Aruba ClearPass Onboard

Automated mobile device provisioning and configuration for secure BYOD

An application for the ClearPass Policy Manager platform, ClearPass Onboard automatically provisions and configures personally-owned mobile devices – Windows, Mac OS X, iOS and Android 2.2 and above – enabling them to securely connect to the network.

ClearPass Onboard lets users securely and automatically provision and configure their own smartphones, tablets and laptops.

With ClearPass Onboard, it’s easy for employees, contractors and partners to self-configure their own mobile devices for BYOD. The ClearPass registration portal automatically detects a device’s operating system and presents the user with the appropriate configuration package.

ClearPass Onboard provides an incredibly simple way to configure wireless, wired and VPN settings, apply unique device credentials, and ensure that users securely connect their devices to 802.1X-enabled networks with minimal IT involvement.

The result is a streamlined workflow that allows IT helpdesk personnel to automate and secure multiple processes that are required to successfully carry out BYOD initiatives while improving the user experience.

ClearPass Onboard also significantly increases the amount of actionable information that is captured for troubleshooting, user- and device-based policies, and compliance and reporting requirements.

Key features:

  • Enables users to self-register and securely onboard multiple devices.
  • Supports Windows, Mac OS X, iOS and Android operating systems.
  • Automates the configuration of network settings for wired and wireless endpoints.
  • Unique provisioning and revocation of device-specific credentials.
  • Contains built-in public key infrastructure (PKI).
  • Uses profiling to identify device type, manufacturer and model.
  • Provides BYOD visibility and centralized policy management capabilities

Aruba ClearPass Policy Manager

The most comprehensive network access policy enforcement platform for BYOD

The Aruba ClearPass Policy Manager™ platform makes it easy to secure next-generation mobility services, enhance network access security and compliance, and streamline network operations for wired, wireless and VPNs.

A comprehensive policy management solution, the ClearPass Policy Manager platform includes ClearPass Guest, ClearPass OnBoard and ClearPass OnGuard applications.

It also provides role-based policy management, detailed endpoint profiling, enterprise-grade RADIUS/TACACS+, BYOD and Apple Bonjour-enabled device registration, mobile device management (MDM), and administrative web access.

Whether local or remote, ClearPass makes it effortless to centrally manage and enforce user- and device-based access policies across multivendor campus and distributed network infrastructures, regardless of device ownership or connection method.

ClearPass Policy Manager provides unprecedented visibility into all devices on wireless and wired networks.

Key features:

  • Unsurpassed multivendor wireless and wired interoperability.
  • Built-in guest, profiling, network access control.
  • Onboarding of leading endpoint operating systems.
  • Easy-to-use policy creation and troubleshooting interface.
  • Proactive policy simulation and testing utilities.
  • Real-time user and device access logs track each authentication.
  • Convenient dashboards for user and device authentication analysis.
  • Published and open API for simple third-party integration.
  • MDM interoperability via API connector services.
  • Fully-replicated active clustering for high availability, redundancy and load balancing.
  • Advanced reporting, analytics, alerts and archiving for compliance and auditing

Aruba ClearPass

The Aruba ClearPass Access Management System™ delivers unparalleled simplicity when managing and securing network access across wireless, wired and VPNs.

ClearPass enables you to securely onboard any device onto any network

Ideal for BYOD provisioning and onboarding, ClearPass makes it easy for IT-issued and personal mobile devices to securely connect to any network.

By centralizing access policies across the entire network, ClearPass automates differentiated user and device access, policy management and the provisioning of devices for secure network access and posture assessment. This ensures that each user has the right access privileges based on who they are and what device they’re using.

ClearPass is essential when increasing numbers of consumer devices – Windows, Mac OS X, iOS, Android and Linux – connect to the network and access is required by a broader range of users – employees, visitors, customers and contractors.

  • The first and only BYOD provisioning and onboarding framework for any network.
  • Automates onboarding for Windows, Mac OS X, iOS and Android devices.
  • Improve policy decisions with endpoint visibility and contextual device profile information.
  • Scalable, easy-to-use visitor management system delivers secure guest access.
  • Enterprise-class endpoint posture and health checks beyond basic network access control (NAC).

Aruba 600 Series Mobility Controllers

The 600 series of Mobility Controllers deliver powerful enterprise-class capabilities to branch office networks with zero-touch provisioning.

The 600 series is an integral part of the Aruba remote network deployments, which utilize central Mobility Controllers in the data center for management, user-centric security, and role-based network access.

Aruba’s centralized zero-touch provisioning and management model enables 600 series Mobility Controllers to be locally deployed, monitored and managed with no IT assistance. Other deployment options include remote management and local web-based configuration.

Mobility Controller Features

  • Zero-touch provisioning with no IT assistance.
  • Provides wired and wireless access.
  • Extends corporate resource anywhere in the world.
  • Secure connectivity that meets government and retail compliance.
  • Reduces cost and contributes to network rightsizing.

