Security

last person joined: 17 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

1.1.1.1. refuse to connect when guest tries to connect with public WiFi

This thread has been viewed 7 times
  • 1.  1.1.1.1. refuse to connect when guest tries to connect with public WiFi

    Posted Dec 15, 2017 02:40 PM

    Hello,

     

    I'm trying to setup wireless network for guests on Cisco 2504 WLC and I want to use captive portal on ClearPass with External web-authentication. Right now user is able to connect to guest network; request is redirected to captive portal where user can put login details. After registration, user sign in successfully but then it redirected to 1.1.1.1/login.html?redirect (WLC Virtual IP) and it gives refuse to connect error message.

     

    Can someone help me with this why it is giving this error?

    Thank you so much,

    Raj



  • 2.  RE: 1.1.1.1. refuse to connect when guest tries to connect with public WiFi

    Posted Dec 18, 2017 11:42 AM

    That IP is a virtual interface and used to be default for the Cisco WLC webauthentication, but not necessarily so.. Is it a brand new Cisco WLC then it might be 192.0.2.1. Try changing to that IP in your weblogin page on Clearpass.

     

    If thats not it, then - do you have any more information to us?

     

    Anothing thing to consider is to go the route of doing MAB webauth. That way the Clearpass server will use Radius CoA to change the acl of the client to authenticated instead of the client accessing the WLC directly.