11-09-2014 12:40 PM
You will need to configure a service that can handle PAP or MSCHAPv2 requests. If you configure a NAS-Identifier on the RADIUS server profile on the controller you can use that RADIUS attribute for the service classifcation.
If you're trying MSCHAPv2 authentications against AD make sure your CPPM is joined to the domain. This is not required for PAP.
ACMX#255 | ACMP | ACCP | AWMP
11-09-2014 12:42 PM
Keep in mind that the test is designed as a connectivity check, not a credential check.
You can use it without creating a service.
Timeout = connectivity issues
Reject = connectivity with RADIUS server is good
Tim Cappalli | Aruba ClearPass TME
@timcappalli | ACMX #367 / ACCX #480 / ACEAP / CWSP
11-09-2014 10:14 PM
And for future refrence if someone else is looking at this post. You can do a CPPM AAA test to the AD with a user account in the policy simulation.
--Give Kudos: found something helpful, important, or cool? Click Kudos Star in a post.
--Problem Solved? Click "Accepted Solution" in a post.