Security

last person joined: 22 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).

VMWare and VMove

This thread has been viewed 4 times
  • 1.  VMWare and VMove

    Posted Feb 15, 2019 12:50 PM
      |   view attached

    Yesterday morning we had a VMWare host fail. VMove kicked in and moved all the affected VMs to other hosts to balance the load. When the ClearPass VM moved it corrupted the configuration of ClearPass. The only access to ClearPass was through the CLI. I spent 3 hours on the phone with a TAC agent to get it up and running again. We first reset the configuration. That got us back into CPPM via the web page. Next it was installing licenses, certificates, configuration from the previous night's backup, and activating all licenses.

    We are currently running 6.7.5.

    This attached documentation states that CPPM supports VMove but when I was talking to the TAC agent she said we had to first shut down CPPM prior to moving it to another host. That totally negates the reason to have the VM. If a host fails then CPPM is toast when it comes up on another host.

    Is there a solution to keep this corruption from happening again?

    Attachment(s)