<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: vsz with google cloud identity: ldap or radius in SmartZone and Virtual SmartZone</title>
    <link>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/vsz-with-google-cloud-identity-ldap-or-radius/m-p/31666#M2363</link>
    <description>Thanks for the link the the radius-with-google container though.. I guess it can be quite useful in plenty of other situations!</description>
    <pubDate>Thu, 09 Apr 2020 22:49:52 GMT</pubDate>
    <dc:creator>diego_garcia_de</dc:creator>
    <dc:date>2020-04-09T22:49:52Z</dc:date>
    <item>
      <title>vsz with google cloud identity: ldap or radius</title>
      <link>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/vsz-with-google-cloud-identity-ldap-or-radius/m-p/31664#M2361</link>
      <description>We are using vSZ with WPA2 authentication, but we are also are implementing google cloud identy services. According to this post&amp;nbsp;&lt;A alt="" href="https://forums.ruckuswireless.com/ruckuswireless/topics/vsz-client-authentication-using-google-ldaps" name="" rel="nofollow" target="" title="" type="" value=""&gt;https://forums.ruckuswireless.com/ruckuswireless/topics/vsz-client-authentication-using-google-ldaps&lt;/A&gt;&amp;nbsp;we cannot connect directly to vSZ&lt;BR alt="" name="" rel="" target="" title="" type="" value="" /&gt;&lt;BR alt="" name="" rel="" target="" title="" type="" value="" /&gt;So now I'm wondering: should I spinup a freeradius server on an ip address which authenticates via the google LDAP (I've got the radius part working via this container&amp;nbsp;&lt;A alt="" href="https://github.com/hacor/unifi-freeradius-ldap" name="" rel="nofollow" target="" title="" type="" value=""&gt;https://github.com/hacor/unifi-freeradius-ldap&lt;/A&gt;)&amp;nbsp;&lt;BR /&gt;Or should I spinup something like an LDAP proxy to google on an ip address (never tried that)&amp;nbsp;?&lt;BR /&gt;&lt;BR /&gt;Is there a difference in performance?&lt;BR /&gt;&lt;BR /&gt;Our vSZ is running on gce. I'm also wondering if I should run this radius/ldap proxy on our local network or on gce for performance reasons...&lt;BR /&gt;&lt;BR /&gt;I hope somebody can help me with these decisions.&lt;BR /&gt;&lt;BR /&gt;Kind regards, Wessel&amp;nbsp;</description>
      <pubDate>Thu, 09 Apr 2020 22:14:57 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/vsz-with-google-cloud-identity-ldap-or-radius/m-p/31664#M2361</guid>
      <dc:creator>wessel_louwris</dc:creator>
      <dc:date>2020-04-09T22:14:57Z</dc:date>
    </item>
    <item>
      <title>Re: vsz with google cloud identity: ldap or radius</title>
      <link>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/vsz-with-google-cloud-identity-ldap-or-radius/m-p/31665#M2362</link>
      <description>I still need to test it myself.. but I think an ldap proxy (to just add the certificate authentication that google wants) is probably the easiest option. Google mentions the use of stunnel (&lt;A alt="" href="https://support.google.com/a/answer/9089736#stunnel" name="" rel="nofollow" target="" title="" type="" value=""&gt;https://support.google.com/a/answer/9089736#stunnel&lt;/A&gt;) as a proxy but Im not sure if vsz as an ldap client can be tweaked enough to make it work. I would run stunnel in GCE though especially if you have smartzone hosted in GCE as well. You can do the whole authentication over private google IPs even.</description>
      <pubDate>Thu, 09 Apr 2020 22:47:15 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/vsz-with-google-cloud-identity-ldap-or-radius/m-p/31665#M2362</guid>
      <dc:creator>diego_garcia_de</dc:creator>
      <dc:date>2020-04-09T22:47:15Z</dc:date>
    </item>
    <item>
      <title>Re: vsz with google cloud identity: ldap or radius</title>
      <link>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/vsz-with-google-cloud-identity-ldap-or-radius/m-p/31666#M2363</link>
      <description>Thanks for the link the the radius-with-google container though.. I guess it can be quite useful in plenty of other situations!</description>
      <pubDate>Thu, 09 Apr 2020 22:49:52 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/vsz-with-google-cloud-identity-ldap-or-radius/m-p/31666#M2363</guid>
      <dc:creator>diego_garcia_de</dc:creator>
      <dc:date>2020-04-09T22:49:52Z</dc:date>
    </item>
  </channel>
</rss>

