User's Manual

82 | Onboard Dell Networking W-ClearPass Guest 6.4 | User Guide
Deployment Step Reference
Configure the Onboard certificate authority.
l Decide whether to use the Root CA or Intermediate CA mode of
operation.
Create the certificate for the certificate authority.
"Certificate Authorities " on page 97
Configure device provisioning settings.
l Select certificate options for device provisioning.
Select which device types should be supported.
"About Configuring Provisioning Settings " on
page 169
Configure network settings for device provisioning.
l Set network properties.
l Upload 802.1X server certificates.
Set device-specific networking settings.
"Network Settings " on page 130
Configure networking equipment for non-provisioned devices.
l Set authentication for the provisioning SSID, if required.
Ensure the captive portal redirects non-provisioned devices to the
device provisioning page.
"Network Requirements for Onboard" on
page 87
Configure networking equipment to authenticate provisioned
devices.
l Ensure 802.1X authentication methods and trust settings are
configured correctly for all EAP types that are required.
Configure OCSP or CRL on the authentication server to check for
client certificate validity.
"Network Requirements for Onboard" on
page 87
Configure the user interface for device provisioning.
l Set display options for iOS devices.
l Set user interface options for other W-Onboard devices.
Setup the device provisioning Web login page.
"Configuring the User Interface for Device
Provisioning" on page 95
Testing and Verification
Test device provisioning.
l Verify that each type of device can be provisioned successfully.
Verify that each type of device can join the provisioned network
and is authenticated successfully.
Test device revocation.
l Revoke a device’s certificate.
l Verify that the device is no longer able to authenticate.
Verify that re-provisioning the device fails.