Deal between Meraki access point with Radius server

tli_1
Just browsing

Deal between Meraki access point with Radius server

Hi Guys , 

I ve seen there  is a common issue with meraki access points and radius sever authentication method.

I have a bunch of event logs  on the meraki dashboard showing that client failed due to authentication method, let me add most of the time clients have put their right credentials , <lets put that away ...>  also , some logs show that the radius server  did not respond, while in the same time , we have some users able to connect successfully, i believe this has something to see with the radius server configuration,  from my side  i cannot see more ... in case some of you know about that issue and yet resolved it , please give a clue.

 

Thanks !

4 Replies 4
BlakeRichardson
Kind of a big deal
Kind of a big deal

It sounds like it's your Radius server, have you followed the below guide?  Is your Radius server on premise or a cloud solution?

 

https://documentation.meraki.com/MR/Encryption_and_Authentication/Configuring_RADIUS_Authentication_...

If you found this post helpful, please give it Kudos. If my answer solves your problem, please click Accept as Solution so others can benefit from it.
tli_1
Just browsing

On Premise, we have NPS as radius server .

Mloraditch
Head in the Cloud

You are going to want to check the corresponding NPS logs for anything that failed. They are generally pretty good. For timeouts if it's easily replicable you can do packet captures on the NPS server itself or somewhere along the way to see if perhaps packets are getting dropped. It certainly could be some sort of configuration on the server. The Meraki logs are only going to tell you one side of the story.

If you found this post helpful, please give it Kudos. If my answer solves your problem please click Accept as Solution so others can benefit from it.
GIdenJoe
Kind of a big deal
Kind of a big deal

You can also easily capture the traffic on port 1812 on the AP port to see how long the packets take for their roundtrip between the AP and NPS server.  If the server packets just don't come, then probably you have an issue in NPS.  (misconfigured radius client?)

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels