Error implementing NAC over our Meraki switches

Gabriel_Page
Comes here often

Error implementing NAC over our Meraki switches

Hi everyone!!! 

Im trying to implement a Network Access Control over our switch ports to allow just authenticated users to access our corporative network.

We implemented a few months ago RadSec in our Corporative SSID and it works perfectly.

When we try to implement it on our Wired connections, we found a lot of issues.

 

Our Radius server is in the cloud, so when the switches Meraki try to send the Radius packets to the cloud, they are fragmented and our server can't validate their credentials so our users can't be validated. 

 

don't have any easy way to configure the same RadSec service? 

2 Replies 2
GreenMan
Meraki Employee
Meraki Employee

RadSec isn't currently supported by Meraki switches.   Right now, while I know it's been logged and is under consideration, I'm not aware of any committed delivery around this feature.

RaphaelL
Kind of a big deal
Kind of a big deal

Hi ,


Can you take a packet capture on your cloud RADIUS server ?

Can you see those fragments ?

 

Your radius server should perform IP reassembly unless it never receives the fragments ( a.k.a dropped in transit )

Get notified when there are additional replies to this discussion.