Security

 View Only
  • 1.  MPSK - CPPM Simple setup for using MPSK

    Posted Jul 12, 2022 12:59 AM
    Hello,

         We are currently using Aruba Clearpass and Aruba Central to manage our wireless networks. We are looking for a way to create MPSK codes to hand out as requests to connect to our Guest network come in. We do not want to use a portal per management.

         Does anyone know how to configure CPPM for this type of setup?

    Many thanks


  • 2.  RE: MPSK - CPPM Simple setup for using MPSK

    Posted Jul 12, 2022 09:15 AM
    Portal is the only real way to keep this manageable.  Otherwise its 100% a manual process.  What is your use-case for MPSK for guests?  Any reason not to use "normal" guest portals?  Along with OWE?


  • 3.  RE: MPSK - CPPM Simple setup for using MPSK

    Posted Jul 12, 2022 09:34 AM
    Greetings,

    We have been mandated to mirror the setup of another vendor that we have onsite. The other vendor allows the creation of PPSKs manually and we provide that list of PPSKs to locations to hand out/track to users. Management has set the requirement to not use the portal. 

    We will not be using OWE.

    Thanks

    This message originated from Carteret County Public Schools. This email is for the sole use of the individual or entity to whom it has been addressed.  If you are neither the intended recipient, nor an agent responsible for delivering this email to the intended recipient, any disclosure, re-transmission, copying, or taking action in reliance upon the message contained herein is strictly prohibited.  If you have received this email in error, you should notify the sender immediately. All e-mail correspondence to and from this address is subject to the North Carolina Public Records Law as defined under N.C.G.S. §132.1, which may result in monitoring and disclosure to third parties, including law enforcement and the media.





  • 4.  RE: MPSK - CPPM Simple setup for using MPSK

    Posted Jul 12, 2022 10:44 AM
    Got it.  When you say "We do not want to use a portal per management" Do you mean for guest users/endpoints?  Or for creating the actual MPSK credentials? The hardest part about MPSK is always the management overhead of the solution.


  • 5.  RE: MPSK - CPPM Simple setup for using MPSK

    Posted Jul 12, 2022 11:07 AM
    The guidelines provided, by management, says no captive portal for end users. They want 100% of the MPSKs created by the network team and provided to locations via a spreadsheet.

    Thanks

    This message originated from Carteret County Public Schools. This email is for the sole use of the individual or entity to whom it has been addressed.  If you are neither the intended recipient, nor an agent responsible for delivering this email to the intended recipient, any disclosure, re-transmission, copying, or taking action in reliance upon the message contained herein is strictly prohibited.  If you have received this email in error, you should notify the sender immediately. All e-mail correspondence to and from this address is subject to the North Carolina Public Records Law as defined under N.C.G.S. §132.1, which may result in monitoring and disclosure to third parties, including law enforcement and the media.





  • 6.  RE: MPSK - CPPM Simple setup for using MPSK

    Posted Jul 12, 2022 11:15 AM

    You must discuss with your management because MPSK is OK for IoT but if you want to use it with Smartphones or Tablets (both Android or iOS)

    they now implement MAC Randomization by default and MPSK is based on the MAC of the device




  • 7.  RE: MPSK - CPPM Simple setup for using MPSK

    Posted Jul 13, 2022 10:16 AM
    This is a fantastic point^  I would also push your management on the amount of time this will take the network team to manage.