ExtremeWireless (WiNG)

Expand all | Collapse all

RFS6000 - External Guest Captive Portal (Aruba Clearpass)

  • 1.  RFS6000 - External Guest Captive Portal (Aruba Clearpass)

    Posted 01-24-2019 04:17
    Hi Champs,

    A quick question:
    Could someone please share any config guide regarding RFS6000 Guest Captive Portal on External Radius Server (Aruba Clearpass)?
    Thanks.


  • 2.  RE: RFS6000 - External Guest Captive Portal (Aruba Clearpass)

    Posted 01-24-2019 09:56


  • 3.  RE: RFS6000 - External Guest Captive Portal (Aruba Clearpass)

    Posted 01-29-2019 00:43
    Hi Ondrej,

    Thanks for the doc.
    A quick question regarding Captive Portal Policy:

    We are using Captive Portal Server Mode: Internal
    What do we need to enter in Captive Portal Server Host since we don't have any FQDN?

    Could you please advise?
    Thanks.


  • 4.  RE: RFS6000 - External Guest Captive Portal (Aruba Clearpass)

    Posted 01-29-2019 10:36
    Hi,

    use any non-resolvable FQDN. For example, guest.samplecompany.com. AP intercepts this FQDN and resolves to IP of 1.1.1.1

    Regards,
    Slava


  • 5.  RE: RFS6000 - External Guest Captive Portal (Aruba Clearpass)

    Posted 01-29-2019 22:12
    Hi Slava,

    Thanks for your comment. This makes sense now.
    Also, on Page 10 - Clearpass side config; it says: IP Address field should be equal to the virtual FQDN configured under WiNG Captive Portal Policy:



    Does it mean that this field should match the non-resolvable FQDN been configured in Captive Portal Policy?


  • 6.  RE: RFS6000 - External Guest Captive Portal (Aruba Clearpass)

    Posted 02-01-2019 11:36
    Hi, yes Captive Portal FQDN this must match the Clearpass "IP Address" field config


  • 7.  RE: RFS6000 - External Guest Captive Portal (Aruba Clearpass)

    Posted 02-12-2019 22:05
    Hi All,

    We have implemented the change.
    The issue we having now is that the guest users see the SSL Cert warning message.
    There is SSL Cert already present on Aruba Clearpass.
    Do we need to have the same cert on RFS6000 as well?