Be advised that using PEAP-MS-CHAPv2 is deprecated because the underlying encryption is cracked and your credentials can lead out. EAP-TLS should be deployed instead whenever possible.
Could it be that you have a cluster and just joined one of the nodes to your AD? You should join all of your ClearPass servers.
Is your ClearPass server configured with the AD server(s) as DNS server?
Are the clocks (time) synchronized between ClearPass and your AD?
Is your AD server not overloaded?
------------------------------
Herman Robers
------------------------
If you have urgent issues, always contact your Aruba partner, distributor, or Aruba TAC Support. Check
https://www.arubanetworks.com/support-services/contact-support/ for how to contact Aruba TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.
------------------------------
Original Message:
Sent: Dec 15, 2020 04:37 AM
From: Aria adhiguna
Subject: Clearpass with AD authentication failed
Hi, i have joined the AD domain on clearpass, added it as authentication source, but when i connect to the SSID, the authentication fails. I tried to test in using Clearpass CLI and it said SUCCESS, as shown here:
------------------------------
AA
------------------------------