Security

Reply
Contributor I
Posts: 49
Registered: ‎07-18-2014

Configure certs manually on end users

Hi,

 

 I'm trying to provision the users manually in an onboard deployment, but not sure 100% how to create the cert and install it.

 

 I provisioned an user with the QuickConnect and it worked fine, then desconfigure the wireless properties on the network card to set it manually and reconfigure again as how it set with the quickconnect but id didn't work.

 

 When create a cert on the onboard, download it and install on the end user laptop but after configure the properties and try to connect it asks for credentials, as on the accesstracker always see "user:<number>:OnboardDevice" I think I must access with this user but it doesn`t work with the AD credentials.

 

Do you know how should it work or how to set the clearpass and user to make this work?

Guru Elite
Posts: 8,795
Registered: ‎09-08-2010

Re: Configure certs manually on end users

Are using the full Onboard process or are you generating the certs on the ClearPass side, exporting them and then importing them to the clients?

Be sure your network configuration in Onboard is set to EAP-TLS and not PEAP.

Tim Cappalli | Aruba Security TME
@timcappalli | timcappalli.me | ACMX #367 / ACCX #480
Contributor I
Posts: 49
Registered: ‎07-18-2014

Re: Configure certs manually on end users

Hi, 

I need to generate on the cp onboard, export and import on a windows laptop.

 

 With the full process it works but this is something my end cust doesn't want.

Guru Elite
Posts: 8,795
Registered: ‎09-08-2010

Re: Configure certs manually on end users

Are you seeing that username in the cert as well when you look at it on the computer or in Onboard?

 

Also, when manually doing the CSR, are you using the username as the common name?

 

 


Tim Cappalli | Aruba Security TME
@timcappalli | timcappalli.me | ACMX #367 / ACCX #480
Search Airheads
Showing results for 
Search instead for 
Did you mean: