Wireless Access

last person joined: yesterday 

Access network design for branch, remote, outdoor, and campus locations with HPE Aruba Networking access points and mobility controllers.
Expand all | Collapse all

error securelogin.arubanetworks.com

This thread has been viewed 48 times
  • 1.  error securelogin.arubanetworks.com

    Posted Jun 10, 2018 10:01 AM

    Hello
    I have a controller associated to a clearpass for the authentication of the guests through a self registration, when the guest connects to this network the portal is shown with the address https://securelogin.arubanetworks.com, which shows error of certificate, a certificate was generated for the clearpass issued by a trusted certifying entity but the same problem arises, how can I solve the problem?



  • 2.  RE: error securelogin.arubanetworks.com

    EMPLOYEE
    Posted Jun 10, 2018 10:12 AM
    You cannot use the default captive portal certificate. You need to acquire a public CA-signed certificate for the controller for captive portal.


  • 3.  RE: error securelogin.arubanetworks.com

    Posted Jun 10, 2018 02:35 PM

    the captive portal is housed in the clearpass, due to that a certificate was acquired for the clearpass, also it is necessary to acquire a new one for the controller ??

    the new certificate in the clearpass was issued for clearpass.casuarinas.edu.pe, with what name should the new certificate be created for the controller ??



  • 4.  RE: error securelogin.arubanetworks.com

    EMPLOYEE
    Posted Jun 10, 2018 02:58 PM
    Yes, you need one for the controller as well. It can be a generic common name like “login.yourdomain.com”.


  • 5.  RE: error securelogin.arubanetworks.com

    EMPLOYEE
    Posted Jun 11, 2018 05:19 AM

    As part of the authentication flow with ClearPass as an external captive portal, the user credentials are sent as an HTTPS port to the controller or Instant AP, which is the reason to have a valid certificate there as well.

     

    I created a video that goes through an external ClearPass captive portal with all the steps involved. It will show you it from captures as well. 

     

    Short story: you will need a public trusted certificate for controller/instant as well as for your ClearPass servers. Under circumstances, you can use the same certificate on both places if you have multi-SAN or wildcard certificates.