Hi
I'm trying to set up the guest/contractor wireless access with amigopod captive portal authentication as shown in diagram attached.
DHCP server for guest is on the Aruba controller and routing is disabled for vlan 300.
Guest gateway is pointing directly to Palo alto firewall.
interface vlan 300
IP address 172.16.240.253 255.255.255.0
no IP routing
I can see the guest captive portal and request the new user from that portal to amigopod.
Login button become active (from dim state) after the user account is granted from amidopod.
But it only bring me to "https://10.2.8.126/auth/index.html/u?errmsg=Access%20denied" page when I tried to login.
Could it be the asymmetric routing issue ?
Since the guest account request traffics are forward through Palo alto friewall to amigopod.
Guest PC -> Aruba Controller -> Palo Alto -> Amigopod
I suspect somehow Aruba controller return the authentication accept traffics directly to guest pc which should direct through Palo alto.
Is it possible to configure policy route statement on Aruba controller ?
I'll try to post the configuratoin file later.
regards
ye lynn