Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

RADIUS health checking on Controllers

This thread has been viewed 0 times
  • 1.  RADIUS health checking on Controllers

    Posted Oct 11, 2016 05:20 AM

    Hi,

    I've configured one of our test controllers to load balance eap based auths across multiple clearpass servers and amnow thinking of rolling this out to production.

    However, we recently had an issue where clearpass ->AD conectivity was broken so although clearpass happily processed pap,mschap based auths,eap based ones failed.

     

    Whjat sort of health checking does a controler do to ascertain whether a RADIYS server is up and running? Is it possible to set up a health check that requires successful completion of an eap based authentication pripr to the controller passing real auths to a particular server.

     

     



  • 2.  RE: RADIUS health checking on Controllers

    EMPLOYEE
    Posted Oct 11, 2016 06:39 AM

    At this time, the controller only checks for a valid response from the radius server, and not for types of responses, to determine what server is used.  If you think this would be helpful, please request the idea here: https://arubanetworkskb.secure.force.com/cp/ideas/ideaList.apexp