Security

 View Only
Expand all | Collapse all

Clearpass Active Directory Join issue

This thread has been viewed 14 times
  • 1.  Clearpass Active Directory Join issue

    Posted Jan 26, 2025 01:15 PM

    Dear,

    I am trying to join Clearpass to a Domaine Controller in a local site (The Primary Domaine Controller is in a remote site) but it's not working and I get the error message below 

    I have checked the time,DNS entry and resolution, everything is fine, and i have tried connection with a service and Administrator account.

     Please any advice to resolve this issue ?

    Best regards



  • 2.  RE: Clearpass Active Directory Join issue

    Posted Jan 27, 2025 08:49 AM

    Hi

    RPC Timeout looks like blocked ports in the firewall. Do you have a firewall between the ClearPass server and the Domain controller?

    For the domain join you need more ports open than the LDAP/LDAPS.

    Also the user account utilized for the domain join must have modify rights on the ClearPass server object created in the AD. One way to achieve this is to create the object first  from Active Directory Users and Computer and grant the account correct permissions, another way is to delegate this permission to the user account. Last resort do the domain join as a domain admin. This may be a challenge in some organizations.



    ------------------------------
    Best Regards
    Jonas Hammarbäck
    MVP Guru 2024, ACEX, ACDX #1600, ACCX #1335, ACX-Network Security, Aruba SME, ACMP, ACSA
    Aranya AB
    If you find my answer useful, consider giving kudos and/or mark as solution
    ------------------------------