Tricky_Dicky Posted March 24, 2015 Posted March 24, 2015 I'm trying to get NAP working (Radius) for our Ruckus network and struggling. I've installed and enabled the Role on a Server 2012 VM that's on a Hyper-V cluster, and set everything up on the Ruckus but the two won't talk. After a lot of digging I came across a thread that suggests it can't be run on a cluster. Can anyone confirm or deny this?
Wubbalubbadub Posted March 27, 2015 Posted March 27, 2015 I'm trying to get NAP working (Radius) for our Ruckus network and struggling. I've installed and enabled the Role on a Server 2012 VM that's on a Hyper-V cluster, and set everything up on the Ruckus but the two won't talk. After a lot of digging I came across a thread that suggests it can't be run on a cluster. Can anyone confirm or deny this? Cant explain what the issue might be. But I can confirm in my last school we had two NAP servers running on a 4 node Cluster.
Tricky_Dicky Posted March 27, 2015 Author Posted March 27, 2015 Cant explain what the issue might be. But I can confirm in my last school we had two NAP servers running on a 4 node Cluster. Thanks for the feedback. Was that on a Hyper-V system?
Wubbalubbadub Posted March 27, 2015 Posted March 27, 2015 (edited) Thanks for the feedback. Was that on a Hyper-V system? Yup Hyper-V Edited March 27, 2015 by Wubbalubbadub Typo
ADMaster Posted March 27, 2015 Posted March 27, 2015 I have ruckus talking to nps on 2012 r2 dc vm on a 2 node hyperv cluster. Check your certs and what does the event log say.
Tricky_Dicky Posted March 27, 2015 Author Posted March 27, 2015 I have ruckus talking to nps on 2012 r2 dc vm on a 2 node hyperv cluster. Check your certs and what does the event log say. Ahh, Certs! Can I use a self signed one for it? I can't even see if the ports are open though which is really odd
ADMaster Posted March 27, 2015 Posted March 27, 2015 Yes a self singed one should work, your users will just get cert errors, unless they trust the cert, or are set to not check. The cert will need to me installed in the personal section for the computer account. Also make sure you get the little key that says, you have a private key corresponding to this certificate. This will also cause the authentication to fail if you do not have it. To select the cert you want to use for auth open the nps console. policies >> connection request profiles There should be a default one labeled use windows authenitcation for all users. open this go to settings tab the authentication I check override network policy authentication so I know the same cert settings apply to all policies when I make a change. Microsoft peap should be listed as an eap time, click edit. This is where you can select which cert to use for authentication. Hope this helps.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now