Configuration Guide

Table Of Contents
ConfiguringGuests
216 of 291
Configuring Guest and Devices
This module is intended for Guest and IoT Manager Provisioner to create and
manage Guest User and Device account(s). Your Provisioner account is part of
one or more Onboarding Templates that establish rights, such as the maximum
lifetime of accounts you create, and which Single Membership” and Multiple
Memberships” Access groups you can provide to those accounts.
A Guest User is a visitor, or other temporary user, to whom you grant specific,
limited rights to use your network. As a Provisioner you can set the duration of
access for the Guest User. The account can be valid for only a few minutes,
hours, for a number of weeks, or permanent. The account expires automatically
after a specified period of time. However, if the account expires, you can renew
it, if needed.
When a Guest User is created, you can determine how and when the user can
use your network. These are the groups that can be configured in Access
Control Engine. You can do the following:
l Establish the set of allowed connection mechanisms a guest can use:
802.1X-secured wired connection, 802.1X-secured wireless connection,
web-authenticated wireless connection, and so on.
l Determine the network ports or access points the user can connect. That is,
you can specify the access points or conference room network jacks that
allows the user to connect.
l Specify the segments of your network the user can reach once connected.
For example, you can give a user only Internet access or you can give
access to the corporate Intranet.
Configuring Guests
The Guest Users tab in Guest Users menu provides complete control over the
user account creation process. Guest User features for managing guest accounts
allows you: