How to Install RADIUS in AWS using Windows NPS Server for Wireless Authentication with AD

Опубликовано: 28 Сентябрь 2024
на канале: Cloud Infrastructure Services
1,835
9

#RADIUS #AWS #NPS #WirelessAuthentication

How to install and setup a RADIUS Server in AWS running Windows NPS Server for Wireless Authentication. Integrate with Active Directory to authenticate users, works with Cisco APs, Meraki wireless access points and other networking devices.

Provides single sign on (SSO) for your users, using Active Directory.

This RADIUS server uses NPS to perform centralized authentication, authorization, and accounting for wireless, authenticating switches, remote access dial-up or virtual private network (VPN) connections. When you use NPS as a RADIUS server, you configure network access servers, such as wireless access points or VPN servers, as RADIUS clients in NPS. You also configure network policies that NPS uses to authorize connection requests, and you can configure RADIUS accounting so that NPS logs accounting information.

NPS uses an Active Directory Domain Services (AD DS) domain or the local Security Accounts Manager (SAM) user accounts database to authenticate user credentials for connection attempts.

Deploy RADIUS on Windows Server 2019 from AWS Marketplace:
https://aws.amazon.com/marketplace/pp...

Deploy RADIUS on Windows Server 2016 from AWS Marketplace:
https://aws.amazon.com/marketplace/pp...

Step by step Setup tutorial on our website:
https://cloudinfrastructureservices.c...

Windows RADIUS Server Features:
Supports WPA2-Enterprise (preferred) or WPA-Enterprise, and either AES (preferred) or TKIP encryption cipher, depending on which versions are supported by your wireless client computer network adapters.
Active Directory or local security accounts manager for authentication
Allow or deny connections to specific wireless networks that you specify by network type and Service Set Identifier (SSID)
Allow or deny connections to infrastructure networks
Allow or deny connections based on AD group membership
Machine certificate authentication using trusted certs
Built-in support for IEEE 802.1X Authenticated Wireless Access with PEAP-MS-CHAP v2
Accounting logging
Unlimited number of RADIUS clients (APs) and remote RADIUS server groups
Configure RADIUS clients (APs) by specifying an IP address range.
Single sign-on solution
RADIUS standard specified by the Internet Engineering Task Force (IETF) in RFCs 2865 and 2866