Controllerless Networks

 View Only
last person joined: 4 days ago 

Instant Mode - the controllerless Wi-Fi solution that's easy to set up, is loaded with security and smarts, and won't break your budget
Expand all | Collapse all

Windows 10 certificate issue

This thread has been viewed 30 times
  • 1.  Windows 10 certificate issue

    Posted Nov 12, 2020 11:15 AM

    Hi All,

     

    Just wanted to run an issue past you for Windows 10 devices not displaying captive portal on guest network. The captive portal is hosted on CP.

     

    The deployment details are:

    Aruba wireless 315 IAPs running 8.6.0.3_74788 managed by AirWave

    Clearpass Policy Manager 6.8.6.120352 on C2000V platform

    AirWave – 8.2.11.0

     

    Windows 10 clients are getting warning about the SSL certificate when being re-directed to CPPM captive portal.

    When looking at the certificate path only a single level cert is presented. It should provide the full path details which is doesn't.

     

    We have a global wildcard cert installed on CPPM, which includes both root and intermediate.

    The same wildcard cert is uploaded to the IAPs via AirWave.

     

    Other devices are working fine, androids and ipads that auto forward to captive portal for wifi sign on don't display the issue.

     

    Thanks,



  • 2.  RE: Windows 10 certificate issue

    MVP EXPERT
    Posted Nov 13, 2020 05:05 AM
    Hi Danger,

    1. Does it work before?
    2. Does anything changed?
    3. Is your time and timezone correct set?
    4. Is your windows software up-to-date?

    The HTTPS certificate in ClearPass must contain the root and intermediate CA certificates. And the client must have the root and intermediate CA certificates in the trust store.

    By what organization is your HTTPS certificate issued? Do you have some screenshots with more information.
    Example:



    ------------------------------
    marcel koedijk
    ------------------------------



  • 3.  RE: Windows 10 certificate issue

    Posted Nov 13, 2020 11:35 AM

    Hi 

    Thank you for your response. I found the issue, it was because the full chain was not uploaded to the IAP that's why the client was not seeing the root or intermediate certs. 




    ------------------------------
    Inzamam Shahid
    ------------------------------