cancel
Showing results for 
Search instead for 
Did you mean: 

RADIUS not working with new vSZ 5.2???

john_krussaniot
New Contributor III
I currently have a ZoneDirector 3050 which is setup to use RADIUS and it works perfectly. I am trying to configure a new Virtual SmartZone 5.2 that I setup using Hyper-V connect using RADIUS as well, but RADIUS keeps failing. I have tried to replicate the similar settings I have on the ZD3050 but it constantly fails. Has anyone ran into this issue and resolved it successfully?  I'm thinking there are some settings i'm missing somewhere, but I feel like I have tried everything. 
33 REPLIES 33

Vineet_nejwala
Moderator
Moderator
Hi John,

Yes, so the radius request is not matching any connection request policy and hence the auth is failing. Kindly follow the below and create a new connection request policy, if it still fails kindly open a ticket with Ruckus support to assist over remote session.

https://www.youtube.com/watch?v=QlL777qF95s

Best Regards
Vineet 

john_krussaniot
New Contributor III

That video doesn't help my issue. I've watched it 20 times. The only Connection Request Policy which communicates with my Virtual SmartZone is when I create a Condition for "Client IPv4 Address". Which is great to see the green "Success" display during testing in vSZ, but it returns with "None group is associated with this user.". Even though there is a Network Policy with a User Group its using to authenticate with. When I set it up this way and create an SSID using RADIUS, no wireless device can authenticate. The wireless SSID prompts for credentials, but it looks like it dies at the controller because nothing shows up in the Event Logs in the Server. I currently have a ticket open with Ruckus. The technician looked at it for 5 minutes and couldn't resolve the problem. Below are some more pictures. 

Image_ images_messages_5f91c448135b77e247a014a0_54444dafd142e68ad704c95dfbc7a673_RackMultipart202004211161591pk-d3e1988d-3f57-48e0-b5ba-66a4d2bdcf61-479994766.png1587476097




Image_ images_messages_5f91c448135b77e247a014a0_a49861036f7181ea36bd7109d9c64d75_RackMultipart202004217601bp6f1-4dd4a3bd-c3b8-436b-9188-5e00d916ef0a-1592626590.png1587476114

Image_ images_messages_5f91c448135b77e247a014a0_f75675bacddf1c58f4a74894708ca0e4_RackMultipart20200421275611y8x-b68139a5-209b-4d19-9bbb-1342a48a3dd6-1938956066.png1587476125

Image_ images_messages_5f91c448135b77e247a014a0_4fb54d7e65bbbe77835ed2c2911eccc1_RackMultipart20200421252501p1n-6c19752e-8d66-48f7-8bcb-09479b5c6264-1816722229.png1587476134



Vineet_nejwala
Moderator
Moderator
Hi John,

As a test can you configure below :

1)Connection request policy : under condition add only "Day and time restriction" and allow all time

2) Network policy : under condition add "Day and time restriction" allow all time and add the user group. 

Other all settings would remain same, we are just removing NAS port, Test the above settings and update, meanwhile let me check with the case owner. 



Best Regards
Vineet 

john_krussaniot
New Contributor III
Thank you for the suggestion. It comes back as Success and None group, but still cannot authenticate wireless devices with the SSID/RADIUS. 

Vineet_nejwala
Moderator
Moderator
John, is it still not hitting connection request policy or any other error on event viewer?

Best Regards
Vineet