Configuring Authentication Profiles

Authentication profiles define the authentication method, identity stores, and additional attributes used to authenticate users on the associated networks.

Note: This feature is not available to guest operators. For more information, see Role-Based Access Control (RBAC).

To create an authentication profile for your SSID, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, click the Menu icon.

  2. In the Central NAC card, click Manage.

    The NAC Monitoring page is displayed.

  3. Click the Configuration icon.

    The configuration view appears, which displays the Authentication Profiles, Authorization Policies, Identity Management, Visitors, and Messaging cards.

  4. In the Authentication Profiles card, click Manage.

    The authentication profiles that are created are listed in this page.

  5. To search for an authentication profile, type the search term in the search bar.

    The Authentication Profiles page displays the filtered list to match the search term.

    Note:

    The search term can be based on the Name, Authentication Type, Assigned Network, and Identity Store.

  6. To create an authentication profile, click Create Profile.

  7. In the Create Profile side panel, configure the following parameters:

    • Name—Enter a name of the profile.

    • Description—Enter a description of the authentication profile.

    • Authentication Type—Select an authentication type to determine the profile configuration. You can select one of the following options based on the type of profile you want to create:

      • EAP

      • MPSK

      • MAC Authentication

      • Captive Portal

    • Under Network—From the Network drop-down list, select the network specific to the authentication type.

      • Select the Use for wired connection check-box if you want a wired connection.

        Note:

        Only one wired profile can be created for each authentication type.

    • Identity Store—Select the required identity store from the drop-down list.

      Note:
      • You can also create an MPSK authentication profile without selecting any identity store.

      • A named MPSK store is created automatically after an MPSK authentication profile is created.

      • With a HPE Aruba Networking Central NAC foundation license, users can select only one identity store for EAP and MPSK profiles.

      • With a HPE Aruba Networking Central NAC subscription license, users can select multiple identity stores for EAP and MPSK profiles.

    • Based on the authentication type, enter information under EAP Settings or MPSK Settings or MAC Authentication Settings or Captive Portal Settings.

    • Portal Customization—Select a portal profile from the drop-down to apply customizations to the web portal

  8. Click Create.

    The authentication profile is created and is listed in the Authentication Profiles page.