06-23-2016 08:43 AM
I want to have an SSID that does RADIUS authentication against a Server 2012 R2 RADIUS server.
This currently works with my Procurve setup, but I'm having issues making it work with the Aruba AP.
I've been following this guide, but so far, no luck. http://www.arubanetworks.com/techdocs/InstantMobil
The error on the server 2012 side is
Reason Code: 16 Reason: Authentication failed due to a user credentials mismatch. Either the user name provided does not map to an existing user account or the password was incorrect.
But, the credentials are being pulled from the Windows session, so they're correct.
06-23-2016 09:54 AM - edited 06-23-2016 09:55 AM
Trying to do EAP-PEAP
The controller is trying to do MS-CHAPv2, and while we're allowing that, it's still not working. I didn't see a way to control this on the Aruba side.
06-23-2016 09:58 AM
Did you create a new connection request policy for the wireless users configured only for EAP-PEAP/MSCHAPv2?
Tim Cappalli | Aruba ClearPass TME
@timcappalli | ACMX #367 / ACCX #480 / ACEAP / CWSP