Wireless Access

 View Only
last person joined: 32 minutes ago 

Access network design for branch, remote, outdoor, and campus locations with HPE Aruba Networking access points and mobility controllers.
Expand all | Collapse all

Aruba-VMC Radius Authentication with Windows Server

This thread has been viewed 17 times
  • 1.  Aruba-VMC Radius Authentication with Windows Server

    Posted Jul 25, 2024 10:56 PM

    Hi Everyone, I'm doing my lab about Radius Authentication in Aruba Ap315 managed by Aruba Virtual Mobility Controller and authenticating with Windows Server domain user, I was following guides and documents on the internet but it doesn't work, I don't see any indication that NPS in Windows Server is enabled or configured or connected with Radius client of Aruba-VMC, I also use Event Viewer in Windows Server to view log but there is no log about NPS, I also use AAA server test in Aruba-VMC WebUI to test connect with Radius Server but it just timeout every time, below are all of my configurations about this, anyone can help me to solve this or some document about this. Thank you very much.



  • 2.  RE: Aruba-VMC Radius Authentication with Windows Server

    EMPLOYEE
    Posted Jul 30, 2024 04:59 AM

    One setting I would remove is the NAS-IP in the controller configuration for the RADIUS server. The NAS-IP normally has the IP of the controller/switch, not the RADIUS Server. If you leave it empty it will be automatically set.

    From this point, I would run a Wireshark on your RADIUS server to see if the RADIUS requests from your controller are reaching the NPS server. If not, you should focus on the controller (or client). If you see the requests, check if there are responses, if not there probably is a problem with the RADIUS Client definition (invalid/non-matching shared secret).

    I have very limited experience with NPS, but the experience I have is that if it works it works fine, if it doesn't it's quite hard to get the proper logging to determine where is the problem. Also the configuration is not too intuitive, but that's probably a lack of training in NPS in my side.



    ------------------------------
    Herman Robers
    ------------------------
    If you have urgent issues, always contact your Aruba partner, distributor, or Aruba TAC Support. Check https://www.arubanetworks.com/support-services/contact-support/ for how to contact Aruba TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.

    In case your problem is solved, please invest the time to post a follow-up with the information on how you solved it. Others can benefit from that.
    ------------------------------