Onboarding Policy

Configuration → Onboarding → Policy

Onboarding policies are used by ExtremeGuest to give flexibility when determining hotspot user access. Policies are matched to the hotspot user based on onboarding rules. Then the matching policy with the highest precedence number is used to onboard the hotspot user.

To create an onboarding policy:

  1. Go to Configuration → Onboarding → Policy.
    The Onboarding Policy screen displays. This screen displays existing onboarding policies and their basic configuration. Double-click each policy to view the detailed configuration. Review the configuration details to determine if the policy warrants modification or removal.
    Click to expand in new window
    Onboarding Policy Screen
    GUID-8DDEB022-4C15-4982-8A60-F5031772EC8D-low.png
  2. Review the following information:
    Name Displays the name assigned to each onboarding policy. Selecting a policy displays the policy criteria details and allows editing of the policy.
    Description Displays the description for each onboarding policy.
    Action Select the GUID-62FE7F01-121E-434B-948B-67D2EF5A093F-low.png icon to remove the associated onboarding policy from ExtremeGuest.
  3. Select the GUID-CE3E6C28-31A8-4DE8-BB48-C207D9A7315A-low.png icon to update the data in the onboarding policy table.
  4. Adding an Onboarding Policy

  5. Select the GUID-BA8E61C7-AFCB-4AE1-8D32-83BD126D691A-low.png icon to add a new onboarding policy.
  6. Provide the following information:
    Policy Name Enter a name for the onboarding policy.
    Policy Description Enter a description for the onboarding policy.
  7. Adding Match Criteria to the Onboarding Policy

  8. In the Criteria #1 field, add the match criteria rule details. An onboarding policy consists of one or more match criteria that are used to filter guests and apply an action.
    Description Enter a description for this criteria uniquely identifying its purpose.
    Condition(s) Select one or more of the following conditions to match.
    • User Email Domain
    • Sponsor Email Domain
    • Social Type
    • User Type
    • Loyalty User
    • LDAP/Directory Group
    • User's Device Count
    • Any
    These conditions determine when the corresponding Action is triggered. Adding multiple conditions requires all conditions be met before the action is triggered. Multiple conditions can be specified to enact different policies based on matching conditions.
    Action Select an Action from the menu. The Action is triggered when all of the Condition(s) are met. Select from the following:
    Deny Access Denies network access to any guests matching the configured Condition(s).
    Register Device Registers guests matching the configured Condition(s).
    Note

    Note

    Specify the Validity for guest access in Days, Hours, and Minutes. Select a Group for the guest user to join.
    Send One-Time-Passcode to User Delivers a single-use passcode to guests matching the configured Condition(s).
    Note

    Note

    Specify the Validity for guest access in Days, Hours, and Minutes. Select a Group for the guest user to join. Select a user Notification Policy for sending the One-Time-Passcode to the guest.
    Send Passcode to User Delivers a multiple use passcode to guests matching the configured Condition(s).
    Note

    Note

    Specify the Validity for guest access in Days, Hours, and Minutes. Select a Group for the guest user to join. Select a configured user Notification Policy for sending the One-Time-Passcode to the guest.
    Send One-Time-Pass. on Sponsor Approval Delivers a single-use passcode to guests matching the configured Condition(s) once the guest has been approved by a sponsor.
    Note

    Note

    Specify the Validity for guest access in Days, Hours, and Minutes. Select a Group for the guest user to join. Select a sponsor Notification Policy for sending the approval request to the sponsor.
    Send Passcode on Sponsor Approval Delivers a multiple use passcode to guests matching the configured Condition(s) once the guest has been approved by a sponsor.
    Note

    Note

    Specify the Validity for guest access in Days, Hours, and Minutes. Select a Group for the guest user to join. Select a configured sponsor Notification Policy for sending the One-Time-Passcode to the guest.
    Send One-Time-Passcode to Sponsor Delivers a single-use passcode to the sponsor when the configured Condition(s) are met.
    Note

    Note

    The sponsor can then provide the single-use passcode to the guest. Specify the Validity for guest access in Days, Hours, and Minutes. Select a Group for the guest user to join. Select a sponsor Notification Policy for sending the approval request to the sponsor.
    Send Passcode to Sponsor Delivers a multiple use passcode to the sponsor when the configured Condition(s) are met.
    Note

    Note

    The sponsor can then provide the passcode to the guest. Specify the Validity for guest access in Days, Hours, and Minutes. Select a Group for the guest user to join. Select a sponsor Notification Policy for sending the approval request to the sponsor.
  9. Select Update User to send status to a user's email or mobile when registration is pending approval or is rejected.
    Selecting the Update User option enables the Notification Policies field. Select a notification policy to specify how the user is notified.
  10. Select Provide Temporary Access to give the user temporary access to check email for a passcode. Refer to Adding AAA Groups for information on adding temporary access policies and authorization.
  11. To remove multiple onboarding policies from ExtremeGuest, select the boxes for each policy then select the GUID-62FE7F01-121E-434B-948B-67D2EF5A093F-low.png icon.