<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: LDAP issue with ISE/Aruba wireless and Eduroam in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ldap-issue-with-ise-aruba-wireless-and-eduroam/m-p/3676839#M543106</link>
    <description>&lt;P&gt;I do not think it matters what&amp;nbsp;EAP options in the controllers have, because the controllers are&amp;nbsp;proxying the EAP requests to the RADIUS server(s) (ISE in this case) but not terminating EAP itself.&lt;/P&gt;</description>
    <pubDate>Sat, 28 Jul 2018 20:58:31 GMT</pubDate>
    <dc:creator>hslai</dc:creator>
    <dc:date>2018-07-28T20:58:31Z</dc:date>
    <item>
      <title>LDAP issue with ISE/Aruba wireless and Eduroam</title>
      <link>https://community.cisco.com/t5/network-access-control/ldap-issue-with-ise-aruba-wireless-and-eduroam/m-p/3675441#M543104</link>
      <description>&lt;P&gt;One of my customers is using ISE and Aruba wireless.&amp;nbsp; The Aruba wireless is broadcasting a Eduroam SSID.&amp;nbsp; They are having issues with students authenticating to the Eduroam SSID.&amp;nbsp; Below is the description of the issue:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;"The problem is in the user authentication from ISE to LDAP.&amp;nbsp; According to Eduroam enigneers, the password needs to be unhashed from ISE to LDAP in order for it to work.&amp;nbsp; What was recommended was TTLS PAP.&amp;nbsp; On the Aruba controllers, that is not an option that we can see.&amp;nbsp; Options are TLS/GTC or PEAP/MSCHAPV2.&amp;nbsp;&amp;nbsp; So the question is, are there any other clients with an Aruba install broadcasting an Eduroam SSID, utilizing ISE with LDAP as their external identity server?&amp;nbsp; I know another customer is currently running an Aruba install with ISE but are running it against AD.&amp;nbsp; Which works well in our environment as well.&amp;nbsp; But all of the student records are within LDAP."&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The customer was provided with this following guide:&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://communities.cisco.com/docs/DOC-75525" target="_blank"&gt;https://communities.cisco.com/docs/DOC-75525&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;They also have a TAC case open as well.&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any help is appreciated.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Dan&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 08:47:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ldap-issue-with-ise-aruba-wireless-and-eduroam/m-p/3675441#M543104</guid>
      <dc:creator>Dan Eyster</dc:creator>
      <dc:date>2019-03-11T08:47:01Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP issue with ISE/Aruba wireless and Eduroam</title>
      <link>https://community.cisco.com/t5/network-access-control/ldap-issue-with-ise-aruba-wireless-and-eduroam/m-p/3676839#M543106</link>
      <description>&lt;P&gt;I do not think it matters what&amp;nbsp;EAP options in the controllers have, because the controllers are&amp;nbsp;proxying the EAP requests to the RADIUS server(s) (ISE in this case) but not terminating EAP itself.&lt;/P&gt;</description>
      <pubDate>Sat, 28 Jul 2018 20:58:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ldap-issue-with-ise-aruba-wireless-and-eduroam/m-p/3676839#M543106</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2018-07-28T20:58:31Z</dc:date>
    </item>
  </channel>
</rss>