Performance and Capacity

620
650

LAN-connected access points (maximum)

8
16
Remote Access Points (maximum)
32
64

Wired Access Points (maximum)

1
2

Users (maximum)

256
512

MAC addresses

2,048
2,048

VLAN IP interfaces

128
128
Number of IPv4 unicast routes
2,048
2,048
Active firewall sessions

8,192

16,384

System BSSIDs
128
256
Concurrent IPsec tunnels
256
512
Firewall throughput

800 Mbps

2 Gbps

Encrypted throughput (3DES)

400 Mbps

1.6 Gbps

Encrypted throughput (AES-CCM)

320 Mbps

800 Mbps

Power Specifications

620

AC input voltage

100-240 V, Universal Input

AC input frequency

50-60 Hz

Maximum power consumption

115 Watts

Power over Ethernet total capacity

78 Watts

Power over Ethernet capacity per port

19.5 Watts

Mobility Access Switches (max)”

Up to 1

650

AC input voltage

100-240 V, Universal Input

AC input frequency

50-60 Hz

Maximum power consumption

126 Watts

Power over Ethernet total capacity

78 Watts

Power over Ethernet capacity per port

19.5 Watts

Mobility Access Switches (max)”

Up to 2

USB Device Support

Maximum concurrent printers

2

Maximum concurrent HSDPA/GPRS/EDGE/EVDO Modems:

2

Maximum concurrent storage media (Hard disk/Flash):

4

Maximum concurrent devices (all types):

4

Network Printing

Printing mode

Raw

Printer driver download to clients

No

Client compatibility

MS Windows, MacOS, Unix

Network Attached Storage

File protocole

CIFS/SMB

Share-level security

No

User-level security

No

Per-role firewall restriction of share access

Yes

Client compatibility

MS Windows, MacOS, Unix

USB 1.0 devices

Yes

USB 2.0 flash storage

Yes

USB 2.0 disk storage

Yes

Maximum storage size

1 Tb

Ext2/Ext3 Filesystem

Yes

FAT16 Filesystem

Yes

FAT32 Filesystem

Yes

NTFS Filesystem

No

Compatible USB Printers

The following is a partial list of tested and fully supported USB printers. Some printers (such as the HP LaserJet 1000 series) require a firmware upload each time they are powered on. These printers are currently not supported. An updated list can be found at www.arubanetworks.com/products/usb-devices

HP Deskjet 6988 Printer HP LaserJet M1522nf MFP HP Officejet Pro L7590 All-in-One Printer, Fax, Scanner, Copier HP LaserJet P3005 HP Color LaserJet CP3505 Lexmark X7675 Professional Lexmark T640 Lexmark C534dn

Compatible USB Storage

The following is a partial list of tested and fully supported USB storage devices. An updated list can be found at www.arubanetworks.com/products/usb-devices

Seagate FreeAgent Pro hard drive Maxtor OneTouch 4 Plus hard drive My Passport Essential WDME3200 hard drive Iomega eGo Desktop hard drive Iomega Desktop Hard Drive hard drive Kingston DataTraveler 100 USB flash drive (2/4/8G) SanDisk Cruzer Micro USB flash drive (2/8G)

Link Redundancy

620

650

Support for multiple DHCP uplinks

Yes

Yes

Support for multiple PPPoE uplinks

Yes

Yes

Warranty

Hardware

1 year parts/labor*

Software

90 days*

* Extended with support contract

Compatible USB Modems

The following is a partial list of tested and fully supported USB modems. Some modems not on this list may be fully supported with factory-default configuration, while others may require controller configuration in order to function. An updated list can be found at www.arubanetworks.com/usb_devices

Novatel U727 Kyocera KPC680 Compass 597 USBConnect Quicksilver USBConnect Mercury

Interfaces

620

650

Console (RS-232) RJ-45

1

1

Fast Ethernet (10/100Base-T)

4

0

Fast Ethernet (10/100Base-T) with PoE+

4

0

Gigabit Ethernet (10/100/1000Base-T)

1

2

Gigabit Ethernet (10/100/1000Base-T) with PoE+

0

4

Gigabit Ethernet pluggable (1000Base-X SFP)

0

2

ExpressCard®

1

1

USB 2.0

1

4

Operating Specifications and Dimensions

620

650

Operating temperature range

0° to 40°C
(32° to 104°F)

0° to 40°C
(32° to 104°F)

Storage temperature range

0° to 50°C
(32° to 122°F)

0° to 50°C
(32° to 122°F)

Humidity, non-condensing

5 to 95%

5 to 95%

Height

1.75″ (45 mm)

1.5″ (38 mm)

Width

12.6″ (320 mm)

13.6″ (346 mm)

Depth

6.8″ (173 mm)

8.9″ (226 mm)

Weight (unboxed)

2.7 lbs/1.23 kgs

4.9 lbs/2.2 kgs

Regulatory and Safety Compliance

Aruba 620/650

FCC part 15 Class B

EN 55022 Class B

EN 55024

IEC/EN 60950

CE Marking

cTUVus Marked

CB Scheme Certified

Aruba 3000 Series Mobility Controllers

High-performance, standalone 3000 series Mobility Controllers from Aruba deliver a wide range of network services to medium and large regional offices. The 3000 series supports up to 8,192 users and performs stateful firewall policy enforcement at speeds up to 4 Gbps.

