-
[USG FLEX H AP controller] Why AD authentication failed for the SSID connection?
This issue could be because: Your firewall haven't join your AD server. Please click the join domain button in AD server summary. Your firewall might disconnect with your AD server. Please check the connection. Wrong account/password. Please check the account and password is correct.
-
[USG FLEX H AP controller] Configure SSID with 802.1x authentication WPA enterprise with AD
This FAQ will introduce the configuration step of SSID with 802.1x authentication WPA enterprise with AD on USG FLEX H series firewall AP controller. Please navigate to User & Authentication > User Authentication > AD Server summary to add your AD server. Select the AD server and click the "Join Domain" button. Please…
-
[AP Controller]Setting Up MAC Authentication on Wireless Network
This example demonstrates how to configure MAC authentication, allowing wireless clients to authenticate using their MAC addresses instead of usernames and passwords. In a classroom setting, teachers' devices are pre-registered and trusted on the controller. These devices can bypass standard authentication protocols and…
-
Why can't client connect to other VLAN on new APs when using radius authentication?
Scenario: Clients connect to other vlan using old access points without issues, but it cannot connect to internet using new APs of the same model. There could be several reasons why client can't connect to other vlan on the new APs. Here are some troubleshooting steps: Ensure the new APs are properly set up with vlan…
-
What Do the Disassociation Codes 107, 108, and 109 Mean?
The disassociation codes with Zyxel wireless access point means: Code 107 refers to "Disconnected by STA timeout." This occurs when the access point (AP) driver sends a packet to the station, but the station does not reply and times out. Code 108 is "Disconnected by STA reconnect." This happens when the AP receives the…
-
How to configure WPA2-Enterprise (802.1X) with Dynamic VLAN by Nebula Cloud Authentication Server
When the station wants to
connect with the AP, you can use Nebula Cloud Authentication Server (NCAS) to provide access control to your
network. In this example, assuming there are two stations in different groups
and they can connect to the same SSID for accessing the Internet, but get IPs
in different subnets because of…
-
How to Configure 802.1x EAP-TLS to Secure the Wireless Environment with Third-party CA Certificate?
This example shows how to use Android/iOS phone import the third-party certificate to get the wireless connection with 802.1x EAP-TLS protected. We need a certificate which is purchasing by the third-party CA. Configure Certificate 1 Generate certificate request on the NXC. Go to CONFIGURATION > Object > Certificate > My…
-
How to Configure 802.1x EAP-TLS to Secure the Wireless Environment with Self-Signed Certificate?
This example shows how to use Android/iOS phone import the self-sign certificate from NXC to get the wireless connection with 802.1x EAP-TLS protected. We need a certificate which is generated by the NXC. Configure Certificate 1 Go to CONFIGURATION > Object > Certificate > My certificates, and add a self-signed…
-
How to Configure 802.1x with Dynamic VLAN by Using External AAA server?
When the station wants to connect with the AP, you can use an AAA server to provide access control to your network. In this example, assuming there are two stations in different groups and they can connect to the same SSID for accessing the Internet, but get IPs in different subnets because of the dynamic VLAN settings.…
-
How to Configure 802.1x to Secure the Wireless Environment with an Internal RADIUS in NXC?
The example instructs how to set up NXC controller and let users do local authentication without external radius server. The user data base is set up in the NXC controller and the client can enter the username and password to do authentication via 802.1x. 4.4.1 Configure Authentication Method Setting 1 Go to CONFIGURATION…
-
How to Configure 802.1x to Secure the Wireless Environment with an External LDAP Server?
The example instructs how to set up the NXC controller with an external LDAP server. When the station wants to connect with the AP, you can use an AAA server to provide access control to your network. In this example, the LDAP server is external but not embedded in NXC controller, and the controller is already set to use…
-
How to Configure 802.1x to Secure the Wireless Environment with an External AD Server?
The example instructs how to set up the NXC controller with an external AD server. When the station wants to connect with the AP, you can use an AAA server to provide access control to your network. In this example, the AD server is external but not embedded in the NXC controller, and the controller is already set to use…
-
How to Configure 802.1x to Secure the Wireless Environment with an External RADIUS Server?
The example instructs how to set up NXC controller with an external radius server. When station wants to connect with AP, you can use an AAA server to provide access control to your network. In this example, the radius server is external but not embedded in NXC controller, and the Radius server is set ready for…
-
How to add the information of AD server in the NXC device?
After AD server is setup and confirm that the connection between AD server and NXC is passing, go to NXC add the information of AD server. Go to AAA Server > Active Directory > Add How to write the information of AD server on the NXC? There is an example by windows 2008 R2 AD server. *Please confirm that the AD server pick…
-
What is the difference between “internal” and “external” for the RADIUS servers type in the NXC?
NXC GUI : CONFIGURATION > Object > AP Profile > SSID > Security List 1. What is the authentication mechanism used by an "internal" RADIUS server? When you select "internal" as the RADIUS server type, the 802.1X authentication is processed by an internal RADIUS that is built within the controller. When the AP is managed by…