Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Erorr Code 215 TLS Session Erorr - Clearpass OnBoard

This thread has been viewed 0 times
  • 1.  Erorr Code 215 TLS Session Erorr - Clearpass OnBoard

    Posted Mar 06, 2017 03:56 AM

    Hi All,

     

    I'm trying to configure OnBoard for first time with Local User.

     

    I got the Message below :

    TLS Erorr.JPG

    Kindly need your advice

     

    Thank you



  • 2.  RE: Erorr Code 215 TLS Session Erorr - Clearpass OnBoard
    Best Answer

    EMPLOYEE
    Posted Mar 07, 2017 03:37 AM

    This log message indicates that the OCSP certificate validation is not working properly. You should fix this in the OCSP settings in the Onboard CA (so it will add a reachable OCSP URL to the client certificates), or for now create a custom [EAP-TLS] Authentication Method that has an overridden OCSP URL; or switch off OCSP validation. This screenshot shows the OCSP override as an example:

    ocsp.png

    In here you can also disable Verify Certificate, to check that it is indeed the OCSP. The OCSP URL can be found in the CA list.