Wireless Access

 View Only
  • 1.  wpa2 enterprise certificate

    Posted Jan 30, 2020 01:47 PM
      |   view attached

    Hello,

     

    Recently purchased a certificate for our new wireless deployment.  We are using Aruba Instant since we're a smaller company, no need for clearpass or controller.
    I have the certificate installed on the IAP for the guest captive portal, which works great.  The only other thing that is keeping me from deploying the new APs is on my wpa2 Enterprise SSID, IOS devices get the securelogin.arubanetworks.com certificate not trusted.

    What is actually calling that out for me to install my new certificate?

     

    On the IAP there are several options for certificate type, which one am I looking for?

     

    Thanks,

     

     

     



  • 2.  RE: wpa2 enterprise certificate

    Posted Feb 14, 2020 11:07 AM

    WPA2-Enterprise leverages 802.1X auth, so the device has to validate the "server" certificate and for Apple products they ask to accept/install any certs issued by an untrusted source. Even a valid certification issues from internal CA (if not public) will be prompt to accept the first time a device connects. Once you accept the certificate the first time, it does not ask again unless you remove the trusted certs from the device.

     

    I haven't used IAPs in a while, but if there is a location to define a RADIUS certificate, I believe that would be where the reference is coming from.



  • 3.  RE: wpa2 enterprise certificate

    Posted Feb 17, 2020 06:34 PM

    Have you tried uploading your certificate here and choosing auth server? See picture...

    Auth Server.JPG