Ruckus ZoneDirector
Renato.neves (Talk | contribs) |
Renato.neves (Talk | contribs) |
||
(3 intermediate revisions by 2 users not shown) | |||
Line 1: | Line 1: | ||
The following guide was created using a Ruckus wireless network with the following components: | The following guide was created using a Ruckus wireless network with the following components: | ||
− | * Controller: Ruckus ZoneDirector 1100 | + | * Controller: Ruckus ZoneDirector 1100 (ZD1106) |
− | * AP: Ruckus ZoneFlex 7300 Series | + | * AP: Ruckus ZoneFlex 7300 Series (zf7372) |
* Firmware: 9.8.3.0 build 14 | * Firmware: 9.8.3.0 build 14 | ||
Line 9: | Line 9: | ||
== Configuring the RADIUS server == | == Configuring the RADIUS server == | ||
− | Configure the | + | Configure the CoffeeBean RADIUS server by creating a new AAA Server. |
Go to "Configure > AAA Servers". | Go to "Configure > AAA Servers". | ||
Line 23: | Line 23: | ||
* Type: RADIUS | * Type: RADIUS | ||
* Auth Method: PAP | * Auth Method: PAP | ||
− | * IP Address: | + | * Backup RADIUS: check "Enable backup RADIUS support" |
− | * Port: 1812 | + | * First Server |
− | * Shared Secret: the provided RADIUS client secret | + | ** IP Address: the [[Captive_Portal#RADIUS_Server|primary RADIUS server IP]] according to your environment/region |
− | * Confirm Secret: the provided RADIUS client secret | + | ** Port: 1812 |
+ | ** Shared Secret: the provided RADIUS client secret | ||
+ | ** Confirm Secret: the provided RADIUS client secret | ||
+ | * Second Server | ||
+ | ** IP Address: the [[Captive_Portal#RADIUS_Server|secondary RADIUS server IP]] according to your environment/region | ||
+ | ** Port: 1812 | ||
+ | ** Shared Secret: the provided RADIUS client secret | ||
+ | ** Confirm Secret: the provided RADIUS client secret | ||
=== RADIUS Accounting === | === RADIUS Accounting === | ||
Line 37: | Line 44: | ||
* Type: RADIUS Accounting | * Type: RADIUS Accounting | ||
− | * IP Address: | + | * Backup RADIUS: check "Enable backup RADIUS Accounting support" |
− | * Port: 1813 | + | * First Server |
− | * Shared Secret: the provided RADIUS client secret | + | ** IP Address: the [[Captive_Portal#RADIUS_Server|primary RADIUS server IP]] according to your environment/region |
− | * Confirm Secret: the provided RADIUS client secret | + | ** Port: 1813 |
+ | ** Shared Secret: the provided RADIUS client secret | ||
+ | ** Confirm Secret: the provided RADIUS client secret | ||
+ | * Second Server | ||
+ | ** IP Address: the [[Captive_Portal#RADIUS_Server|secondary RADIUS server IP]] according to your environment/region | ||
+ | ** Port: 1813 | ||
+ | ** Shared Secret: the provided RADIUS client secret | ||
+ | ** Confirm Secret: the provided RADIUS client secret | ||
== Configuring the Hotspot service == | == Configuring the Hotspot service == | ||
Line 52: | Line 66: | ||
* Login Page: the provided captive portal login URL | * Login Page: the provided captive portal login URL | ||
* Start Page: select "redirect to the following URL:" and fill the provided captive portal start URL | * Start Page: select "redirect to the following URL:" and fill the provided captive portal start URL | ||
− | * Authentication Server: the previously AAA Server created (e.g.: "AAA-SOCIAL-ID") | + | * Authentication Server: the previously RADIUS Authentication Server created (e.g.: "AAA-SOCIAL-ID") |
+ | * Accounting Server: the previously RADIUS Accounting Server created (e.g.: "AAA-SOCIAL-ID-ACCT") | ||
=== Walled Garden === | === Walled Garden === | ||
− | Allow | + | Allow CoffeeBean Platform URLs and social network URLs by configuring the Hotspot Walled Garden destinations. |
Add the entries according to [[Captive_Portal#Walled_Garden_for_the_Social_Login | Walled Garden for the Social Login]] URLs: | Add the entries according to [[Captive_Portal#Walled_Garden_for_the_Social_Login | Walled Garden for the Social Login]] URLs: |
Latest revision as of 00:23, 4 September 2021
The following guide was created using a Ruckus wireless network with the following components:
- Controller: Ruckus ZoneDirector 1100 (ZD1106)
- AP: Ruckus ZoneFlex 7300 Series (zf7372)
- Firmware: 9.8.3.0 build 14
Note that this guide supports only firmware version 9.8+.
