Flexible SSID (Multiple Active Directory)
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎09-03-2014 01:29 PM
Hi all,
Is it possible to have a single SSID for two separated Active Directory domains?
Our customer have two different domains, with separated ADs and different vlans.
Can we configure the Enterasys controller to use only one SSID and authenticate user on both domains and leading them to the correct VLAN for their domain?
Thanks and regards,
TA
Is it possible to have a single SSID for two separated Active Directory domains?
Our customer have two different domains, with separated ADs and different vlans.
Can we configure the Enterasys controller to use only one SSID and authenticate user on both domains and leading them to the correct VLAN for their domain?
Thanks and regards,
TA
9 REPLIES 9
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎09-03-2014 02:39 PM
Hi Doug and Harmuth,
Thank you both for your replies.
I think I will check the option that Doug gave me, a unique RADIUS polling both ADs.
Thanks and regards,
TA
Thank you both for your replies.
I think I will check the option that Doug gave me, a unique RADIUS polling both ADs.
Thanks and regards,
TA
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎09-03-2014 02:16 PM
One other option is to use "Sites" mode for the network you inherited and keep everything local to just that site. The master AP at the site (no more than 32 access points per site) will send the RADIUS request to the RADIUS server that is local and accessible to that site.
Doug Hyde
Director, Technical Support / Extreme Networks
Director, Technical Support / Extreme Networks
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎09-03-2014 02:12 PM
Is there a trust relationship between the domains? In that case it also be possible, but never tried it. For completely independent domains/ad servers my first idea is a solution.
Here is an example for configure NPS for eduroam use:
http://www.kennisnet.nl/fileadmin/contentelementen/kennisnet/Eduroam/Eduroam_in_a_Microsoft_Windows_...
You can adopt the idea for your use case.
Here is an example for configure NPS for eduroam use:
http://www.kennisnet.nl/fileadmin/contentelementen/kennisnet/Eduroam/Eduroam_in_a_Microsoft_Windows_...
You can adopt the idea for your use case.
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎09-03-2014 02:12 PM
Hi Harmut,
The AD servers are independent from each other, they're not on the same forest.
We are talking about two different physical servers on different subnets.
I can't make the RADIUS server look for two independent AD servers?
The AD servers are independent from each other, they're not on the same forest.
We are talking about two different physical servers on different subnets.
I can't make the RADIUS server look for two independent AD servers?
