Get the strength and security of RADIUS without building, maintaining, or monitoring physical servers. It’s also quick to roll out managed RADIUS to your organization to authenticate users to Wi-Fi, VPNs, switches, and network devices securely. This is a full walkthrough of configuring ºÚÁϺ£½Ç91Èë¿Ú's RADIUS-as-a-Service (RaaS) and a Ruckus SmartZone (SZ).
Settings and Configuration Notes
- Encryption/Authentication Mode: WPA2 Enterprise.
- Server IP Addresses:ÌýFor current RADIUS server IPs, seeÌýºÚÁϺ£½Ç91Èë¿Ú RADIUS Server Details.
- RADIUS Port(s): 1812/UDP (accounting port 1813 is not supported).
- Shared Secret: The Shared Secret is created by performing the steps in RADIUS Configuration and Authentication.
To view the Shared Secret:
- Log in to theÌý.
- Select USER AUTHENTICATION > RADIUS from the left-hand navigation.
- Click to select a configured RADIUS server.
- The Shared Secret is below Server Name.ÌýClick the eye to make the characters visible,
Ruckus SmartZone Configuration
Ruckus SmartZone ConfigurationSteps to configure a Ruckus SmartZone is accurate as of 5/17/2018. If a discrepancy is found,Ìýcontact ºÚÁϺ£½Ç91Èë¿Ú Support.
Authentication Profile
- Navigate a web browser to your Ruckus SmartZone configuration management page.
- Login with your Ruckus administrator username and password.
- °ä±ô¾±³¦°ìÌýServices & Profiles to expand theÌýServices & ProfilesÌýoptions.
- In theÌýServices & ProfilesÌýexpanded options list,ÌýselectÌýAuthentication.
- On theÌý´¡³Ü³Ù³ó±ð²Ô³Ù¾±³¦²¹³Ù¾±´Ç²ÔÌýpage, select the tab forÌýProxy (SZ Authenticator).
- °ä±ô¾±³¦°ìÌý+ Create.
- Leave theÌýService ProtocolÌýset to RADIUS.
- Enter the RADIUS serverÌýIP. Refer toÌýConfigure a WAP, VPN, or Router for RADIUSÌýfor a list of ºÚÁϺ£½Ç91Èë¿Ú's current server IP addresses.
- Paste in your ºÚÁϺ£½Ç91Èë¿Ú Shared Secret for this RADIUS connection.
- (Optional, recommended)ÌýConfigure theÌýSecondary ServerÌýwith the second ºÚÁϺ£½Ç91Èë¿Ú Radius IP.
WLAN Configuration
- From the Ruckus SmartZone configuration management page, selectÌýWireless LANsÌýfrom the left side navigation.
- °ä±ô¾±³¦°ìÌý+ Create.
- Give the SSID aÌýName.
- ±«²Ô»å±ð°ùÌýAuthentication Options,Ìýleave theÌýAuthentication TypeÌýset to the default Standard Usage.
- ±«²Ô»å±ð°ùÌýAuthentication Options,Ìýchange theÌýMethodÌýto 802.1X.EAP.
- ±«²Ô»å±ð°ùÌýEncryption Options,Ìýleave theÌýMethodÌýset to the default WPA2.
- ±«²Ô»å±ð°ùÌýAuthentication & Accounting Server,Ìýcheck the box forÌýUseÌýthe Controller as Proxy.
- ±«²Ô»å±ð°ùÌýAuthentication & Accounting Server, select the ºÚÁϺ£½Ç91Èë¿Ú Radius server you created in the Authentication Profile steps from the Select an authentication service drop-down menu.
- Your configuration is complete.ÌýNext:ÌýConfigure your WiFi Clients to use RADIUS.
Back to Top