Contents |
Configuring the RADIUS server
Configure the CoffeeBean RADIUS server by creating a new AAA Server.
Go to "Configure > AAA Servers".
RADIUS Authentication
Click in the "Create New" link and fill the name, such as "AAA-SOCIAL-ID":
Then fill the following info:
- Type: RADIUS
- Auth Method: PAP
- Backup RADIUS: check "Enable backup RADIUS support"
- First Server
- IP Address: the primary RADIUS server IP according to your environment/region
- Port: 1812
- Shared Secret: the provided RADIUS client secret
- Confirm Secret: the provided RADIUS client secret
- Second Server
- IP Address: the secondary RADIUS server IP according to your environment/region
- Port: 1812
- Shared Secret: the provided RADIUS client secret
- Confirm Secret: the provided RADIUS client secret
RADIUS Accounting
Create a new RADIUS server for Account. Click in the "Create New" link and fill the name, such as "AAA-SOCIAL-ID-ACCT":
Then fill the following info:
- Type: RADIUS Accounting
- Backup RADIUS: check "Enable backup RADIUS Accounting support"
- First Server
- IP Address: the primary RADIUS server IP according to your environment/region
- Port: 1813
- Shared Secret: the provided RADIUS client secret
- Confirm Secret: the provided RADIUS client secret
- Second Server
- IP Address: the secondary RADIUS server IP according to your environment/region
- Port: 1813
- Shared Secret: the provided RADIUS client secret
- Confirm Secret: the provided RADIUS client secret
Configuring the Hotspot service
Go to "Configure > Hotspot Services", click in the "Create New" link and fill the Name, such as "CP-SOCIAL-ID":
Then fill the following info:
- Login Page: the provided captive portal login URL
- Start Page: select "redirect to the following URL:" and fill the provided captive portal start URL
- Authentication Server: the previously RADIUS Authentication Server created (e.g.: "AAA-SOCIAL-ID")
- Accounting Server: the previously RADIUS Accounting Server created (e.g.: "AAA-SOCIAL-ID-ACCT")
Walled Garden
Allow CoffeeBean Platform URLs and social network URLs by configuring the Hotspot Walled Garden destinations.
Add the entries according to Walled Garden for the Social Login URLs:
Configuring the WLAN
Now you need to create a Wireless LAN with the Hotspot Service previously created.
Go to "Configure > WLANs", click in the "Create New" link and fill the Name, such as "WLAN-SOCIAL-ID":
Then fill the following info:
- WLAN Usages > Type: Hotspot Service (WISPr)
- Authentication Options > Method: Open
- Encryption Options > Method: None
- Options > Hotspot Services: the previously Hotspot Service created (e.g.: "CP-SOCIAL-ID")
WLAN Group
You need to associate the previously WLAN with a WLAN Group.
Probably you already have a "Default" one, but you can also create a new one and associate the previously WLAN as a "Member":
Configuring the Access Points
Access Point Group
You need to associate the WLAN Group previously created/configured to your Access Points.
Go to "Configure > Access Points" and check "Access Point Groups" section.
Probably you already have a "System Default" one, but you can also create a new one and assign the previously WLAN Group by overriding the configuration:
Access Point
At the last step you need to check if the APs you want to provide the Hotspot Service are assigned to the Access Point Group previously created/configured: