This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos with Ubiquiti Access Points SSO/Roaming

Hi All,

 

I'm currently looking into a setup where there is  Sophos XG and 50 Unifi Ubiquiti Access points.

Currently when moving from location to location it requires a sign in from the Sophos. I thought since it's just passing the connection through that it would authenticate automatically from point to point?

 

The wireless access points work based on proximity so will move across to another if the signal is better. Can anyone point me in the right direction or advise?



This thread was automatically locked due to age.
Parents
  • Hi Dominic ,

     

    You may need a wireless Accesspoint Manager to Manage these AP so they would do as you would like. 

    Otherwise you may use SSO when the IP address is assigned to your Mac Address but you may need to be actually connected to the network and login using SSO , the ADS would have an event and XG will authenticate the user. If the network is changed to another broadcast domain then the user may need to re-authenticate again. 

    If the network is the same you may use Authentication Agent for automatic authentication.

Reply
  • Hi Dominic ,

     

    You may need a wireless Accesspoint Manager to Manage these AP so they would do as you would like. 

    Otherwise you may use SSO when the IP address is assigned to your Mac Address but you may need to be actually connected to the network and login using SSO , the ADS would have an event and XG will authenticate the user. If the network is changed to another broadcast domain then the user may need to re-authenticate again. 

    If the network is the same you may use Authentication Agent for automatic authentication.

Children
  • Sorry, I think I've worded this wrong. I don't want full SSO - I'll try to explain the situation as best I can.

     

    If I were to connect to a Wifi Access Point using my AD credentials (synced with the Sophos) and then move across to another access point by physically moving closer to it, it then requires me to sign into the Sophos again for internet access.