<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic 802.1x authentication using NPS policies- vSZ/Smartzone in RUCKUS Self-Help</title>
    <link>https://community.ruckuswireless.com/t5/RUCKUS-Self-Help/802-1x-authentication-using-NPS-policies-vSZ-Smartzone/m-p/77753#M343</link>
    <description>&lt;P&gt;&lt;STRONG&gt;&lt;U&gt;Network Environment&lt;/U&gt;&lt;SPAN&gt;: &amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;vSZ-H version : 6.1.2.0.404&lt;/LI&gt;&lt;LI&gt;Windows Server 2016&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;&lt;U&gt;Setup Procedure:&lt;/U&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;This demo explains the configuration steps to authenticate wireless clients using 802.1x-&amp;nbsp;SZ/vSZ by configuring NPs policy on a Windows server.&lt;/P&gt;&lt;P&gt;1-Make sure if the below features are installed.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_0-1712332717379.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11223i6253F44C1592158C/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_0-1712332717379.png" alt="Ambikaleimapok_0-1712332717379.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_1-1712332717393.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11225i31DEA5F9C95AE8E2/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_1-1712332717393.png" alt="Ambikaleimapok_1-1712332717393.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2-Navigate to the Network Policy Server tab, access NPS (local), and choose the 'Radius server for 802.1x' option for both wireless and wired connections. Finally, select 'Configure 802.1x'&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_2-1712332717400.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11224i1BD1C847A7FDEB4B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_2-1712332717400.png" alt="Ambikaleimapok_2-1712332717400.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;3-In this step, select 'Secure wireless connections' and customize the policy name to your preference. In this case, append 'DEMO' at the end of the policy name.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_3-1712332717402.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11226i238818655E387163/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_3-1712332717402.png" alt="Ambikaleimapok_3-1712332717402.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_4-1712332717404.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11228i8B3FAEF3B6F5950B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_4-1712332717404.png" alt="Ambikaleimapok_4-1712332717404.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;4-In this step, you need to configure the Radius Client by providing a friendly name, entering the IP address of the vSZ IP address, and optionally setting a password or using a password generation tool. Remember to save this configuration as it will be used in&amp;nbsp;&lt;STRONG&gt;Step 9&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_5-1712332717405.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11227iE86B2FA5987F24B2/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_5-1712332717405.png" alt="Ambikaleimapok_5-1712332717405.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;5-In this step, choose 'Microsoft Protect EAP (PEAP)' as the network access method&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_6-1712332717406.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11229i44089E372EA064C5/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_6-1712332717406.png" alt="Ambikaleimapok_6-1712332717406.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;6- Next, leave the remaining options at their default settings, and conclude the configuration by clicking on the 'Finish' button.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_7-1712332717409.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11230i7CAA98E55D42938A/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_7-1712332717409.png" alt="Ambikaleimapok_7-1712332717409.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_8-1712332717413.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11231iB25CFC38C3026110/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_8-1712332717413.png" alt="Ambikaleimapok_8-1712332717413.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_9-1712332717416.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11232i0C3E9EEF57F4FC81/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_9-1712332717416.png" alt="Ambikaleimapok_9-1712332717416.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;7-&lt;STRONG&gt;Configure the “Connection Request Policies”&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;To configure the connection request policy, navigate to the 'Policies' section. Then, access the 'Connection Request Policy' folder and locate the policy is created with the same name. Double-click on it to access its properties. In the 'Properties' window, navigate to the 'Conditions' tab. Remove the 'Current' condition and any others if present. Add the 'Time' condition and select 'Permit all time'. Finally, click 'Apply' and then 'OK' to save the changes.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_10-1712332717422.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11233i72B6213AF33733BC/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_10-1712332717422.png" alt="Ambikaleimapok_10-1712332717422.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_11-1712332717424.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11234i3B4E0A3B2F04CD16/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_11-1712332717424.png" alt="Ambikaleimapok_11-1712332717424.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_12-1712332717426.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11235i258D5D27F20D9F0B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_12-1712332717426.png" alt="Ambikaleimapok_12-1712332717426.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_13-1712332717429.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11238i92D5A3C2BCD8D205/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_13-1712332717429.png" alt="Ambikaleimapok_13-1712332717429.