Wireless Access

last person joined: 23 hours ago 

Access network design for branch, remote, outdoor, and campus locations with HPE Aruba Networking access points and mobility controllers.
Expand all | Collapse all

Certificate Request on Controller

This thread has been viewed 0 times
  • 1.  Certificate Request on Controller

    Posted May 19, 2017 03:25 AM

    Hello @ all,

     

    I have an installation at a Customer with two 7205 controllers an aos version 8.1 with vrrp and database synchronisation.

    all is working fine.

     

    now my customer wants to use the internal radius server of the controller with connection to ms active directory user database for authenticaton the wireless clients with username and password.

     

    however he want´s to install a certificate from a company ca instead of

    using the dummy certificate of the controller.

     

    where do we have to make the csr and install the certificate?

    on both hw controllers or on the Mobilitylevel above?

    or on both hw controllers and on the Mobilitylevel above?

     

    best regards

     

    Oliver

     



  • 2.  RE: Certificate Request on Controller

    EMPLOYEE
    Posted May 19, 2017 04:06 AM

    "the internal radius server of the controller with connection to ms active directory user database"

     

    There can only be one or the other.  If it is active directory, have the user install NPS and configure it as a radius server on the Controller.  No certificates on the Controller needed.

     

    http://community.arubanetworks.com/t5/Community-Tribal-Knowledge-Base/Step-by-Step-How-to-Configure-Microsoft-NPS-2008-Radius-Server/ta-p/80672



  • 3.  RE: Certificate Request on Controller

    Posted May 19, 2017 05:11 AM

    the customer dont want to use an nps or other radiusserver.

    he want´s to use the radiusserver of the controller.

     

    however, the configuration works but only with the dummy certifikate ofthe controller.

     

    on which device do i have to make the csr and install the cert?

     

    best regards

     

    oliver

     



  • 4.  RE: Certificate Request on Controller

    EMPLOYEE
    Posted May 19, 2017 10:39 AM

    You should use an external RADIUS server....