Integrating Windows Active Directory with cnMaestro

https://community.cambiumnetworks.com/t5/cnMaestro/Integrating-Windows-Active-Directory-with-cnMaestro/m-p/84164

I am trying to achieve that link

What I am not clear

1. what are rights differences between Super User, Admin, Operator, Monitor

2. whether user must be member of those groups

what happen when an user not belong to any of those group.

could he/she still login to AP

3. how AD user join to AP. Is it using their AD password and not using WPA2 password?

tq

That link contains instructions to use Active Directory to authentiate login to the on-premises version of cnMaestro using Windows AD. Is that what you're trying to do? Or are you trying to use AD to authenticate users connecting to a WPA2 enterprise wireless LAN?

If it is the latter, those instructions are not applicable. Instead, you need to run a RADIUS server on your windows AD server e.g. by installing and running Windows Network Policy Server. Once you have done that you can then set the authentication mode for the WLAN on the cnPilot AP to WPA2-Enterprise (instead of open or WPA-PSK) and configure the RADIUS server IP and secret on it. The users can then connect to Wi-Fi using their AD username and password.

1 Like

Hi, I am interested in the latter. i.e, using AD to authenticate users via Radius. We run AD from Windows Server 2012 r2. Can you provided detailed steps on how to achieve that? Thanks in advance.


@mangibr wrote:
Hi, I am interested in the latter. i.e, using AD to authenticate users via Radius. We run AD from Windows Server 2012 r2. Can you provided detailed steps on how to achieve that? Thanks in advance.

http://community.cambiumnetworks.com/t5/cnPilot-E-Series-Enterprise-APs/How-to-configure-and-use-Realm-in-cnPilot-E-Series-Enterprise/m-p/87355#M107

2 Likes