Legal Disclaimer: The resource assets in this website may include abbreviated and/or legacy terminology for HPE Aruba Networking products. See www.arubanetworks.com for current and complete HPE Aruba Networking product lines and names.
Aruba Wireless with MPSK Service Template
The Aruba Wireless with MPSK service template allows you to authenticate devices using an Aruba MPSK. For wireless devices that do not support strong 802.1X 802.1X is an IEEE standard for port-based network access control designed to enhance 802.11 WLAN security. 802.1X provides an authentication framework that allows a user to be authenticated by a central authority. authentication, Aruba MPSK allows each device to be assigned a unique preshared key during Device Registration. The service type handles the device authentication from an Aruba Mobility controller or Instant Access Point (AP).
Prerequisites
ClearPass Policy Manager Insight must be enabled for the Aruba MPSK feature to work. For information on enabling Insight, see Table 1, Server Configuration > System Page Parameters.
To access the service template:
1. Navigate to > .
2. From the page, select . The following page opens:
Figure 1 Aruba Wireless with MPSK Service Template
General Tab
1. Specify the tab service template parameters as described in the following table:
Parameter |
Action/Description |
---|---|
Name Prefix |
Enter a unique prefix that is appended to the services using this template. Use this to identify the services that use this template. |
2. Click or select the tab.
Wireless Network Settings
When you select the
tab, the following configuration dialog opens:Figure 2 Wireless Network Settings Configuration Dialog
1. Specify the tab service template parameters as described in the following table:
2. Click or select the tab.
Device Roles
Define logical device roles (think tags) that allow for dynamic policy construction; for example, Media Player, Printer, Game Console, Building Controls, etc. Enter up to ten device roles. When you select the tab, the following configuration dialog opens:
Figure 3 Device Roles Configuration Dialog
1. Select one or more existing roles from the drop-down or type in a role name to create a new one.
2. Click or select the tab.
Enforcement Details
The device roles selected in the
dialog are populated into the new Enforcement policy defined in the configuration dialog.controller.
are configured on theFigure 4 Enforcement Details Configuration Dialog
1. Aruba Role: For each , specify the corresponding configured on your Aruba controller(s) or access points.
2. Default MPSK: Enter the default MPSK for new or unregistered devices. The Default MPSK is a static (constant) password (passphrase) that is provided while using this service template.
The Default MPSK is returned when a device does not have a unique MPSK and is used to lock users into a locked-down role.
3. Default Aruba User Role: Enter the Default Aruba User Role. This is the user role that is sent back with the Default MPSK. In our example, the Default Aruba User Role is set to .
4. Click .
The
service is created. You return to the page where the new service is now listed.