This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG AP Authentication with RADIUS

Hi All,

 

Because XG wireless does not support backend auth with AD. It needs through RADIUS server to do an Auth with AD. I have to follow the steps - https://community.sophos.com/kb/en-us/122790 to configure XG Firewall and RADIUS server. But my client pc cannot log-in and haven't log can check in the XG Firewall.

I have to find that the log in RADIUS Server is that "RADIUS message was from invalid RADIUS client IP address 172.18.18.99". 

Based on the KB, I have some confusion that, if I need to select a separate network in the wireless setting,  which firewall IP I need to add in RADIUS Server?

If my client pc is not joined a domain, is it need to add a cert to the PC? 

Is it any method for the authentication with no need to add cert in the PC?

My environment as below

 

Firewall Port 1 (internal) : 172.18.18.99

AD and RADIUS: 172.18.18.200

AP (Separate network) 172.33.33.99.

 

 

 

 

 

 

 

 

 



This thread was automatically locked due to age.
Parents Reply
  • Would suggest to open a Sophos Support Case to get a troubleshooting session.

    There is some kind of mistake in your config but i cannot spot it right now. 

    Maybe perform a tcpdump to see the radius packets and whether they get dropped by somebody or the radius server perform the drop. 

Children