Table of contents
Appendix A: How to Find ClearPass Details for the Visitor WLAN
This section outlines the procedure to collect captive portal information and VRRP VIP information from ClearPass Policy Manager that is needed to configure Visitor WLAN.
Find the Captive Portal Information
Step 1Open a new browser tab, connect to one of the ClearPass servers, and login to ClearPass Guest with administrator credentials.

Step 2From the left navigation menu, selectConfiguration, use the+sign to expandPages, and then selectWeb Logins.
Step 3Select the name of the already configuredWeb Loginand then clickEdit.

Step 4Copy and store for later use the values found inPage NameandAddress.
Step 5Using the Menu at the up right, selectLogout.

Caution:Some legacy versions of AOS8 use a certificate with the name of securelogin.arubanetworks.com. All versions of AOS released since 2020 now use a certificate with the name securelogin.hpe.com. If this is a mixed environment where the legacy certificate is still in use, you may need to clone/duplicate the page to use another certificate. It is best practice to replace the certificate with a publicly signed one. If the certificate is replaced, this issue is avoided, but theAddressin the web login will need to reflect the Common Name (CN) assigned to the certificate when it was issued.
Note:此过程使用默认证书。最好的做法是用公开签名的证书代替证书。请参阅上面的警告部分。
Find the ClearPass VRRP VIP
When following best practices and using more than one ClearPass Server is used for network authentication, the captive portal address or hostname in the WLANAccess Policymust be the VRRP address of the ClearPass servers. The following procedure shows how to find the VRRP address in ClearPass Policy Manager.
Step 1Open a new browser tab, connect to one of the ClearPass servers, and login to ClearPass Policy Manager with administrator credentials.

Step 2From the left navigation menu, selectAdministration, use the+sign to expandServer Manager, and then selectServer Configuration.
Step 3On the Server Configuration page in the top right, selectVirtual IP Settings.

Step 4From the Virtual IP Settings page, observe and record theVirtual IPconfigured for the CPPM cluster.

Step 5Usenslookupor other operating system specific mechanism to confirm that the above Virtual IP address has a resolvable host name and use the host name in theCaptive Portal Profile:IP or Hostname:field when configuring a WLAN for captive portal authentication.