Secure Mobility
Aerohive Solutions by Use Case

Secure & Flexible Access
Confidently connect corporate, BYOD, IoT and guest devices to your network without overburdening your IT team
- Simplified enterprise authentication makes it easy yet secure to connect every single network device
- Rich context-based access controls ensure that users are provided appropriate network access based on their device, location, and time of day
- Integration with RADIUS, AD, MDM, and NAC services ensures end-to-end control and compliance
- Cloud-based services and management centralize device onboarding, policy enforcement, and application visibility
Simplified Role-Based Access
Uniquely identify and secure users and devices without the drawbacks and complexity of RADIUS solutions, or the weaknesses of a traditional shared PSK. Aerohive's 'Private' PSK technology gives you the ability to easily onboard and identify devices, without security or complexity concerns.
A Complete Security Suite
Protect your mobility infrastructure with an end-to-end ecosystem of services and tools
Simplified Authentication
A simple yet powerful authentication method:
- 1000’s of unique Pre-Shared Keys per user or device within a single SSID
- Customizable security policies per PPSK group including VLAN assignment, time of day access, bandwidth allocation and firewall settings
- Revoke a single key without effecting the rest of the network
- Self-registration against AD for personal BYOD
- Time-based key validity for guest access
Application Visibility & Control
Provides IT with visibility and granular control over mobile applications:
- Prioritize and control of specific applications based on user and device identity
- DPI firewall built-in to all Aerohive Access Points to restrict usage of social, peer-to-peer, streaming and other troublesome applications
- QoS classification engine to enhance performance of mission critical applications such as voice and video
- Monitor application usage per user, device, SSID, and location in HiveManager’s powerful contextualized dashboards
BYOD & Guest Management
Cloud-based ID Manager application enables simple and secure on-boarding of transient and personal devices:
- Allow employees to sponsor guests or their own personal devices by creating accounts individually or in groups
- Credentials can be securely delivered by SMS to any mobile device, anywhere in the world
- Multiple secure access profiles – from short-term guests to fully-secure employee BYOD or personal devices
- Employee approval for guest self-registration
- Integrates existing RADIUS authentication systems to streamline deployments and meet compliance mandates
Integrated Protection
With a range of protection services built into every access point, you can safely unleash mobility throughout your organization:
- Fully stateful layer 2-7 firewall policies personalized to specific user groups or devices
- On-board RADIUS Server, CA and AD integration to leverage existing user database
- OS/Device classification engine enables granular policy enforcement
- Scheduled SSID availability
- WIPS policy for rogue detection and mitigation
- TPM chips inside every AP encrypt precious data from physical theft
- GRE and VPN tunneling to DMZ or remote locations
- Comprehensive monitoring and reporting
End to End Security
With a range of protection services built into every access point, you can safely unleash mobility throughout your organization:
- MDM partnerships with AirWatch and JAMF enable secure self-enrollment of device profiles and restricted network access of non-registered devices
- NAC integration with Impulse, Bradford, and Lightspeed to enforce device compliance

