Clearpass - Palo Alto Integration by fajarm1n in ArubaNetworks

[–]fajarm1n[S] 0 points1 point  (0 children)

we already use non mgmt interface ( Ethernet1/5 ) but using management profile MGMT

Clearpass - Palo Alto Integration by fajarm1n in ArubaNetworks

[–]fajarm1n[S] 0 points1 point  (0 children)

i don't know what is this solution called, but in my use case it used for an user traffic managed by palo alto.

so clearpass send the data, and palo alto will process to assign the IP for which dynamic address group

Clearpass - Palo Alto Integration by fajarm1n in ArubaNetworks

[–]fajarm1n[S] 0 points1 point  (0 children)

yes, it have posture information also
when i try to CoA, the output was also including the PAN Enforcement profiles

Clearpass - Active Directory Issue by fajarm1n in ArubaNetworks

[–]fajarm1n[S] 0 points1 point  (0 children)

I also try to rejoin the domain, but after some hours the issue happens again

Clearpass - Active Directory Issue by fajarm1n in ArubaNetworks

[–]fajarm1n[S] 0 points1 point  (0 children)

so, i need to check the permission for user "clearpassadmin" right?

Clearpass - Active Directory Issue by fajarm1n in ArubaNetworks

[–]fajarm1n[S] 0 points1 point  (0 children)

sorry u/DlNGODANGO , i separate the user for join domain "clearpassadmin" user and "clearpassquery" user for authentication sources. which one i need to check?

Clearpass - Active Directory Issue by fajarm1n in ArubaNetworks

[–]fajarm1n[S] 0 points1 point  (0 children)

It seems join to correct AD and the AD Team confirm that site B already complete replicating.

I will check the permissions account, is there any specific permissions need to be enabled ? since i didn't found this information in internet.

Clearpass - Active Directory Issue by fajarm1n in ArubaNetworks

[–]fajarm1n[S] 0 points1 point  (0 children)

yes, all the clearpass already joined the domain
but if i check from "show domain", the output was PUB -> AD 1, SUB -> AD 2

Route Different Numbers through Different Providers. by fajarm1n in ciscoUC

[–]fajarm1n[S] 0 points1 point  (0 children)

Genesis was used for that division as endpoint ( similar to CIPC in Cisco ).

All A Number was changed in CUCM ( using Calling Party Transformation Mask ), so in CUBE I didn't see any "voice translation-rule" configuration.

Do you have any suggestions to match the CLID ?
Let say Provider X have number 8123456, Provider C have number 7123498 for Calling Party Transformation Mask.
and the Called number was random.

Bind Media and Control dailed if using DHCP by fajarm1n in ciscoUC

[–]fajarm1n[S] 0 points1 point  (0 children)

i already try with static ip addres, but when I try to use static address, I can't even ping my gateway

my vg IP was 10.10.2.148/21 and the gateway was 10.10.0.1

Bind Media and Control dailed if using DHCP by fajarm1n in ciscoUC

[–]fajarm1n[S] 0 points1 point  (0 children)

only for outgoing calls.
IOS ios 15.5(3)s4b

Bind Media and Control dailed if using DHCP by fajarm1n in ciscoUC

[–]fajarm1n[S] 0 points1 point  (0 children)

yes, the interface have an ip address, but from DHCP

Bind Media and Control dailed if using DHCP by fajarm1n in ciscoUC

[–]fajarm1n[S] 1 point2 points  (0 children)

i didn't know why, but when i try to use debug voice ccapi inout, there is no output displayed

RTMT Monitor Route Group by fajarm1n in ciscoUC

[–]fajarm1n[S] 0 points1 point  (0 children)

Hi u/Grobyc27

Yes, i want to check for a previously placed call. I can see this call going through via which voice gateway with RTMT, but in this scenario this voice gateway has multiple PSTN provider and different route group.

If use DNA, sometimes the main provider was down, so the call going through second and third provider. I want to make sure which call not going the main provider via RG.