03-30-2016 03:42 AM
I have a Cisco WLC 5508 WLC with version 8.1 code and have configured two RADIUS servers which are Aruba CPPM. What I'm trying to do is configure Radius fallback so in the event if the primary CPPM goes offline, the secondary CPPM will take over by servicing AAA request. In the event if the primary CPPM comes back online, it should takeover the AAA request servicing role from the secondary CPPM.
Unfortunately, I'm not able to get this fallback to work properly. I've taken the primary CPPM offline and brought it back online, but am still seeing the secondary CPPM continue to servicing AAA requests where I expect the primary CPPM to resume this role.
I have configured active fallback, configured the name of the probes to be sent, and left the default interval time it takes to send the probes at 300 seconds on the WLC.
Any advice is much appreciated. I have seen Cisco documents referencing ACS and ISE but not sure if CPPM is supported.
03-30-2016 05:57 AM
Sent from Nine<>
Tim Cappalli | Aruba ClearPass TME
@timcappalli | ACMX #367 / ACCX #480 / ACEAP / CWSP
03-30-2016 11:20 AM
You could also just configure the VIP between the two CPPMs so you can just use the VIP as the fail over and when the main comes back on it will fail back.
--Give Kudos: found something helpful, important, or cool? Click Kudos Star in a post.
--Problem Solved? Click "Accepted Solution" in a post.
03-30-2016 02:33 PM
Thanks gents, I'll try simulating the fallback option on the Cisco WLC in the lab and do some troubleshooting around it. If I can't get it to work, I'll look at redesigning the CPPM cluster using a VIP.