Wireless Access

 View Only
last person joined: yesterday 

Access network design for branch, remote, outdoor, and campus locations with HPE Aruba Networking access points and mobility controllers.
Expand all | Collapse all

Clearpass Captive Portal Certificate Error

This thread has been viewed 6 times
  • 1.  Clearpass Captive Portal Certificate Error

    Posted Apr 05, 2016 11:26 AM

    Hi All

     

    I am using Clearpass Guest for a self registration guest network via a captive portal page,  if a user connects to the Guest SSID, opens their browser and tries to navigate to a HTTP page, they are redirected to the captive portal page and everything is fine, however if they try to navigate to a HTTPS page the browser complains about the certificate. I assume this is because the browser is expecting to see a certificate for the original page they tried to browse to, but is instead getting the certificate for the capive portal page. Is there anyting I can do about this or is it something we will have to live with.

     

    Would appreciate any advice

     

    Thanks

     

    Dave



  • 2.  RE: Clearpass Captive Portal Certificate Error
    Best Answer

    EMPLOYEE
    Posted Apr 05, 2016 11:58 AM
    Unfortunately this is an industry-wide problem. There is currently no
    solution.


  • 3.  RE: Clearpass Captive Portal Certificate Error

    Posted Sep 30, 2016 04:03 PM

    Has anyone come up with a possible workaround for this? This is a major problem for captive portal solutions since more and more sites are secure.

     

    I haven't though of how this would be configured specifically and what exact configuration items would be required but would redirecting to a HTTP site first which in turn redirect to HTTPS login page be possible? Has anyone possibly done this?

     

    Thanks,

    Peter

     

     



  • 4.  RE: Clearpass Captive Portal Certificate Error

    EMPLOYEE
    Posted Sep 30, 2016 04:16 PM
    This is an industry wide problem. There are some standards out there to help prevent this but no client devices have implememted them.