This article explains setting up a Ruckus Unleashed with Active Directory Group for limiting users to create GuestPass.
Table of Contents
- AD Configuration
- Unleashed Configuration
Note: We are assuming Customer have knowledge and understanding of Active Directory.
Verified Unleashed Version: 200.12, 200.14
AD Configuration
Create a User Group in Active Directory User and Computer (If desired group is already created, entire AD Configuration step can be skipped)
- Open Active Directory User and Computer from the Windows search.
![vijaykuniyal_1-1687990652903.png vijaykuniyal_1-1687990652903.png](/t5/image/serverpage/image-id/7210i9AD13A55BB74CFC8/image-size/large/is-moderation-mode/true?v=v2&px=999)
- once open Right Click on Users>>>New>>>Group
![vijaykuniyal_2-1687990902995.png vijaykuniyal_2-1687990902995.png](/t5/image/serverpage/image-id/7211i739CC7080440F8E7/image-size/large/is-moderation-mode/true?v=v2&px=999)
Unleashed Configuration
- Login to unleashed GUI from any browser and Select Admin and Services.
![vijaykuniyal_10-1687986927035.png vijaykuniyal_10-1687986927035.png](/t5/image/serverpage/image-id/7194i1139D0B27CCC8B61/image-size/large/is-moderation-mode/true?v=v2&px=999)
- Select System>>>Roles>>>Create
![vijaykuniyal_12-1687987225523.png vijaykuniyal_12-1687987225523.png](/t5/image/serverpage/image-id/7196i35FFD9BB3FC1A193/image-size/large/is-moderation-mode/true?v=v2&px=999)
- Update the details as mentioned below.
1: Name - As required.
2: Description - As required.
3: Group Attribute - Same as AD Group(GuestPass in our example)
4: Select Specify WLAN access
5: Select the GuestPass SSID. (assuming its already created under Wi-Fi Networks)
6: Tick the checkbox for Allow guest pass generation.
and Click OK
![vijaykuniyal_13-1687987426703.png vijaykuniyal_13-1687987426703.png](/t5/image/serverpage/image-id/7197i9EDF5D257959DD86/image-size/large/is-moderation-mode/true?v=v2&px=999)
- Select Default Role and Click Edit.
![vijaykuniyal_14-1687988164405.png vijaykuniyal_14-1687988164405.png](/t5/image/serverpage/image-id/7198iF6F491A817F86F0C/image-size/large/is-moderation-mode/true?v=v2&px=999)
- Uncheck Allow guest pass generation and Click OK.
![vijaykuniyal_15-1687988529834.png vijaykuniyal_15-1687988529834.png](/t5/image/serverpage/image-id/7199iB300656D14E749F8/image-size/large/is-moderation-mode/true?v=v2&px=999)
- Select Services >>> AAA servers.
![vijaykuniyal_17-1687988811354.png vijaykuniyal_17-1687988811354.png](/t5/image/serverpage/image-id/7204iA9C7F62F04D4DCEF/image-size/large/is-moderation-mode/true?v=v2&px=999)
- Update the details as mentioned below.
1: Name - As required.
2: Server Address - As required.
3: Port - 389
4: Windows Domain Name - Actual AD domain name.
![vijaykuniyal_19-1687989200668.png vijaykuniyal_19-1687989200668.png](/t5/image/serverpage/image-id/7207iF67611734057DB4E/image-size/large/is-moderation-mode/true?v=v2&px=999)
- Select Services >>> Guest Access Service>>>Guest Pass Generation>>>Authentication Server >>> Windows AD
and Click Apply.
![vijaykuniyal_20-1687989390606.png vijaykuniyal_20-1687989390606.png](/t5/image/serverpage/image-id/7208i213EBD1B02D7096F/image-size/large/is-moderation-mode/true?v=v2&px=999)
Once done only users from the defined AD group will be able to create Guestpass.
Vijay Kuniyal
Staff Technical Support Engineer
CCNA RnS | CCNA Wireless | CWNA | RASZA | Meraki CMNO | RACPA