<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Replacing on-prem radius for Azure native joined devices in Wireless Questions and Best Practices</title>
    <link>https://community.ruckuswireless.com/t5/Wireless-Questions-and-Best/Replacing-on-prem-radius-for-Azure-native-joined-devices/m-p/69559#M2277</link>
    <description>&lt;P&gt;Hi &lt;a href="https://community.ruckuswireless.com/t5/user/viewprofilepage/user-id/18551"&gt;@CBDamiani&lt;/a&gt;,&lt;BR /&gt;&lt;BR /&gt;- For Smooth device on-boarding using machine authentication, a &lt;STRONG&gt;radius server&lt;/STRONG&gt; and &lt;STRONG&gt;CA&lt;/STRONG&gt; is must, capability is not currently available in Azure &lt;STRONG&gt;(&lt;/STRONG&gt; It supports &lt;STRONG&gt;SAML &lt;/STRONG&gt;based auth and &lt;STRONG&gt;LDAP)&lt;/STRONG&gt;.&lt;BR /&gt;&lt;BR /&gt;1:- &lt;STRONG&gt;Cloudapath&lt;/STRONG&gt; can act as &lt;STRONG&gt;radius server&lt;/STRONG&gt; and &lt;STRONG&gt;CA&lt;/STRONG&gt; both.&lt;BR /&gt;&lt;BR /&gt;The main part is how the certificates will be distributed to the client devices, depends on factors like.&lt;BR /&gt;&lt;BR /&gt;- If you want to push via AD policy.(&lt;STRONG&gt;supported with Cloudpath&lt;/STRONG&gt;)&lt;BR /&gt;- If you have any MDM, like &lt;STRONG&gt;Intune&lt;/STRONG&gt;, &lt;STRONG&gt;JAMF&lt;/STRONG&gt; for device management. (&lt;STRONG&gt;supported with Cloudpath&lt;/STRONG&gt;)&lt;BR /&gt;&lt;BR /&gt;2: If you have your own &lt;STRONG&gt;CA&lt;/STRONG&gt;, and want to use Cloudpath as a &lt;STRONG&gt;radius server &lt;/STRONG&gt;only, then certificate distribution will be totally based on your &lt;STRONG&gt;AD policy&lt;/STRONG&gt; and &lt;STRONG&gt;MDM&lt;/STRONG&gt;.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 10 Oct 2023 19:18:19 GMT</pubDate>
    <dc:creator>vijaykuniyal</dc:creator>
    <dc:date>2023-10-10T19:18:19Z</dc:date>
    <item>
      <title>Replacing on-prem radius for Azure native joined devices</title>
      <link>https://community.ruckuswireless.com/t5/Wireless-Questions-and-Best/Replacing-on-prem-radius-for-Azure-native-joined-devices/m-p/62828#M2266</link>
      <description>&lt;P&gt;At the moment we run a Microsoft NPS server on prem and have our SmartZone using that for radius auth for users on our corporate laptops.&lt;/P&gt;&lt;P&gt;We're moving to Azure native joined devices (not hybrid) so the on-prem AD knows nothing about the machines. The users are syncronized though.&lt;/P&gt;&lt;P&gt;I know the current system won't work as in order to still use certificate based auth, the machine would need an object on prem.&lt;/P&gt;&lt;P&gt;So, suggestions on how we do this?&lt;/P&gt;&lt;P&gt;Ideally we want hands off where we give a device to a user and it's going to transparently connect to the corporate wifi. Can we achieve this with the SmartZone or is this where Cloudpath comes into play (keeping in mind we want this transparent to the user).&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Thu, 13 Jul 2023 08:57:32 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/Wireless-Questions-and-Best/Replacing-on-prem-radius-for-Azure-native-joined-devices/m-p/62828#M2266</guid>
      <dc:creator>damien_calvert_</dc:creator>
      <dc:date>2023-07-13T08:57:32Z</dc:date>
    </item>
    <item>
      <title>Re: Replacing on-prem radius for Azure native joined devices</title>
      <link>https://community.ruckuswireless.com/t5/Wireless-Questions-and-Best/Replacing-on-prem-radius-for-Azure-native-joined-devices/m-p/69559#M2277</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.ruckuswireless.com/t5/user/viewprofilepage/user-id/18551"&gt;@CBDamiani&lt;/a&gt;,&lt;BR /&gt;&lt;BR /&gt;- For Smooth device on-boarding using machine authentication, a &lt;STRONG&gt;radius server&lt;/STRONG&gt; and &lt;STRONG&gt;CA&lt;/STRONG&gt; is must, capability is not currently available in Azure &lt;STRONG&gt;(&lt;/STRONG&gt; It supports &lt;STRONG&gt;SAML &lt;/STRONG&gt;based auth and &lt;STRONG&gt;LDAP)&lt;/STRONG&gt;.&lt;BR /&gt;&lt;BR /&gt;1:- &lt;STRONG&gt;Cloudapath&lt;/STRONG&gt; can act as &lt;STRONG&gt;radius server&lt;/STRONG&gt; and &lt;STRONG&gt;CA&lt;/STRONG&gt; both.&lt;BR /&gt;&lt;BR /&gt;The main part is how the certificates will be distributed to the client devices, depends on factors like.&lt;BR /&gt;&lt;BR /&gt;- If you want to push via AD policy.(&lt;STRONG&gt;supported with Cloudpath&lt;/STRONG&gt;)&lt;BR /&gt;- If you have any MDM, like &lt;STRONG&gt;Intune&lt;/STRONG&gt;, &lt;STRONG&gt;JAMF&lt;/STRONG&gt; for device management. (&lt;STRONG&gt;supported with Cloudpath&lt;/STRONG&gt;)&lt;BR /&gt;&lt;BR /&gt;2: If you have your own &lt;STRONG&gt;CA&lt;/STRONG&gt;, and want to use Cloudpath as a &lt;STRONG&gt;radius server &lt;/STRONG&gt;only, then certificate distribution will be totally based on your &lt;STRONG&gt;AD policy&lt;/STRONG&gt; and &lt;STRONG&gt;MDM&lt;/STRONG&gt;.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 10 Oct 2023 19:18:19 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/Wireless-Questions-and-Best/Replacing-on-prem-radius-for-Azure-native-joined-devices/m-p/69559#M2277</guid>
      <dc:creator>vijaykuniyal</dc:creator>
      <dc:date>2023-10-10T19:18:19Z</dc:date>
    </item>
  </channel>
</rss>

