Security

 View Only
last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

ClearPass Captive Portal Wired not working

This thread has been viewed 38 times
  • 1.  ClearPass Captive Portal Wired not working

    MVP
    Posted Jun 18, 2021 06:19 AM
    Hi everybody,

    I try to configure captive-portal on our Aruba2530 and in ClearPass.

    This is the profile i configured in ClearPass:


    When I connect my PC to the switch I can see that the login is accepted in ClearPass, but no VLAN is assigned and the Captive-Portal-URL isn´t assigned. The termination cause says: NAS Error.


    If i remove the HPE-Captive-Portal-URL from the profile, the login is accepted and the VLAN is assigned correctly.
    Any hints?

    ------------------------------
    Matthias Pohl
    ------------------------------


  • 2.  RE: ClearPass Captive Portal Wired not working
    Best Answer

    Posted Jun 19, 2021 05:44 AM
    You need to add filters for dns, dhcp and web traffic to be able to start captive portal. Something like this:

    1. Radius:Hewlett-Packard-Enterprise HPE-Captive-Portal-URL = http://your-clearpass/guest/your-page.php
    2. Radius:IETF NAS-Filter-Rule = permit in tcp from any to <clearpass-ip> 80
    3. Radius:IETF NAS-Filter-Rule = permit in tcp from any to <clearpass-ip> 443
    4. Radius:IETF NAS-Filter-Rule = deny in tcp from any to any 80 cpy
    5. Radius:IETF NAS-Filter-Rule = deny in tcp from any to any 443 cpy
    6. Radius:IETF NAS-Filter-Rule = permit in udp from any to any 53
    7. Radius:IETF NAS-Filter-Rule = permit in udp from any to any 67
    8. Radius:Hewlett-Packard-Enterprise HPE-Egress-VLAN-Name = 2VLAN401


    ------------------------------
    Gorazd Kikelj
    ------------------------------



  • 3.  RE: ClearPass Captive Portal Wired not working

    MVP
    Posted Jun 22, 2021 03:33 AM
    Thx for your reply. Working fine now.

    ------------------------------
    Matthias Pohl
    ------------------------------



  • 4.  RE: ClearPass Captive Portal Wired not working

    Posted Jul 07, 2021 10:34 AM
    Dear MatthiasP,

    Can you give me some documentation on this?

    ------------------------------
    tam nguyen duc
    ------------------------------



  • 5.  RE: ClearPass Captive Portal Wired not working

    MVP
    Posted Jul 09, 2021 06:49 AM
    Hi,
    I´ve justed filled in the attributes Gorazd mentioned:


    ------------------------------
    Matthias Pohl
    ------------------------------