Security

 View Only
last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Clearpass guest SSO integrated with Azure AD. IOS devices issue

This thread has been viewed 33 times
  • 1.  Clearpass guest SSO integrated with Azure AD. IOS devices issue

    Posted May 20, 2021 12:43 AM
    Hi,

    I have testing clearpass guest SSO integrated with Azure AD. I have an issue with IOS devices. It does not automatically redirect to the login page buy Windows and Android devices can automatically redirect to the login page.

    Details :
    - ClearPass guest SSO with Azure AD
    - After the client connects to WiFi, It's will redirect to login.microsoftonline.com to login
    - For IOS devices I have tested by open HTTP website. It can redirect to the login page.
    - If I change config Pre-Auth check on web logins from SSO to None. The IOS devices can automatically redirect to the login page.
    - Clearpass version 6.7.9
    - WLC 6.4.4.25
    - Setting base-on this document: https://psnow.ext.hpe.com/doc/a00100369en_us

    Does anyone meet this issue?
    How to solve the IOS devices issue?

    Thank you.


  • 2.  RE: Clearpass guest SSO integrated with Azure AD. IOS devices issue

    EMPLOYEE
    Posted May 21, 2021 10:32 AM
    Can you check that you don't have CNA bypass enabled by either allowing http://captive.apple.com through your captive portal,
    or with the setting 'prevent CNA' in your Guest pages?

    Best to work with your Aruba partner or Aruba Support if it is not one of these.

    ------------------------------
    Herman Robers
    ------------------------
    If you have urgent issues, always contact your Aruba partner, distributor, or Aruba TAC Support. Check https://www.arubanetworks.com/support-services/contact-support/ for how to contact Aruba TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.

    In case your problem is solved, please invest the time to post a follow-up with the information on how you solved it. Others can benefit from that.
    ------------------------------



  • 3.  RE: Clearpass guest SSO integrated with Azure AD. IOS devices issue

    Posted May 22, 2021 03:31 PM

    I  don't enable CNA on CPPM and WLC. If I change the Pre-Auth Check from SSO to None. It's can automatically redirect.



    ------------------------------
    KiatZilla
    ------------------------------