i think the easiest way is to send the Aruba-user-role and that local role will have the URL to quarantine page which is hosted on ClearPass
Yes, I did that in the end, but I wanted to know why it didn't work or if there was something else to consider to make it work.I saw that some people put 'url-redirect= "web page"' and others don't use the initial, but neither way worked for me.Do you think there is a way to make it work with the enforcement profile?
what is your NAD? is it a CX switch or Aruba controller or IAP?
Is it a cluster of IAPs in Central
Never used that myself, but pretty sure that VSA doesn't work alone. I would suggest you also return aruba-user-role with a role that is limited identical to the "guest-logon" is - tho with no captive-portal config.
Likewise, if it actually works, then can we conclude that by itself it doesn't work?
Correct. Need "aruba-user-role" also, or you can maybe get around it using some default role/default mac-role in the AAA mac-auth profile.. Just verify what role the user has.
You could just create different guest-logon-ROLEXYZ and attach different captive-portals to them.. Not sure what is easiest in your cast, as the role will still have to be created..
© Copyright 2024 Hewlett Packard Enterprise Development LPAll Rights Reserved.