Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Locked Myself out of Guest Portal

This thread has been viewed 0 times
  • 1.  Locked Myself out of Guest Portal

    Posted May 12, 2014 03:39 PM

    Hi,

     

    I have locked myself out of the guest portal page of clearpass.  I changed the admin account to use the (null profile) which in turn booted me out and now im locked out.

     

    I don't have any other accounts to get in.

     

    Does anyonw know a way to reset those profiles from the CLI?



  • 2.  RE: Locked Myself out of Guest Portal

    Posted May 13, 2014 04:59 AM
    Not aware of a way to reset the profile other than a database reset.

    You could edit your guest login service to use the local user repository, create a user in their with a specific role and use an enforcement profile to set the admin_privileges, e.g. admin_privileges = Super Administrator.


  • 3.  RE: Locked Myself out of Guest Portal
    Best Answer

    EMPLOYEE
    Posted May 13, 2014 07:23 AM
    Contact Aruba TAC. They may be able to fix it from the shell.


  • 4.  RE: Locked Myself out of Guest Portal
    Best Answer

    Posted May 13, 2014 08:57 AM

    Hi All,

     

    Ended up just reverting from a backup from the previous day.  All good =D



  • 5.  RE: Locked Myself out of Guest Portal

    Posted Apr 11, 2018 04:37 PM

    I know this is old but I wanted to post in case anyone else had the same issue.  By default "MatchDomain" is #3 on the translation rules with the action "Super Administrator".  The only requirement is "memberof contains CN=Domain Admins".  I was able to resolve my issue of being locked out by creating a local user and using enforcement profile to return attribute "memberof equals CN=Domain Admins".