Cloud Managed Networks

 View Only
  • 1.  Can Cloud Auth be used in more than one WLAN?

    Posted Oct 16, 2024 06:10 AM

    The topic came in a discussion with a customer. In Aruba Central we can configure any WLAN to use "Cloud Auth" as the authentication server, but in Global -> Security we have to choose one for the network profile. Is the use of Cloud Auth limited to one WLAN per tenant?



  • 2.  RE: Can Cloud Auth be used in more than one WLAN?

    Posted Oct 16, 2024 06:13 AM

    Should work, as when selecting Cloud Authentication as the authentication server the SSID is configured for Passpoint.

    The SSID setting under Global -> Security is for clients that don't support Passpoint.



    ------------------------------
    Herman Robers
    ------------------------
    If you have urgent issues, always contact your Aruba partner, distributor, or Aruba TAC Support. Check https://www.arubanetworks.com/support-services/contact-support/ for how to contact Aruba TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.

    In case your problem is solved, please invest the time to post a follow-up with the information on how you solved it. Others can benefit from that.
    ------------------------------



  • 3.  RE: Can Cloud Auth be used in more than one WLAN?

    Posted Oct 16, 2024 08:42 PM
    Edited by ariyap Oct 16, 2024 08:42 PM

    No Cloud Auth can be used on many WLANs based on the auth method, etc per tenant.

    CloudAuth can be used for cloud Guest access, MPSK, Personal wireless networks (PWN). and can integrate with cloud id stores like Google Workspace, Microsoft Entra ID, and Okta Workforce Identity Cloud.

    Here is the CloudAuth guide 



    ------------------------------
    If my post was useful accept solution and/or give kudos.
    Any opinions expressed here are solely my own and not necessarily that of HPE or Aruba.
    ------------------------------



  • 4.  RE: Can Cloud Auth be used in more than one WLAN?

    Posted Oct 18, 2024 02:14 AM

    Thanks for the response. We have only been playing with CloudAuth for a couple of months, as a POC, and until now we just relied on having the user go to the URL that Central shows and downloading the connection profile with or without the Onboarding app. So, if a client with Passpoint enabled connects directly to the network, how does it download the user certificate? Or should it have been obtained previously?




  • 5.  RE: Can Cloud Auth be used in more than one WLAN?

    Posted Oct 18, 2024 06:57 PM

    the user cert will be installed during the onboarding process of using the onboard app or through the url before hand.



    ------------------------------
    If my post was useful accept solution and/or give kudos.
    Any opinions expressed here are solely my own and not necessarily that of HPE or Aruba.
    ------------------------------



  • 6.  RE: Can Cloud Auth be used in more than one WLAN?

    Posted Oct 19, 2024 03:07 PM

    So, if I understood you both correctly, if a customer has two 802.1X WLANs, both using Cloud Auth, and one of them is assigned to the client profile, the user can onboard with that profile and later use that same certificate to connect to the other WLAN, am I correct?




  • 7.  RE: Can Cloud Auth be used in more than one WLAN?

    Posted Oct 21, 2024 08:15 AM

    That should be correct, at least for clients that support Passpoint/Hotspot 2.0. For other clients, you may use the provisioned certificate and select that when you connect to that other SSID.



    ------------------------------
    Herman Robers
    ------------------------
    If you have urgent issues, always contact your Aruba partner, distributor, or Aruba TAC Support. Check https://www.arubanetworks.com/support-services/contact-support/ for how to contact Aruba TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.

    In case your problem is solved, please invest the time to post a follow-up with the information on how you solved it. Others can benefit from that.
    ------------------------------