured.
-
If Clear Pass IP is configured and Aruba Central URL is not present, then the collected data is sent to ClearPass.