cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
940
Views
0
Helpful
2
Replies

ISE Aruba integration issues

cnogueral
Level 1
Level 1
The integration of ISE with Aruba is being carried out.
ISE is in version 2.2 and is being integrated with an IAP that is in 8.5
The configuration was done by guiding us with the following document, where each step is explained well.

https://www.cisco.com/c/en/us/support/docs/security/identity-services-engine-20/211406-Configure-Guest-Flow-with-ISE-2-0-and-Ar.pdf

At the moment of doing the test it is evidenced in the ISE logs of events of the Aruba device but the traffic sends it to the default policy. How can we validate what happens or what could be modified in the configuration?
1 Accepted Solution

Accepted Solutions

Timothy Abbott
Cisco Employee
Cisco Employee
There could be a couple things going on but most of the time it is the result of the RADIUS AV pairs not matching the correct authorization rule in your policy. You will have to modify your authorization rule so that it matches the RADIUS AV information coming from Aruba. Otherwise, you will continue to match the default authorization rule.

Regards,
-Tim

View solution in original post

2 Replies 2

Timothy Abbott
Cisco Employee
Cisco Employee
There could be a couple things going on but most of the time it is the result of the RADIUS AV pairs not matching the correct authorization rule in your policy. You will have to modify your authorization rule so that it matches the RADIUS AV information coming from Aruba. Otherwise, you will continue to match the default authorization rule.

Regards,
-Tim

Hello,

According to the configuration recommended in the guide, this should work. Some changes have been made but it's still the same error
May it have to see with the model and the firmware version of the Aruba IAP?
For this type of integration, i could open a case with the Cisco TAC, or because it is with another manufacturer Cisco does not support?

Thank you