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_14-1712332717430.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11237i9E4049C65BD834A8/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_14-1712332717430.png" alt="Ambikaleimapok_14-1712332717430.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_15-1712332717431.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11239i8DB6070F91524EED/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_15-1712332717431.png" alt="Ambikaleimapok_15-1712332717431.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_16-1712332717440.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11240i3867F816FB755E1A/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_16-1712332717440.png" alt="Ambikaleimapok_16-1712332717440.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;8-&lt;STRONG&gt;Configure Network policies&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;To configure the Network Policies access to “Network Policy” folder and locate the policy is created on the folder and locate the policy is created with the same name. Double-click on it to access its properties. In the 'Properties' window for this example, I choose to ignore the user properties dial and proceed to the 'Conditions' section. Here, I add the 'User Groups' option to use the Active Directory users.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_17-1712332717447.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11241iB3A6FF92FD76E7DE/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_17-1712332717447.png" alt="Ambikaleimapok_17-1712332717447.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_18-1712332717449.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11242iB6951407A521B2A7/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_18-1712332717449.png" alt="Ambikaleimapok_18-1712332717449.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_19-1712332717450.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11243i3AB48AAEEF77B5DB/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_19-1712332717450.png" alt="Ambikaleimapok_19-1712332717450.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_20-1712332717453.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11244iB975BE29BC47A913/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_20-1712332717453.png" alt="Ambikaleimapok_20-1712332717453.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_21-1712332717456.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11245i80B982BA53EC436C/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_21-1712332717456.png" alt="Ambikaleimapok_21-1712332717456.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In this part, you have the option to either use an existing group and its users or create a new group along with its users.&lt;/P&gt;&lt;P&gt;Optional step&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;How to create a group and users&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Navigate to the Active Directory of users and computers, then left-click on it. Next, select 'New,' followed by 'Group,' and proceed to fill in the required information.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_22-1712332717474.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11247i1414D1B789CB6826/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_22-1712332717474.png" alt="Ambikaleimapok_22-1712332717474.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_23-1712332717475.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11246i776C2AF867D9D440/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_23-1712332717475.png" alt="Ambikaleimapok_23-1712332717475.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;How to create an user&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Navigate to the Active Directory of users and computers, then left-click on it. Next, select 'New,' followed by 'user’, and proceed to fill in the required information (username and password ).&lt;/P&gt;&lt;P&gt;In this case, we need to edit the 'Member of' properties of this user. Since I want this user to belong to the earlier created 'DEMO' group, we navigate to the user's properties, specifically the 'Member of' section. Subsequently, we add the group and configure it as the primary group.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_24-1712332717489.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11250i07D9F0394DC96F9D/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_24-1712332717489.png" alt="Ambikaleimapok_24-1712332717489.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_25-1712332717491.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11249i876B0B88F1F76C2E/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_25-1712332717491.png" alt="Ambikaleimapok_25-1712332717491.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_26-1712332717492.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11248i8D9B774C9A1E51ED/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_26-1712332717492.png" alt="Ambikaleimapok_26-1712332717492.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_27-1712332717509.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11253i45596A2460331FC5/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_27-1712332717509.png" alt="Ambikaleimapok_27-1712332717509.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_28-1712332717513.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11252i23F091174977B802/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_28-1712332717513.png" alt="Ambikaleimapok_28-1712332717513.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Continue with the network policies configuration next, we will select the desired group and proceed to the 'Constraints' tab. Here, we will add CHAP as the authentication method.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_29-1712332717517.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11251i7007FED87826627C/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_29-1712332717517.png" alt="Ambikaleimapok_29-1712332717517.