Hey AirHeads Community,
Our setup consists of:
- (2) 7205 controllers (master/local)
- (2) ClearPass 6.5 servers (publisher/subscriber)
- (2) Palo Alto Firewalls + Panorama (active/backup)
SSIDs include:
- Guest - Open/Captive Portal w/ Employee Login for BYOD (against AD)
- Employee - 802.1X against AD
RADIUS Accounting is enabled on Controller and Clearpass
PAN firewalls and PANORAMA added as Endpoint Context Servers
Insight Enabled on Clearpass
Added PAN update triggers in Enforcement Policy
Added PAN servers in Controller and enabled PAN integration on AAA profiles
*PAN admin account is super user for clearpass/controller.
We see the app_aruba user (local admin in PAN) shows up on the palo alto when sending traffic, but we don’t see any usernames for employees who authenticate on either SSIDs.
Any ideas or anything I could have overlooked?
![[2015-11-30]-Image001.png [2015-11-30]-Image001.png](https://higherlogicdownload.s3.amazonaws.com/HPE/MigratedInlineFiles/ddabf778cf0e42d5b191515eb5a228eb_14bfe01fafaf4dcab6ea40a8b64ea8df)