Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all
This thread has been viewed 2 times
  • 1.  Policies

    Posted Nov 02, 2015 12:44 AM

    Hi guys! I really need your help. I use 651 controller in corporation. Sofrware version is 6.3.1.8.

    My situations:

    1) I can not include LDAP server to the controller;

    2) How to deny access to everywhere for users from Guest SSID except HTTP/HTTPS?

     

    I would be glad for your answers.



  • 2.  RE: Policies

    EMPLOYEE
    Posted Nov 02, 2015 03:57 AM


  • 3.  RE: Policies

    Posted Nov 02, 2015 06:33 AM
      |   view attached

    Hi, Colin!

    For LDAP, yes I did the manual in the help, but may be I read it with somemistakes))

    This is my conf. screen. Is there everything right?


    after this configuration in AAA Test server i got next errors. When I check with MSCHAPv2: Internal Error: Invalid response (-1);

    when I click PAP: Authentication server out of service error accurs;

     

    I have tried to write with my domain name, the same errors.

     

    About policies - thank you! I did what I wanted.

     



  • 4.  RE: Policies

    EMPLOYEE
    Posted Nov 02, 2015 06:37 AM

    Are you trying to use encryption with your clients?

     

     

     



  • 5.  RE: Policies

    Posted Nov 02, 2015 06:53 AM

    Dear Colin,

     

    I really dont want but I have to choose between two enryption types)



  • 6.  RE: Policies

    EMPLOYEE
    Posted Nov 02, 2015 07:16 AM

    Don't bother with LDAP.  To use LDAP with encryption, you need to use a custom supplicant on all of your devices.  It is also not as flexibile as radius, harder to troubleshoot and is not the standard for wireless encrytion.  If you have a domain, I would use the instructions on how to configure Windows NPS here:  http://community.arubanetworks.com/t5/ArubaOS-and-Controllers/Step-by-Step-How-to-Configure-Microsoft-NPS-2008-Radius-Server/m-p/14392/highlight/true#M6113



  • 7.  RE: Policies
    Best Answer

    Posted Nov 12, 2015 06:18 AM

    Hi! Sorry for updating so late.

    Thanks a lot for your book, we created RADIUS server and everything is good!