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_30-1712332717518.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11254i54755A84B52030D3/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_30-1712332717518.png" alt="Ambikaleimapok_30-1712332717518.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_31-1712332717520.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11255i69F38B1EF7DA841D/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_31-1712332717520.png" alt="Ambikaleimapok_31-1712332717520.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_32-1712332717529.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11256i8C21636A5AC3EA6C/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_32-1712332717529.png" alt="Ambikaleimapok_32-1712332717529.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;9-Smartzone/ Virtual Smartzone configuration&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;In the SZ/vSZ configuration, navigate to “Security” -&amp;gt;Authentication-&amp;gt;Proxy(SZ Authenticator)/ Non-Proxy(AP Authenticator)(I am using ' Proxy(SZ Authenticator) in my example&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;NOTE: Proxy(SZ Authenticator) &lt;/STRONG&gt;&amp;nbsp;is used when APs send authentication or accounting messages to the controller and the controller forwards these messages to an external AAA server. A non-proxy (AP Authenticator)AAA server is used when APs connect to the external AAA server directly.&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_33-1712332717545.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11258i41099CD45B77ACE1/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_33-1712332717545.png" alt="Ambikaleimapok_33-1712332717545.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Click on “+Create “ button&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_34-1712332717559.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11259iDCE8D67A66721DF6/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_34-1712332717559.png" alt="Ambikaleimapok_34-1712332717559.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Enter the NPS server details and make sure that you enter the same shared secret as you have entered in NPS server&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_35-1712332717563.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11257i81CC738336490FE8/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_35-1712332717563.png" alt="Ambikaleimapok_35-1712332717563.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;10- WLAN Creation&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Navigate to “Network-&amp;gt; &amp;nbsp;Wireless LANs”and select the desire zone and click on “Create” tab . Fill in the necessary information accordingly.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_36-1712332717568.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11260i3CA8D2FE1F0414AC/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_36-1712332717568.png" alt="Ambikaleimapok_36-1712332717568.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_37-1712332717574.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11262i3F321E757163659B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_37-1712332717574.png" alt="Ambikaleimapok_37-1712332717574.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_38-1712332717579.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11261i0EAD1F22B1BEFACE/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_38-1712332717579.png" alt="Ambikaleimapok_38-1712332717579.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_39-1712332717583.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11263i68B8A0939589A4B3/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_39-1712332717583.png" alt="Ambikaleimapok_39-1712332717583.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In my demo, I used High scale hence the Realm Proxy profile must be created so that the Realm Proxy profile would show in the drop down under the Authentication Service&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_40-1712332717586.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11264i26BAF29E487CCE9E/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_40-1712332717586.png" alt="Ambikaleimapok_40-1712332717586.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How the Realm Proxy profile can be created? please check the below details&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_41-1712332717592.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11265i4C8E46EF330EA314/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_41-1712332717592.png" alt="Ambikaleimapok_41-1712332717592.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Click on First Realm -&amp;gt;“Configure” -&amp;gt; Under “Service”, make sure, you select the right NPS server&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_42-1712332717597.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11267i4E49D8E520298957/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_42-1712332717597.png" alt="Ambikaleimapok_42-1712332717597.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_43-1712332717600.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11266i6B0BF55473FDAAB7/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_43-1712332717600.png" alt="Ambikaleimapok_43-1712332717600.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;11-Wireless Client&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;After creating the wireless network, it's important to check the connectivity. Connect to the network and when prompted, enter the credentials of the created DEMO-USER along with the corresponding password. If the credentials match, you should be able to connect to the network without any issues.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Leimapokpam Ambika&lt;/P&gt;</description>
    <pubDate>Fri, 05 Apr 2024 22:22:51 GMT</pubDate>
    <dc:creator>Ambika-leimapok</dc:creator>
    <dc:date>2024-04-05T22:22:51Z</dc:date>
    <item>
      <title>802.1x authentication using NPS policies- vSZ/Smartzone</title>
