Security

 View Only
  • 1.  Wildcard SSL certificate for Aruba home lab envirement

    Posted Oct 30, 2018 07:34 AM

    hello Folks, 

    my home lab is all about: Clearpass VM 6.4 and 2x7010 Mobility Controllers OS6.5 . in the future I'll migrate to AOS 8 and set up a VMM. 

    I don't need to see any more SSL certificate error and related issues for Guest users and admin https connections. 

    any way to get a free Wildcard certificate for a home lab, or buy otherwise? 

    is this will work for my current and future plan?

    please, I'm open to all your suggestions. 

     

     



  • 2.  RE: Wildcard SSL certificate for Aruba home lab envirement

    Posted Oct 30, 2018 08:12 AM
    You would need to purchase one.


  • 3.  RE: Wildcard SSL certificate for Aruba home lab envirement

    Posted Oct 30, 2018 08:41 AM

    So a Wildcard SSL Certificate will work for my Clearpass and both current MC controllers and my future VMM, right? 

     

    thank you! 



  • 4.  RE: Wildcard SSL certificate for Aruba home lab envirement
    Best Answer

    Posted Oct 30, 2018 08:47 AM
    It's not great security practice, but for a lab, yes.


  • 5.  RE: Wildcard SSL certificate for Aruba home lab envirement

    Posted Oct 30, 2018 08:49 AM

    Awesome ! thank you so much 



  • 6.  RE: Wildcard SSL certificate for Aruba home lab envirement

    Posted Nov 01, 2018 02:42 AM

    Hello Tim, 

    A question prompted in my mind, As you know, I'll need to generate a CSR for signature, from which device I should generate the CSR? the master controller, Local controller, or clearpass? 

     

    I'm still learning about Certificates,

     

    regards,

    thanks, 

     



  • 7.  RE: Wildcard SSL certificate for Aruba home lab envirement

    Posted Nov 01, 2018 07:31 AM
    ClearPass or your laptop.


  • 8.  RE: Wildcard SSL certificate for Aruba home lab envirement

    Posted Nov 01, 2018 09:15 AM

    Hi Tim, 

     

    i understand that I need to create CSR from Clearpass or my laptop using OpenSSL. 

     

    thank you!