When you configure a gateway, you can specify client authentication
settings that apply specifically to IoT. For example, you can
configure Windows and macOS endpoints to use two-factor
authentication and require IoT devices to use certificate-based
authentication.
You can also configure supported network and client settings—such as
specific IP pools, access routes, and split tunneling—for IoT
devices.
Do one of the following:
- On Panorama, select and then select or
Add a gateway
configuration.
- On Strata Cloud Manager, select and then select or
Add a gateway
configuration.
Add a Client Authentication configuration for IoT
devices:
Select Authentication and
Add a new Client
Authentication configuration.
Enter a Name to identify the
Client Authentication configuration, set
OS to
IoT, specify the
Authentication Profile to
use for authenticating users on this gateway. Choose
a profile that enables client certificate
authentication.
Click OK.
To configure specific client settings that apply to only IoT
endpoints, configure a new Client Settings
configuration:
Select Agent and
Add a new Client Settings
configuration.
Configure the Client Authentication settings as
desired.
Select User/User Group and
then Add an OS, and select
IoT.
Click OK.
Click OK.
Commit the configuration.