A3 Workflow
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎07-02-2019 07:16 PM
Hi,
?
I? am currently trying to get my head around how A3 works with HiveManager specifically around the steps that occur when a user connects to a given SSID. For example, 'step 1: the AP reaches out to A3, step 2: A3 checks if the device is trusted....etc.
?
I have a use case where the A3 instance will be hosted in a private cloud so I'm trying to get an understanding.
?
Any help would be greatly appreciated.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎08-08-2019 12:27 PM
Thanks Sam,
​
I have a project where these diagrams would be useful to provide to the end customer. I don't suppose you could lean on anyone to get these made up? Thanks
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎08-08-2019 12:24 PM
We don't have those diagrams made at the moment, but I'll put in a request to get those made and added to the FAQs. I appreciate the feedback, please let me know if you can think of anything else you'd like to see added or created.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎08-08-2019 10:20 AM
Hi Sam,
The FAQs were helpful however would there be any workflow diagrams that Aerohive could provide for the below sections of the FAQs:
How does NAC/A3 onboard Guests with Social login?
- When a new device associates to the Guest SSID, the client HTTP/DNS request is redirected to the Captive portal.
- Device is registered
- Health-check and any required remediation performed
- Guest Network access granted
How does NAC/A3 onboard Employees using 802.1X?
- When a new device association is detected, the NAC follows the process below:
- Authentication: For 802.1X authentication Windows and Mac OS will be provisioned certificates with the enterprise wireless network SSID
- Health-check: Device quarantined for health-check and any remediation
- Network Access: Device is granted access to particular employee network. (NAC server uses CoA to change access VLAN on switchport or access point).
Thanks in advance.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎07-03-2019 05:36 PM
Thanks as always Sam. I will take a look and come back to you if required.
​
Appreciate the help.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎07-03-2019 01:34 PM
These A3 FAQs should help: https://thehivecommunity.aerohive.com/s/article/A3-FAQs
Please let me know if you have questions that aren't addressed in that guide so I can get that information for you and add it to the FAQs.
