Static Tags

Static tags are labels or attributes that an administrator manually assigns to a device, such as a MAC address. Unlike dynamic tags—which are automatically created and updated by systems like Client Insights (CI) based on device behavior or AI‑driven analysis—static tags remain unchanged unless an administrator or an API explicitly modifies them.

Static tags classify devices for policy enforcement and are not affected by automated system updates. They ensure consistent policies in environments where dynamic tagging is not supported, such as with third‑party NADs. Similar to the ClearPass attribute field, they can be modified by an admin or API but not by AI. Static tags are managed in the MAC Address Store, where admins can create or select predefined tags to avoid spelling or case errors.

This topic covers:

Pre-requisites

  1. Ensure to create a MAC authentication profile. For more information, see Configuring MAC Authentication.

  2. Ensure that a MAC identity store is present. The MAC identity store is created during the initial provisioning process. For more information, see Creating an Identity Store.