Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

CoA Disconnect - ClearPass / Meraki

This thread has been viewed 15 times
  • 1.  CoA Disconnect - ClearPass / Meraki

    Posted Mar 12, 2020 10:15 AM

    Hello,

    Currently, we have some trouble trying to configure CoA disconnect message between our Radius Architecture (Aruba Clearpass) and Meraki.

    Aruba Clearpass send its CoA Disconnect message, but Meraki don't accept it. 
    It seems that the Meraki access point is unable to interpret and forward this CoA frame sent by Clearpass.

    Here are the attributes created in Clearpass.

    - Radius:IETF Calling-Station-Id = %{Radius:IETF:Calling-Station-Id}
    - Radius:IETF Acct-Session-Id = %{Radius:IETF:Acct-Session-Id}
    - Radius:IETF Event-Timestamp = %{Radius:IETF:Event-Timestamp

    - Radius:Cisco Cisco-AVPair = %{Radius:Cisco:audit-session-Id}




    The CoA and accounting are enabled on the both side.


    Do you have any ideas to solve this issue ? or workaround ?

     

    Thank you so much



  • 2.  RE: CoA Disconnect - ClearPass / Meraki

    Posted Mar 12, 2020 10:30 AM
    Is the clock correct on both ends?



    Thank you

    Victor Fabian

    Pardon typos sent from Mobile


  • 3.  RE: CoA Disconnect - ClearPass / Meraki



  • 4.  RE: CoA Disconnect - ClearPass / Meraki

    Posted May 27, 2020 04:22 AM

    Good day Tim,

    Do you maybe have a Template for Ruckus AP's as well?



  • 5.  RE: CoA Disconnect - ClearPass / Meraki

    Posted Mar 12, 2020 11:21 AM

    Hello Victor and Capalli,

     

    Thank you for your anwsers,

     

    @Victor → Yes I just checked, the clock is correct on the both side.

    @Capalli → I followed well your CoA Template and unfortunately still not working...

    Capture.PNG

     

    Capture2.PNG