04-24-2020 10:02 PM
Hi all,
I’m new here and I’m preparing to deploy my first network with Extreme Wing wireless.
In my enviroment I will have an SSID with 802.1x for corp users and other SSID for guest witch captive portal.
I managed to make it work one at a time. I was not able to do both work same time because use of “Radius Service Policy”.
I saw that need to configure the Radius Service Policy inside Device Controller or Profile, but only one Radius Service Policy is allowed per profile.
The doubt is;
Is it possible configure 802.1x and internal radius for guest user using the same “Radius Service Policy”?
What is the best way for this configuration?
Regards,
Claudio Rezende
04-24-2020 10:31 PM
Hi Christopher, thanks a lot for your help…
I believe that I’m almost there but still not working… look below, where I’m mistaking?
04-24-2020 10:18 PM
Hello Claudio,
Absolutely, but you will need to configure the Radius Server Policy/Authentication “Default Source” by adding both SSID’s and source (guest using local and corp using LDAP).
04-24-2020 10:14 PM
Hi Christopher,
Both SSID will use internal Radius, Guest with user pools, but Corp will authenticate against Active Directory using LDAP.
Is it sound ok for you?
Regards,
04-24-2020 10:09 PM
Hello Claudio,
You are correct, only one radius server policy can be mapped to Wing device via self and/or profile (depending on deployment and usage). That being said, if both Corp and Guest will be using internal radius on Wing for authentication, you can map different user pools, which are mapped to groups, to the one radius policy. The radius server policy “Authentication Type” should be ALL.