Security

 View Only
last person joined: 18 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Clear Pass certification

This thread has been viewed 2 times
  • 1.  Clear Pass certification

    Posted Nov 26, 2019 04:50 AM

    By using ClearPass, certificate is distributed to clients so that the client can access the network (EAP TLS). Clients can access the network by using distributed certificate. Once a client accessed the network, is there any way to deny that client  from accessing the network by making the distributed certificate invalid? Thanks in advance.



  • 2.  RE: Clear Pass certification
    Best Answer

    Posted Nov 26, 2019 05:40 AM

    Hi Syazusyazu923,

     

    of cause there is a way. Key words are CRL or OCSP.

     

    Greetings



  • 3.  RE: Clear Pass certification

    Posted Nov 26, 2019 11:06 PM

    Thanks!

    I will check the information about OCSD in ClearPass!

     

     


    @airsecxd wrote:

    Hi Syazusyazu923,

     

    of cause there is a way. Key words are CRL or OCSP.

     

    Greetings


     



  • 4.  RE: Clear Pass certification

    Posted Nov 28, 2019 11:03 PM

    Hi. I already configured authentication method to use the tls with ocsp enabled. In the ocsp settings, I inserted the ocsp URL, and successfully revoked the certificate. Unfortunately, I was unable to unrevoked the certificate so that the client can access the network again. Please give me some suggestion or hint. Thanks in advance!



  • 5.  RE: Clear Pass certification

    Posted Dec 03, 2019 06:16 PM

    As I understand certificate rules, revoke is one-way. To "unrevoke" you re-issue a new certificate.



  • 6.  RE: Clear Pass certification

    Posted Dec 03, 2019 06:27 PM

    As msabin stated, you can not "unrevoke".
    Your client needs to request and receive a new certificate from the PKI.



  • 7.  RE: Clear Pass certification

    Posted Dec 05, 2019 11:37 PM

    Again, thanks a lot! Finally got the answer for my question!



  • 8.  RE: Clear Pass certification

    Posted Dec 05, 2019 11:37 PM

    Thank you very much!