Through secure IP tunnels, Aruba access points (APs) and Mobility Access Switches move traffic to the 3000 series over a public or private transport network and provide local bridging at the access layer, depending on the end user application or IT traffic forwarding requirements.

In addition to supporting up to 128 APs or 32 Mobility Access Switches, the 3000 series can support up to 512 Remote APs (RAPs) when deployed in the data center as part of an Aruba remote networking solution.

The 3000 series also manages authentication, encryption, virtual private network (VPN) connections, IPv4 and IPv6 Layer 3 networking, the Aruba Policy Enforcement Firewall (PEF), Aruba Adaptive Radio Management (ARM), and Aruba RFProtect™ Spectrum Analysis and Wireless Intrusion Protection capabilities.

Clustering and centralized management enable the deployment of large networks with hundreds of Mobility Controllers with minimal staff. A master Mobility Controller can manage local Mobility Controllers, while AirWave® provides enterprise-wide clarity and control through real-time monitoring, historical reporting and troubleshooting.

Discuss ArubaOS and Mobility Controllers at Airheads Social

Speak with a
Product Specialist

Aruba 3000 Mobility Controller Data Sheet

Mobility Controller Deployment Models VRD

Mobility Controller Product Line Matrix

Get a Quote

Specifications

Performance and Capacity

3200

3400

3600

LAN-connected APs (max)1

32

64

128

Remote Access Points1

128

256

512

Wired Access Points1

8

16

32

Users(max)

2,048

4,096

8,192

MAC addresses

64,000

64,000

64,000

VLAN IP interfaces

128

256

512

Number of IPv4 unicast routes

2,048

2,048

2,048

Active firewall sessions

128,000

128,000

128,000

Concurrent IPsec tunnels (max)

2,048

4,096

4,096

System BSSIDs

512

4,096

8,192

Firewall throughput

3 Gbps

4 Gbps

4 Gbps

Encrypted throughput (3DES, AESCBC256)

1.6 Gbps

4 Gbps

8 Gbps

Encrypted throughput (AES-CCM)

0.8 Gbps

2 Gbps

4 Gbps

1Capacity determined by AP, PEF and WIP software licenses

Power Specifications

Aruba 3200:

AC input voltage

90-264 V, Universal Input

AC input current

1.5 A

AC input frequency

47-63 Hz

Maximum power consumption

35 Watts

Mobility Access Switches (max)

Up to 8

Aruba 3400:

AC input voltage

90-264 V, Universal Input

AC input current

2.2 A

AC input frequency

47-63 Hz

Maximum power consumption

45 Watts

Mobility Access Switches (max)

Up to 16

Aruba 3600:

AC input voltage

90-264 V, Universal Input

AC input current

2.2 A

AC input frequency

47-63 Hz

Maximum power consumption

60 Watts

Mobility Access Switches (max)

Up to 32

Interfaces

Console (RS-232) RJ-45
4x Gigabit Ethernet (10/100/1000Base-T)*
4x Gigabit Ethernet (1000Base-X) SFP*
* Dual-personality ports – 10/100/1000Base-T or pluggable module

Operating Specifications and Dimensions

Operating temperature range

0° to 40° C

Storage temperature range

-40° to 70° C

Humidity, non-condensing

5 to 95%

Height

1.75″ (44mm)

Width

13.8″ (351mm)

Depth

11.7″ (297mm)

Weight 3200

7.1 lbs/3.2 kgs (unboxed)

Weight 3400/3600

7.4 lbs/3.4 kgs (unboxed)

Regulatory and Safety Compliance

FCC part 15 Class A CE
Industry Canada Class A
VCCI Class A (Japan)
EN 55022 Class A (CISPR 22 Class A), EN 61000-3
EN 61000-4-2, EN 61000-4-3, EN 61000-4-4
EN 61000-4-5, EN 61000-4- 6, EN 61000-4-8
EN 61000-4-11, EN 55024, AS/NZS 3548
UL 60950, EN60950
CAN/CSA 22.2 #60950
CE mark, cTUVus, GS, CB, C-tick, Anatel, NOM, MIC, IQC

Warranty

Hardware

1 year parts/labor*

Software

90 days*

* Extended with support contract