Users Guide

272 | Configuring Identity Settings Dell Networking W-ClearPass Policy Manager 6.6 | User Guide
Importing and Exporting Static Host Lists
You can import static host lists into W-ClearPass or export them to a file.
1. Navigate to the Configuration > Identity > Static Host Lists page .
The Static Hosts Lists page opens.
2. Click on the name of the static hosts list you want to import or export.
3. To import a static host list into W-ClearPass, click the Import link.
4. To export a static host list to a file, click the Export All link.
For further details, see Importing and Exporting Information on page 32.
Configuring a Role and Role-Mapping Policy
This section includes the following information:
l Preconfigured Roles
l Adding and Modifying Roles on page 274
l Adding and Modifying Role-Mapping Policies on page 275
After authenticating a request, a Policy Manager service invokes its role-mapping policy, resulting in assignment
of a role(s) to the client. This role becomes the identity component of enforcement policy decisions.
A service can be configured without a role-mapping policy, but only one role-mapping policy can be configured for
each service.
Preconfigured Roles
Policy Manager provides the following preconfigured roles:
l [AirGroup v1]: Role for an AirGroup protocol version 1 request.
l [AirGroup v2]: Role for an AirGroup protocol version 2 request.
l [Aruba TACACS read-only Admin]: Default role for read-only\ access to Dell device.
l [Aruba TACACS root Admin]: Default role for root access to Dell device.
l [BYOD Operator]: Operators with this profile can view and manage their own provisioned devices.
l [Contractor]: Default role for a contractor
l [Device Registration]: Operators with this profile can self-provision their devices for MAC authentication and
AirGroup sharing.
l [Employee]: Default role for an employee.
l [Guest]: Default role for guest access.
l [MAC Caching]: Default role applied during MAC caching.
l [Onboard Android]: Role for an Android device being provisioned.
l [Onboard Chromebook]: Role for a Chromebook device being provisioned.
l [Onboard iOS]: Role for an iOS device being provisioned.
l [Onboard Linux]: Role for a Linux device being provisioned.
l [Onboard Mac OS X]: Role for a Mac OS X device being provisioned.
l [Onboard Windows]: Role for a Windows device being provisioned.
l [Other]: Default role for another user or device
l [TACACS API Admin]: API administrator role for Policy Manager admin
l [TACACS Help Desk]: Policy Manager Admin role, limited to views of the Monitoring screens