Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

No Intune Authorization attributes returned

This thread has been viewed 14 times
  • 1.  No Intune Authorization attributes returned

    Posted Apr 18, 2018 02:37 PM

    Hello,

     

    I'm trying to get the intune extension installed on our clearpass 6.7 cluster. I have followed the V3.0 tech note and have installed the extension on each node in the cluster.  I also confirmed that I clicked on "Grant Permissions" in the Azure App permissions. (as per this article - https://community.arubanetworks.com/t5/Security/UPDATED-TechNote-V3-ClearPass-and-Microsoft-Intune-Extension/m-p/297163)

     

    I have enabled DEBUG in the extension logs but they're not very helpful. Here is a sample of my last couple lines of the log:

    2018-04-18 11:12:27.765] [DEBUG] intune - Request received. /?macAddress=9cb6d0######
    [2018-04-18 11:12:27.765] [DEBUG] intune - Querying Intune at https://fef.msua05.manage.microsoft.com/StatelessNACService/devices
    [2018-04-18 11:14:01.698] [DEBUG] intune - Request received. /?macAddress=68dbca######
    [2018-04-18 11:14:01.698] [DEBUG] intune - Querying Intune at https://fef.msua05.manage.microsoft.com/StatelessNACService/devices
    [2018-04-18 11:14:02.121] [DEBUG] intune - Request received. /?macAddress=68dbca######
    [2018-04-18 11:14:02.121] [DEBUG] intune - Querying Intune at https://fef.msua05.manage.microsoft.com/StatelessNACService/devices

    In the Azure App settings, I see a return URL? Our CPPM servers while having access ot the internet, are not accessible from the internet or the Azure cloud. Does Azure actually post back data to the clearpass server, or is the data returned in the https request that Clearpass makes to the API?

     

    Thanks for any insight!

    Richard



  • 2.  RE: No Intune Authorization attributes returned

    EMPLOYEE
    Posted Apr 18, 2018 02:40 PM
    No. Inbound access is not required. Please work with Aruba TAC.


  • 3.  RE: No Intune Authorization attributes returned

    Posted Apr 18, 2018 03:59 PM

    Thanks will do!



  • 4.  RE: No Intune Authorization attributes returned

    Posted Apr 24, 2018 06:04 PM

    Hi Tim,

     

    Just wanted to give you an update. I automatically started receiving Intune data about 20 minutes after I posted this thread. I'm assuming I simply wasn't patient enough with the update of the security settings in Azure cloud... lol!

     

    It is now working great! Thank you!