      <link>https://community.ruckuswireless.com/t5/RUCKUS-Self-Help/802-1x-authentication-using-NPS-policies-vSZ-Smartzone/m-p/77753#M343</link>
      <description>&lt;P&gt;&lt;STRONG&gt;&lt;U&gt;Network Environment&lt;/U&gt;&lt;SPAN&gt;: &amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;vSZ-H version : 6.1.2.0.404&lt;/LI&gt;&lt;LI&gt;Windows Server 2016&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;&lt;U&gt;Setup Procedure:&lt;/U&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;This demo explains the configuration steps to authenticate wireless clients using 802.1x-&amp;nbsp;SZ/vSZ by configuring NPs policy on a Windows server.&lt;/P&gt;&lt;P&gt;1-Make sure if the below features are installed.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_0-1712332717379.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11223i6253F44C1592158C/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_0-1712332717379.png" alt="Ambikaleimapok_0-1712332717379.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_1-1712332717393.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11225i31DEA5F9C95AE8E2/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_1-1712332717393.png" alt="Ambikaleimapok_1-1712332717393.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2-Navigate to the Network Policy Server tab, access NPS (local), and choose the 'Radius server for 802.1x' option for both wireless and wired connections. Finally, select 'Configure 802.1x'&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_2-1712332717400.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11224i1BD1C847A7FDEB4B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_2-1712332717400.png" alt="Ambikaleimapok_2-1712332717400.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;3-In this step, select 'Secure wireless connections' and customize the policy name to your preference. In this case, append 'DEMO' at the end of the policy name.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_3-1712332717402.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11226i238818655E387163/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_3-1712332717402.png" alt="Ambikaleimapok_3-1712332717402.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_4-1712332717404.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11228i8B3FAEF3B6F5950B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_4-1712332717404.png" alt="Ambikaleimapok_4-1712332717404.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;4-In this step, you need to configure the Radius Client by providing a friendly name, entering the IP address of the vSZ IP address, and optionally setting a password or using a password generation tool. Remember to save this configuration as it will be used in&amp;nbsp;&lt;STRONG&gt;Step 9&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_5-1712332717405.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11227iE86B2FA5987F24B2/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_5-1712332717405.png" alt="Ambikaleimapok_5-1712332717405.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;5-In this step, choose 'Microsoft Protect EAP (PEAP)' as the network access method&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_6-1712332717406.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11229i44089E372EA064C5/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_6-1712332717406.png" alt="Ambikaleimapok_6-1712332717406.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;6- Next, leave the remaining options at their default settings, and conclude the configuration by clicking on the 'Finish' button.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_7-1712332717409.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11230i7CAA98E55D42938A/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_7-1712332717409.png" alt="Ambikaleimapok_7-1712332717409.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_8-1712332717413.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11231iB25CFC38C3026110/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_8-1712332717413.png" alt="Ambikaleimapok_8-1712332717413.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_9-1712332717416.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11232i0C3E9EEF57F4FC81/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_9-1712332717416.png" alt="Ambikaleimapok_9-1712332717416.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;7-&lt;STRONG&gt;Configure the “Connection Request Policies”&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;To configure the connection request policy, navigate to the 'Policies' section. Then, access the 'Connection Request Policy' folder and locate the policy is created with the same name. Double-click on it to access its properties. In the 'Properties' window, navigate to the 'Conditions' tab. Remove the 'Current' condition and any others if present. Add the 'Time' condition and select 'Permit all time'. Finally, click 'Apply' and then 'OK' to save the changes.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_10-1712332717422.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11233i72B6213AF33733BC/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_10-1712332717422.png" alt="Ambikaleimapok_10-1712332717422.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_11-1712332717424.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11234i3B4E0A3B2F04CD16/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_11-1712332717424.png" alt="Ambikaleimapok_11-1712332717424.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_12-1712332717426.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11235i258D5D27F20D9F0B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_12-1712332717426.png" alt="Ambikaleimapok_12-1712332717426.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_13-1712332717429.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11238i92D5A3C2BCD8D205/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_13-1712332717429.png" alt="Ambikaleimapok_13-1712332717429.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_14-1712332717430.