NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

balbung's avatar
balbung
Aspirant
Feb 07, 2012

WC7520 With LDAP Active Directory

Hi everyone,

I´m trying to conect my Wireless controller with AD through LDAP but the instructions manual is not clear.
I want that determinate group of AD can access to the wireless and i have my controller configurated to connect with AD, but i´m not sure that the controller be able to connect with ad because i don´t receive any error or OK message.
Apart from this what encryption must be selected in the profiles for LDAP authenticating?

Best regards

4 Replies

  • balbung wrote:
    Hi everyone,

    I´m trying to conect my Wireless controller with AD through LDAP but the instructions manual is not clear.
    I want that determinate group of AD can access to the wireless and i have my controller configurated to connect with AD, but i´m not sure that the controller be able to connect with ad because i don´t receive any error or OK message.
    Apart from this what encryption must be selected in the profiles for LDAP authenticating?

    Best regards


    Answers:

    1. You can restrict the user base with the User Base DN. If I had a domain called gearhead.local and a user group called operations and I only wanted operations to have access to wireless I would set the User Base DN to be something like "OU=operations DC=geardog DC=local"

    You can choose any security method. It is independent of the LDAP authentication. I suggest WPA2 + AES.

    You should see some messages in the event viewer under security or system.
    Also there is a LDAP log in windows but it is easier to read the event viewer.

    If you want more information what windows server are you using?
    2008 seems to require PEAP authentication with certificates which can be difficult to set up.

    If you want to give me more details of your system and clients I might be able to validate it in a lab.
  • Hi Friend,

    I really appreciate your reply. I have a Windows server 2003 so if i understand right, if i want that the group WIFI of AD can access to the network, i would have to put into "user base DN", something like this "CN=Wifi,OU=UO_Groups,DC=SPAIN,DC=EXAMPLE,DC=ES"

    The question that i don´t understand so much is this
    You can choose any security method. It is independent of the LDAP authentication. I suggest WPA2 + AES.

    This WPA2 it would be with Radius? and another question, when i select this encryption appears this option
    Authentication Server in this section you can select "Local" or "External" with a Menu in which you can choose basic-LDAP Basic-Auth or Auth1
    What is the function of this option? i must select Basic-LDAP?

    I´m really really really gratefull. Thanks for your help and sorry for my English
  • Hi Friend,

    I really apreciate your reply. I have a Windows server 2003 so if i understand right, if i want that the group WIFI of AD can access to the network, i would have to put into "user base DN", something like this "CN=Wifi,OU=UO_Groups,DC=SPAIN,DC=EXAMPLE,DC=ES"

    The question that i don´t understand so much is this
    You can choose any security method. It is independent of the LDAP authentication. I suggest WPA2 + AES.

    This WPA2 it would be with Radius? and another question, when i select this encryption appears this option
    Authentication Server in this section you can select "Local" or "External" with a Menu in which you can choose basic-LDAP basic-Auth or Auth1
    What is the function of this option?

    I´m really really really gratefull. Thanks for your help and sorry for my English
  • I´ve still got the problem.

    Anybody can help me???

    Thanks in advance