Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).

ClearPass FIPS enabled with Juniper switches

This thread has been viewed 2 times
  • 1.  ClearPass FIPS enabled with Juniper switches

    Posted Oct 16, 2019 02:38 PM

    I have set up previously a wired authentication deployment between ClearPass and Juniper switches.  Typically we use EAP-MD5 for the authentication method for the Juniper MAC-Radius requests.  

     

    I currently am setting up a deployment where the ClearPass server is FIPS enabled and EAP-MD5 is not compliant with FIPS and therefore not an option to allow for the MAC-Radius method.  

     

    We were able to upgrade the Juniper test switch and now we are able to configure the Juniper switch to use EAP-PEAP for the MAC-Radius.  However the access tracker is still showing that the password does not match the username, I believe its due to the fact that the password with PEAP is encrypted.  

     

    Is there a way to set this up so that we can use the EAP-PEAP from the switch for MAC-Radius?