Technical Tip: Rogue device registration to white list as known devices
Description
This article describes how to white list rogue devices as known devices.
Scope
FortiNAC.
Solution
Goal: White list rogue devices that could not be classified prior to go live.
Solution: Register the rogue device to negate isolation. Group the white listed devices for future reference.
Create a filter to display only the rogue hosts of interest.
Solution: Register the rogue device to negate isolation. Group the white listed devices for future reference.
Create a filter to display only the rogue hosts of interest.
- Navigate to Hosts -> Host View.
- From the Search field drop down menu, select New Filter.
- Name the filter (e.g. 'Rogues to White List').
- On the Adapter tab, select the following criteria:
- Connected: Online.
- Location and fill in substring filter for wired switch names (e.g. *Concord*)
- IP Address and fill the wireless subnet to exclude (e.g. !192.168.7.*). For other filtering options, refer to the online help topic 'Search And Filter Options For Hosts, Adapters, Users or Applications'.
- On the Host tab, select the following criteria
- Type: Rogue.
- Select OK to save and run the filter.
Using the newly created filter, register the desired rogues:
- Select the Adapter View for the resulting filter set.
- Sort the Adapter View by Location.
- Multi-select the desired adapters.
- From the Options menu, select Go To Host(s).
- Multi-select the resulting Hosts.
- From the Options menu...
- Select Register as Device.
- Manage in: Device in Host View.
- Device Type: Choose a type that is meaningful.
- Role: Choose a role that is meaningful.
Place the newly registered devices in a group to identify them for future reference:
- Multi-select the resulting Hosts.
- From the Options menu...
- Select Add Hosts to Groups.
- Create a 'White List' group if needed.
- Add the hosts to the group.
