Question

RFS6000 - External Guest Captive Portal (Aruba Clearpass)

  • 24 January 2019
  • 6 replies
  • 383 views

Hi Champs,

A quick question:
Could someone please share any config guide regarding RFS6000 Guest Captive Portal on External Radius Server (Aruba Clearpass)?
Thanks.

6 replies

Userlevel 6
Helo,

you can find our KB article under this link:
< https://gtacknowledge.extremenetworks.com/articles/How_To/How-to-implement-WiNG-into-Aruba-ClearPass-for-Secure-Network-Access-Control >

Regards,
Ondrej
Hi Ondrej,

Thanks for the doc.
A quick question regarding Captive Portal Policy:

We are using Captive Portal Server Mode: Internal
What do we need to enter in Captive Portal Server Host since we don't have any FQDN?

Could you please advise?
Thanks.
Userlevel 2
Hi,

use any non-resolvable FQDN. For example, guest.samplecompany.com. AP intercepts this FQDN and resolves to IP of 1.1.1.1

Regards,
Slava
Hi Slava,

Thanks for your comment. This makes sense now.
Also, on Page 10 - Clearpass side config; it says: IP Address field should be equal to the virtual FQDN configured under WiNG Captive Portal Policy:



Does it mean that this field should match the non-resolvable FQDN been configured in Captive Portal Policy?
Userlevel 2
Hi, yes Captive Portal FQDN this must match the Clearpass "IP Address" field config
Hi All,

We have implemented the change.
The issue we having now is that the guest users see the SSL Cert warning message.
There is SSL Cert already present on Aruba Clearpass.
Do we need to have the same cert on RFS6000 as well?

Reply