01-28-2019 06:29 PM
I am trying to get authentication by MAC address working. I have an AP550 and I network-based NPS server running on MS Server 2012. Using Client Monitor, I can see the AP and the calling device start the MAC authentication process. If the device is not authenticated, it should get assigned to a Guest vlan, which is what it does. However, when I review the NPS logs, it does not appear that the AP is talking to the NPS at all. What am I missing?
?
01-28-2019 09:28 PM
Yes, this is a new config. I am trying to test out the config for deployment over the summer. I tried to use the docs from Aerohive and others to get it configured. I have verified the IP of the RADIUS server and the shared secret. The behavior seems to be the same regardless of calling station OS.
01-28-2019 08:12 PM
With RADIUS authentication, devices that cannot authenticate should not be able to connect to the SSID at all. If devices are connecting to that 802.1X SSID, they have to be challenging against a RADIUS server.
Is this a new configuration, or are you modifying a previously existing one?