NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

PdClark's avatar
PdClark
Tutor
Jul 20, 2018
Solved

GS748T no radius authentication

Hi

 

I have a Windows Server 2012 configured with NPS and is working fine with WiFi access points.

 

I'm trying to configure my GS748T to authenticate EAP with the server.  What I've done so far;

 

Updated the firmware to the latest version

Configured the Radius server settings in the switch (with and without a shared key) to the Windows Server IP address

Configured the Accounting server

Set the port connected to the server as Active

Set Port Authentication to Enabled

 

I've also tried vlans 

 

Configured workstations through Group Policy to use Wired Network Policies (IEEE 802.3)

 

If I use a network monitor, I can see the switch trying to authenticate the Admin user when I turn on 'Radius - Local - None'.  But the stats for Radius server all remain at 0.

 

 

When I look at Port Authentication - Advanced, it states its connecting.  The Monitor also displays EAP frames.

 

From tools, I can ping the radius server.

 

The firewall is disabled on the server and the WiFi access points are using the Radius server fine using the default ip port.

 

Any ideas?

  • ** Solved **

     

    One thing I overlooked.  Windows 7 and onwards have a service ' Wired AutoConfig' which is set to manual as default.

     

    Set this to automatic and it works perfectly!

14 Replies

  • Hi, I have same problem..no way to run Radius authentication on ports. My Radius server is on Windows server 2008 R2. No information in log on Radius server. I think, that I try everything.. Only thing that works is, when I set Radius on Authentication list. Than I see that switch is trying to authenticate "admin" user on Radius server when I try to login to admin on switch. So in this case it works(but is bad, because of admin name)..but no way to run port authentication. Is there someone with smart switch - newest fw(24) - run port authentication and its ok? Maybe its fw problem..It makes me crazy :-/

      • PdClark's avatar
        PdClark
        Tutor

        Hi Dane

         

        Thanks for the reply.

         

         

        I followed the link and sub-links on the articles and I've tried all the settings which were listed, with no sucsess.

         

        The only time the switch contacts the Radius server is for authentication of the managment console.  At no point does it try to contact the server for 802.1x authentication.

         

        I've run a network monitor on the radius server and the only packets received from the switch are those from the console authentication.

         

        I've checked the logs on the switch and there's nothing in there.

         

        Very frustrating

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More