QuestionQ53

Authentication/Authorization

A customer plans to add IoT devices that wirelessly connect to the existing 802.1X SSID. The customer will use HPE Aruba Networking ClearPass to authenticate the IoT devices by MAC address, while other devices must continue to authenticate using only 802.1X.

Refer to the exhibit.

Question Image

The customer supplied the current configuration and reports that non-IoT 802.1X devices can no longer connect. Which configuration change can be made to resolve the issue?

Explanation

l2-auth-failthrough allows a client to attempt 802.1X authentication when MAC authentication fails. This preserves MAC-based authentication for IoT devices while allowing non-IoT devices that are not recognized by MAC authentication to authenticate through 802.1X.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!