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11237i9E4049C65BD834A8/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_14-1712332717430.png" alt="Ambikaleimapok_14-1712332717430.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_15-1712332717431.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11239i8DB6070F91524EED/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_15-1712332717431.png" alt="Ambikaleimapok_15-1712332717431.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_16-1712332717440.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11240i3867F816FB755E1A/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_16-1712332717440.png" alt="Ambikaleimapok_16-1712332717440.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;8-&lt;STRONG&gt;Configure Network policies&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;To configure the Network Policies access to “Network Policy” folder and locate the policy is created on the folder and locate the policy is created with the same name. Double-click on it to access its properties. In the 'Properties' window for this example, I choose to ignore the user properties dial and proceed to the 'Conditions' section. Here, I add the 'User Groups' option to use the Active Directory users.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_17-1712332717447.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11241iB3A6FF92FD76E7DE/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_17-1712332717447.png" alt="Ambikaleimapok_17-1712332717447.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_18-1712332717449.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11242iB6951407A521B2A7/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_18-1712332717449.png" alt="Ambikaleimapok_18-1712332717449.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_19-1712332717450.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11243i3AB48AAEEF77B5DB/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_19-1712332717450.png" alt="Ambikaleimapok_19-1712332717450.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_20-1712332717453.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11244iB975BE29BC47A913/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_20-1712332717453.png" alt="Ambikaleimapok_20-1712332717453.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_21-1712332717456.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11245i80B982BA53EC436C/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_21-1712332717456.png" alt="Ambikaleimapok_21-1712332717456.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In this part, you have the option to either use an existing group and its users or create a new group along with its users.&lt;/P&gt;&lt;P&gt;Optional step&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;How to create a group and users&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Navigate to the Active Directory of users and computers, then left-click on it. Next, select 'New,' followed by 'Group,' and proceed to fill in the required information.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_22-1712332717474.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11247i1414D1B789CB6826/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_22-1712332717474.png" alt="Ambikaleimapok_22-1712332717474.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_23-1712332717475.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11246i776C2AF867D9D440/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_23-1712332717475.png" alt="Ambikaleimapok_23-1712332717475.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;How to create an user&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Navigate to the Active Directory of users and computers, then left-click on it. Next, select 'New,' followed by 'user’, and proceed to fill in the required information (username and password ).&lt;/P&gt;&lt;P&gt;In this case, we need to edit the 'Member of' properties of this user. Since I want this user to belong to the earlier created 'DEMO' group, we navigate to the user's properties, specifically the 'Member of' section. Subsequently, we add the group and configure it as the primary group.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_24-1712332717489.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11250i07D9F0394DC96F9D/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_24-1712332717489.png" alt="Ambikaleimapok_24-1712332717489.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_25-1712332717491.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11249i876B0B88F1F76C2E/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_25-1712332717491.png" alt="Ambikaleimapok_25-1712332717491.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_26-1712332717492.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11248i8D9B774C9A1E51ED/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_26-1712332717492.png" alt="Ambikaleimapok_26-1712332717492.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_27-1712332717509.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11253i45596A2460331FC5/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_27-1712332717509.png" alt="Ambikaleimapok_27-1712332717509.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_28-1712332717513.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11252i23F091174977B802/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_28-1712332717513.png" alt="Ambikaleimapok_28-1712332717513.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Continue with the network policies configuration next, we will select the desired group and proceed to the 'Constraints' tab. Here, we will add CHAP as the authentication method.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_29-1712332717517.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11251i7007FED87826627C/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_29-1712332717517.png" alt="Ambikaleimapok_29-1712332717517.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_30-1712332717518.