03-04-2020 09:43 PM
Hi all,
Short background info :
On our network, users authenticate for wired and wireless network with 802.1X.
The users and computers are retrieved from our Domain controller.
The AD is the primary radius server linked to 2 NAC virtual appliances, which we use for policies/access control.
Some devices, like copiers, raspberry pies, ..authenticate locally with MAC
Furthermore
I have been asked to look into the following :
To reduce the number of devices users can concurrently use to connect to the network. Ideally, they should get disconnected on their own devices from Wi-Fi when they try to log in on a school owned device..
Is this something that can be done, some way or another..? 🙂
Thanks
Daniël
Solved! Go to Solution.
03-21-2020 06:38 AM
This is possible and I have POC’d it out at one point some years back, but I needed to use an additional authentication server (FreeRADIUS) and NAC was using proxy-RADIUS to Freeradius and Freeradius authenticated against AD. Freeradius needs some additional configuration to make this work.
03-21-2020 06:38 AM
This is possible and I have POC’d it out at one point some years back, but I needed to use an additional authentication server (FreeRADIUS) and NAC was using proxy-RADIUS to Freeradius and Freeradius authenticated against AD. Freeradius needs some additional configuration to make this work.