Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

CP Guest Redirection not happening automatically

This thread has been viewed 5 times
  • 1.  CP Guest Redirection not happening automatically

    Posted Feb 06, 2018 12:56 PM

    Dears,

    1)I have created weblogin page in CP Guest. (Registerpage: https://192.168.1.3/guest/arubalogin.php)

    Conf below11

     

    22

     

    33

     

    44

     

    55

     

    66

     

     

     

     

     

    2)then I created a service in CP with simple allow access policy. with authentication set to guest user repositary.

    1122

     

     

     

    Then Created an SSID with following config in wizard.

    SSID Name: guestP-T

     

    Forwarding Mode: tunnel

     

    Radio Type:All

    Broadcast SSID: Yes

    Vlan: 10 (192.168.1.0/24)

     

    Internal/Guest: Guest

     

    Auth... and Encr...:  Captive Portal with Auth. via credentials (Username& Password) provided by user

     

    Captive portal: Enabled

     

    Authentication server: (External)192.168.1.3

     

    Role Assi...: Pre-auth Role: guestP-T-guest-logon

                         Authenticated Role: Guest

     

    Finish.

     

    4)Under Configuration- Authentication- L3 Authentication-Captive Portal Authentication-guestP-T-cp_prof

     

    edited login page to: https://192.168.1.3/guest/arubalogin.php

     

    apply and save conf.

     

    Now when i connect to this SSID and try to browse to 1.1.2.3 (Any IP)

    I am not getting redirected to login page.

     

    But when i enter "https://192.168.1.3/guest/arubalogin.php" Manually, things run fine.

     

    Please help to figureout the issue.

     

     



  • 2.  RE: CP Guest Redirection not happening automatically

    EMPLOYEE
    Posted Feb 06, 2018 01:06 PM

    1) Why are you using an IP address instead of an FQDN? ClearPass should only be accessed via FQDN

     

    2) Does your controller have an IP address in the client subnet?