How to set up web auth with AD server on USG FLEX H?

Options
Zyxel_James
Zyxel_James Posts: 788  Zyxel Employee
Zyxel Certified Network Administrator - Security Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate 100 Answers

Question: How to set up web auth with AD server on USG FLEX H?

Answer:

Set Up a profile for AD server

Go to User & Authentication > User Authentication > AAA Server > AD. Click +Add tocreate a new profile

image.png

Enter the Server Address and port for Server settings. (10.214.48.XX:389 in this example).Enter the domain name and the credentials for logging into the AD server, and clickApply.

image.png

Join Domain

After the profile is created, go to System > DNS & DDNS > DNS, create a domain zoneforwarder, and configure the DNS server IP as the IP address for the domain controller

image.png

After the action above, go back to the profile page, tick it and click Join Domain

image.png

Enter NetBIOS Domain Name, Username and Password, click Apply.

image.png

After join domain successfully, you can see this icon.

image.png

Configure the Captive Portal

Enable the Captive Portal and add a policy - Navigate to the Web-GUI pathCaptive Portal > Authentication Policy > Policy > To enable the Captive Portalfunction and add a policy.

image.png

Add an Authentication Policy – Enable the Authentication Policy, provide aDescription, select the Incoming interface, choose the Sign In Method, specify theAuthentication Server and Portal Type, and enable Log.

image.png

Check the settings – Ensure the Captive Portal function and the AuthenticationPolicy are enabled.

image.png

Edit the Advance settings – The default server address is 6.6.6.6, the default HTTP portis set to 1080, and the default HTTPS port is set to 1443.

image.png