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11254i54755A84B52030D3/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_30-1712332717518.png" alt="Ambikaleimapok_30-1712332717518.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_31-1712332717520.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11255i69F38B1EF7DA841D/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_31-1712332717520.png" alt="Ambikaleimapok_31-1712332717520.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_32-1712332717529.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11256i8C21636A5AC3EA6C/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_32-1712332717529.png" alt="Ambikaleimapok_32-1712332717529.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;9-Smartzone/ Virtual Smartzone configuration&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;In the SZ/vSZ configuration, navigate to “Security” -&amp;gt;Authentication-&amp;gt;Proxy(SZ Authenticator)/ Non-Proxy(AP Authenticator)(I am using ' Proxy(SZ Authenticator) in my example&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;NOTE: Proxy(SZ Authenticator) &lt;/STRONG&gt;&amp;nbsp;is used when APs send authentication or accounting messages to the controller and the controller forwards these messages to an external AAA server. A non-proxy (AP Authenticator)AAA server is used when APs connect to the external AAA server directly.&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_33-1712332717545.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11258i41099CD45B77ACE1/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_33-1712332717545.png" alt="Ambikaleimapok_33-1712332717545.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Click on “+Create “ button&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_34-1712332717559.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11259iDCE8D67A66721DF6/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_34-1712332717559.png" alt="Ambikaleimapok_34-1712332717559.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Enter the NPS server details and make sure that you enter the same shared secret as you have entered in NPS server&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_35-1712332717563.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11257i81CC738336490FE8/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_35-1712332717563.png" alt="Ambikaleimapok_35-1712332717563.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;10- WLAN Creation&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Navigate to “Network-&amp;gt; &amp;nbsp;Wireless LANs”and select the desire zone and click on “Create” tab . Fill in the necessary information accordingly.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_36-1712332717568.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11260i3CA8D2FE1F0414AC/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_36-1712332717568.png" alt="Ambikaleimapok_36-1712332717568.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_37-1712332717574.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11262i3F321E757163659B/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_37-1712332717574.png" alt="Ambikaleimapok_37-1712332717574.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_38-1712332717579.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11261i0EAD1F22B1BEFACE/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_38-1712332717579.png" alt="Ambikaleimapok_38-1712332717579.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_39-1712332717583.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11263i68B8A0939589A4B3/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_39-1712332717583.png" alt="Ambikaleimapok_39-1712332717583.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In my demo, I used High scale hence the Realm Proxy profile must be created so that the Realm Proxy profile would show in the drop down under the Authentication Service&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_40-1712332717586.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11264i26BAF29E487CCE9E/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_40-1712332717586.png" alt="Ambikaleimapok_40-1712332717586.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How the Realm Proxy profile can be created? please check the below details&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_41-1712332717592.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11265i4C8E46EF330EA314/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_41-1712332717592.png" alt="Ambikaleimapok_41-1712332717592.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Click on First Realm -&amp;gt;“Configure” -&amp;gt; Under “Service”, make sure, you select the right NPS server&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_42-1712332717597.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11267i4E49D8E520298957/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_42-1712332717597.png" alt="Ambikaleimapok_42-1712332717597.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ambikaleimapok_43-1712332717600.png" style="width: 400px;"&gt;&lt;img src="https://community.ruckuswireless.com/t5/image/serverpage/image-id/11266i6B0BF55473FDAAB7/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Ambikaleimapok_43-1712332717600.png" alt="Ambikaleimapok_43-1712332717600.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;11-Wireless Client&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;After creating the wireless network, it's important to check the connectivity. Connect to the network and when prompted, enter the credentials of the created DEMO-USER along with the corresponding password. If the credentials match, you should be able to connect to the network without any issues.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Leimapokpam Ambika&lt;/P&gt;</description>
      <pubDate>Fri, 05 Apr 2024 22:22:51 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/RUCKUS-Self-Help/802-1x-authentication-using-NPS-policies-vSZ-Smartzone/m-p/77753#M343</guid>
      <dc:creator>Ambika-leimapok</dc:creator>
      <dc:date>2024-04-05T22:22:51Z</dc:date>
    </item>
  </channel>
</rss>

