HPE6-A15 · Question #33
A clearPass administrator wants to make Enforcement decisions during 802.1x authentication based on a client's Onguard posture token.
The correct answer is A. RADIUS CoA. The Health Check Service requires a profile to terminate the session so that the RADIUS 802.1X authentication Service can use the posture token in a new authentication routine. The terminate session profile will utilize the Change of Authorization feature to force a…
Question
A clearPass administrator wants to make Enforcement decisions during 802.1x authentication based on a client's Onguard posture token.
Options
- ARADIUS CoA
- BQuarantine VLAN
- CFull Access VLAN
- DRADIUS Accept
- ERADIUS Reject
How the community answered
(39 responses)- A79% (31)
- B5% (2)
- C10% (4)
- D3% (1)
- E3% (1)
Explanation
The Health Check Service requires a profile to terminate the session so that the RADIUS 802.1X authentication Service can use the posture token in a new authentication routine. The terminate session profile will utilize the Change of Authorization feature to force a re-authentication. See step 6) below. Navigate to the list of Enforcement Profiles by selecting, Configuration > Enforcement > Profiles. 2. Click the + Add link in the upper right hand corner. 3. From the Template dropdown menu, choose RADIUS Change of Authorization (CoA). 4. Name the policy. This example uses Dell Terminate Session as the profile name. 5. Leave all the other settings as default, and click Next > to move to the Attributes tab. 6. On the dropdown menu for Select RADIUS CoA Template, choose IETF-Terminate-Session- 7. Click Next > and review the Summary tab (Figure 22). Campus Networks Configuring ClearPass OnGuard, Switching, and Wireless (v1.0) (September 00-00-20-44-16-18/ClearPass-NAC-and-Posture-Assessment-for-Campus- Networks.pdf?forcedownload=true
Topics
Community Discussion
No community discussion yet for this question.