An IT administrator needs to ensure that requests to different Active Directory servers in a multinational company are properly filtered. How should they configure the network?
A.
Create multiple Network Device Groups and filter requests by "belongs to group."
B.
Rely on the default settings of the Active Directory servers for request filtering.
C.
Use a single Network Device Group for all sites and filter requests by IP address.
Comprehensive and Detailed Explanation From HPE Aruba Networking ClearPass portfolio:
Network Device Groups (NDGs) allow administrators to categorize switches and controllers by location or function. In a multi-site deployment, ClearPass can use a "Service Rule" that looks at which NDG the request came from. For example, if a request comes from the "London-Switches" group, ClearPass is configured to use the London AD domain; if it comes from "Tokyo-APs," it uses the Tokyo AD source. This prevents "cross-talk" between global regions and improves authentication speed.
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit