Aruba ClearPass

Secure Network Access Control


From IoT to an always-on mobile workforce, organizations are more exposed to attacks than ever before. With Aruba ClearPass, you get agentless visibility and dynamic role-based access control for seamless security enforcement and response across your wired and wireless networks.

Aruba’s ClearPass Policy Manager, part of the Aruba 360 Secure Fabric, provides role- and device-based secure network access control for IoT, BYOD, corporate devices, as well as employees, contractors and guests across any multivendor wired, wireless and VPN infrastructure.

With a built-in context-based policy engine, RADIUS, TACACS+, non-RADIUS enforcement using OnConnect, device profiling, posture assessment, onboarding, and guest access options, ClearPass is unrivaled as a foundation for network security for organizations of any size.


• Role-based, unified network access enforcement across multi-vendor wireless, wired and VPN networks.

• Intuitive policy configuration templates and visibility troubleshooting tools.

• Supports multiple authentication/authorization sources (AD, LDAP, SQL).

• Self-service device onboarding with built-in certificate authority (CA) for BYOD.

• Guest access with extensive customization, branding and sponsor-based approvals.

• Integration with key UEM solutions for in-depth device assessments.

• Comprehensive integration with the Aruba 360 Security Exchange Program.

• Single sign-on (SSO) support works with Ping, Okta and other identity management tools to improve user experience to SAML 2.0-based applications

Core Technologies


Agentless policy control and automated response

What’s needed beyond visibility, control and response? Real-time policies for how users and devices connect and what they can access is critical, as well as robust guest access and strong enforcement capabilities.

Enforcing access privileges to effectively reduce risk

In addition to its role as the policy enforcement mechanism for ClearPass, the Aruba Policy Enforcement Firewall (PEF) has been designated “Cyber Catalystsm” by Marsh, based on its ability to effectively reduce risk.

Secure access for guest, BYOD and corporate devices

There are simple ways to let users securely connect devices to a network – without compromising security. ClearPass includes secure Wi-Fi guest access, device onboarding and health checks, and strong enforcement capabilities.

Leverage the ClearPass Security Ecosystem

Integrating disparate tools and technologies is critical in today’s security environment. Our Security Exchange Program brings together best-of-breed third-party solutions for end-to-end security – from the campus to the road warrior.

Our Partners

We don’t do it all on our own. See our network of valued partners.