Client Tags

You can use tags to create collections of clients. The tags are created using tag definitions. You can use the UI to create the tags. You can also create tags using the filters.

This topic discusses the following:

To know more about the tag creation process, see Manage Tags.

Tag Definitions

The tag definitions carry the set of information that you create using the filters. The tag definitions collect this information based on the options that you select. The tag engine collects this information, and then updates its own internal set of definitions. The tag engine then reevaluates all the clients to determine which type of client needs to be associated with a specific tag.

Filters

You can access the Filters option by clicking the Filter icon on the Sites > Clients page. You can select either Standard or Classification filters. You can use only the Classification filters for tag creation.

The Standard filter has the following options:

  • Experience

  • VLAN

  • Network

  • Last Seen

Figure 1: Standard Filters

The Classification filter has the following options:

  • Function

  • Model/OS

  • Vendor

  • Fingerprint Attributes

Figure 2: Classification Filters

To learn more about how to use the Classification option, see Managing Tags Using Create Tag Button.

Manage Tags

The HPE Aruba Networking Central UI processes Unified Endpoint Management (UEM) attributes from installed extensions and renders the following tags for the Client Profiler:

Microsoft Intune

System generated tags:

  • Intune: BYOD

  • Intune: Corporate-Owned

  • Intune: Compliant

  • Intune: Not-Compliant

  • Intune: Supervised

User configured tags:

  • Intune: Encrypted

  • Intune: Entra ID Registered

  • Intune: Jailbroken

Figure 3: Microsoft Intune Filters in the Classification Card

Ivanti Neurons

System generated tags:

  • Ivanti: Company-Owned

  • Ivanti: Compliant

  • Ivanti: Employee-Owned

  • Ivanti: Supervised

  • Ivanti: Unknown-Ownership

Figure 4: Ivanti Neurons Filters in the Classification Card

VMWare Workspace ONE

System generated tags:

  • Workspace ONE: BYOD

  • Workspace ONE: Corporate-Owned

  • Workspace ONE: Compliant

  • Workspace ONE: Not-Compliant

  • Workspace ONE: Supervised

Figure 5: VMWare Workspace ONE Filters in the Classification Card

Jamf

System generated tags:

  • Jamf Pro: CompromisedStatus

  • Jamf Pro: Institutional-Owned

  • Jamf Pro: Managed

  • Jamf Pro: Personal-Owned

  • Jamf School: Managed

User configured tags:

  • Jamf Pro: Data Protected

Figure 6: Jamf Filters in the Classification Card

Microsoft Defender for Endpoint

System generated tags:

  • Defender: High Exposure

  • Defender: High Risk

  • Defender: Informational

  • Defender: Low Exposure

  • Defender: Low Risk

  • Defender: Medium Exposure

  • Defender: Medium Risk

  • Defender: No Exposure

  • Defender: No Exposure

  • Defender: Unspecified

    Figure 7: Defender Filters in the Classification Card

User configured tags and system generated auto-tags are defined and populated under Tags in the Client Classification management page as well as the Client Classification card. System generated auto-tags cannot be edited or deleted.

The following image provides an example of system generated tags.

Figure 8: System Generated Tags

You can create and manage customized tags through the following processes: