ā11-28-2019 08:57 PM
We currently have 10 schools in our division that each have their own file/DHCP Server with miltiple AP's. We are using the same two SSID's (one for Staff with network resources available and one for Student with internet access only) across all locations so any staff member from any location will be able to connect to the wireless network anywhere within our organization. Currently, we are using WPA/WPA2 PSK (Personal) with a passphrase that has been shared with students or students have been able to get it from their teachers device. Regardless, we are now considering setting up a Radius Server, and I am looking for some basic info to justify selling this to my boss, but I am also in need of some guidance as to how this can be set up and deployed across multiple locations. Will I need to configure an AP to act as a Radius Server at each location (subnet)? or will I hav e to maybe configure multiple AP's to act as Radius Servers at each location if there is a chance of say 300 + connected devices at any time? Where is a good place to start with this project? We currently have just over 100 AeroHive AP's.
Solved! Go to Solution.
ā12-05-2019 07:51 PM
My apologies, you're using HiveManager Classic. This guide reviews how to set up Radius on an AP in Classic: https://thehivecommunity.aerohive.com/s/article/Radius-Server-hosted-on-an-AP
ā01-03-2020 09:39 PM
Thanks for letting me know. I'm not seeing any logs in the Status/Log Messages part of the client monitor, could you try to connect again and email me the results at communityhelp@aerohive.com? I may not have the right permission set to view the client monitor results remotely, sorry for the extra step.
ā01-03-2020 09:32 PM
I have started the monitor on the Radius Server/AP, attempted a few connection attempts, then I stopped the test. Please let me know if there is anything else I can do on my end.
ā01-03-2020 09:23 PM
Thank you for checking those logs for me and for keeping me updated on your other testing. I'd like to see if a client monitor gives us any clues, would you be able to run a client monitor and attempt to connect to the Radius SSID again? If you just let me know when that's finished, I can check the results in your VHM from my side. This guide reviews how to set up and run a client monitor in Classic- https://thehivecommunity.aerohive.com/s/article/Client-Monitor
ā01-03-2020 08:21 PM
Correction..... There are no indications of any errors regarding authentication in the logs of the AD Server that I used to bind the Radius Server to.
When I attempt to run the Radius Test, the results tell me that the server connection timed out. I then ran an AD Test to "Test Aerohive device credentials for Active Directory integration". This test also fails and tells me NT_STATUS_NO_SUCH_USER: No such user (0xc0000064). Then I ran the test to "Test joining the Aerohive device to an Active Directory domain" using my domain admin credentials, which are the same credentials I used to bind the Radius Server to the AD with. This test comes back and says (NT_STATUS_OK)HiveAP SFX-GYM successfully joined the Active Directory domain p****b.ca.
ā01-03-2020 07:04 PM
Thanks. I will check on this shortly and get back to you.