Users Guide

Dell Networking W-ClearPass Policy Manager 6.6 | User Guide Configuring Enforcement Policies and Profiles | 371
Chapter 7
Configuring Enforcement Policies
and Profiles
This chapter describes the following topics:
l Configuring Enforcement Policies on page 371
l Configuring Enforcement Profile on page 373
Policy Manager controls network access by sending a set of access-control attributes to the request-originating
Network Access Device (NAD).
Policy Manager sends these attributes by evaluating an enforcement policy associated with the service.
Each enforcement policy contains a rule or set of rules for matching conditions (role, posture, and time) to
actions (enforcement profiles).
For a general overview of network access enforcement policies, see Enforcement Architecture and Flow on
page 1.
Configuring Enforcement Policies
One and only one enforcement policy can be associated with each service. Enforcement policies can be added
in one of two ways:
l From Configuration > Enforcement > Enforcement Policies.
l From the Configuration >Services page as part of the flow of the Add Service wizard.
Figure 352: Enforcement Policies Page
1. To add a new enforcement policy, click Add.
The Add Enforcement Policy page opens to the Enforcement tab: