View Only
last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Clearpass cluster update question

This thread has been viewed 12 times
  • 1.  Clearpass cluster update question

    Posted Sep 07, 2022 11:02 AM
    Hello all 

    we are planning a cluster update for our Clearpass deployment. the question is will the subscriber still continue to authenticate users based on services while the publisher is updating? we are trying to limit outage as much as possible during the update
    thank you

  • 2.  RE: Clearpass cluster update question
    Best Answer

    Posted Sep 07, 2022 11:10 AM
    Yes, the Subscriber will continue to authenticate users and devices without the Publisher.
    Guest user creation and some other tasks are dependent of the Publisher and will not work.
    An update within the same major version, 6.10.5 to 6.10.6, will only require a normal reboot and will not take to long time.

    If you upgrade from one major release to another, 6.9 to 6.10, the new version is installed on the secondary partition and the databases are migrated and converted during the first reboot. The time for this operation is dependent on database size, appliance performance and in case of virtual server the performance of the underlaying disk system etc.

    It's assumed that the network infrastructure have been configured to have primary and secondary Radius server configured to be able to utilize both servers for authentication. If only the Publisher address is specified as Radius server in switches or WLAN the authentication will fail.

    Read the release notes to get important information related to tasks that may be needed to perform before or after the update/upgrade.

    Best Regards
    Jonas Hammarbäck
    Aranya AB

  • 3.  RE: Clearpass cluster update question

    Posted Sep 07, 2022 11:22 AM
    thank you !