Security

last person joined: 12 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Aruba ClearPass guest portal with IAP - problem with login

This thread has been viewed 0 times
  • 1.  Aruba ClearPass guest portal with IAP - problem with login

    Posted Jun 25, 2018 06:26 PM

    Hi

     

    We have a cluster of IAP-305 and ClearPass 6.7

     

    We have a strange issue with configuring CPPM Guest as external portal for IAP and MAC-caching.

    We have configured a new guest page with sponsorship and point this page as external captive portal in IAP configuration in Guest WLAN. 

    The guest portal appears correctly but when we try to login nothing happens (login page appears again) and there is no entries in Access Tracker or Event Viewer. 

    Public wiledcard certificates are correctly imported to CPPM. 

    There is no firewall between IAP clutser and CPPM.

    When I test: aaa test-server, the result is successful 

     

    What can be other reason why the process of logging doesn't end with success ?

     

    Any help will be much appreciated.

     

    best regards

    Karol

     



  • 2.  RE: Aruba ClearPass guest portal with IAP - problem with login

    Posted Jun 25, 2018 06:58 PM

    Have you imported the same wildcard cert to IAPs? If so, have you changed your registration page Login-> * IP Address from securelogin.arubanetworks.com to captiveportal-login.WILDCARDDOMAIN?



  • 3.  RE: Aruba ClearPass guest portal with IAP - problem with login

    Posted Jun 27, 2018 02:43 PM

    Hi 

     

    Sorry for late delay and thank you for suggestion.

     

    In meantime it has started to work. I don't know exactly what has helped.

    We have had imported cert to IAP VC and set link in CPPM to 

    captiveportal-login.WILDCARDDOMAIN, so it wasn't a problem.

    We have made some misc config like (set NAS IP, set NTP and enforce https request in CPPM) and it helped.

    Anyhow thank You for your help

     

    Karol