Jump to content

Recommended Posts

Posted

I'm trying to get NAP working (Radius) for our Ruckus network and struggling. I've installed and enabled the Role on a Server 2012 VM that's on a Hyper-V cluster, and set everything up on the Ruckus but the two won't talk.

 

After a lot of digging I came across a thread that suggests it can't be run on a cluster. Can anyone confirm or deny this?

Posted
I'm trying to get NAP working (Radius) for our Ruckus network and struggling. I've installed and enabled the Role on a Server 2012 VM that's on a Hyper-V cluster, and set everything up on the Ruckus but the two won't talk.

 

After a lot of digging I came across a thread that suggests it can't be run on a cluster. Can anyone confirm or deny this?

 

Cant explain what the issue might be.

 

But I can confirm in my last school we had two NAP servers running on a 4 node Cluster.

Posted
Cant explain what the issue might be.

 

But I can confirm in my last school we had two NAP servers running on a 4 node Cluster.

 

Thanks for the feedback. Was that on a Hyper-V system?

Posted
I have ruckus talking to nps on 2012 r2 dc vm on a 2 node hyperv cluster. Check your certs and what does the event log say.

 

Ahh, Certs! Can I use a self signed one for it? I can't even see if the ports are open though which is really odd

Posted

Yes a self singed one should work, your users will just get cert errors, unless they trust the cert, or are set to not check.

The cert will need to me installed in the personal section for the computer account. Also make sure you get the little key that says, you have a private key corresponding to this certificate. This will also cause the authentication to fail if you do not have it.

 

To select the cert you want to use for auth open the nps console.

policies >> connection request profiles

 

There should be a default one labeled use windows authenitcation for all users.

open this go to settings tab the authentication

I check override network policy authentication so I know the same cert settings apply to all policies when I make a change.

 

Microsoft peap should be listed as an eap time, click edit.

 

This is where you can select which cert to use for authentication.

 

Hope this helps.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...