Cloud Managed Networks

 View Only
last person joined: 21 hours ago 

Forum to discuss all things related to HPE Aruba Networking Central and UXI Network Management, including deployment of managed networks, configuration, best practices, APIs, Cloud Guest, AIOps, Presence Analytics, and other included Applications
Expand all | Collapse all

Azure AD -> Aruba Central

This thread has been viewed 46 times
  • 1.  Azure AD -> Aruba Central

    Posted Feb 16, 2020 07:00 PM

    Hi all! 

     

    I'm hoping someone can point me in the right direction here, basically our situation is we're bringing together our logins for various platforms/tools to all be Single-Sign-On with our Azure AD logins. One of the last barriers is our Aruba gear, specifically authenticating people to our wireless networks. 

     

    We don't have an on-prem domain, just AAD, and out AP's are all AP-535's. Everything for now is managed via Aruba Central.

     

    Ideally we'd like people to be able to sign into our wifi using their AAD credentials, certificates are on the horizon but not likely to be looked at anytime soon so we're stuck typing in logins like savages for now. 

     

    So far we have tried exposing LDAPS via Domain Services and setting a network to authenticate from that, but we don't seem to be able to get any logins to work and there isn't much in the way of logs on either end to describe what is wrong. 

     

    Any advice or input would be greatly appreciate! 

     



  • 2.  RE: Azure AD -> Aruba Central

    EMPLOYEE
    Posted Feb 17, 2020 03:02 AM

    Hi there!

     

    for network access using Azure AD credentials you unfortunately need an additional product like Aruba ClearPass that provides SSO capabilities. There is no native support to perform 802.1x against Azure AD unfortunately (this is due to Microsoft's design).

     

    ClearPass allows you to implement web-based SSO workflows against AAD. But methods such as EAP-PEAP/EAP-TLS (WPA2-ENT) are not possible directly against AAD (doesn't support NTLM authentication).

     

    If you would like to integrate Admin access to Aruba Central with AAD, this is possible, using SAML: https://help.central.arubanetworks.com/latest/documentation/online_help/content/nms/user-mgmt/saml-profile-conf.htm

     

    There is a good video that shows theses steps for SSO Integration of Aruba Central with AAD specifically:

    https://www.youtube.com/watch?v=BIP0iBXFRAk&t=194s



  • 3.  RE: Azure AD -> Aruba Central

    Posted May 28, 2021 09:02 AM
    Wow.. It's a year later, and this so still Current. Thanks for the share.  I was just looking for some reference on this.. TY

    ------------------------------
    Rich Cruz
    ------------------------------