This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XG and Ubiquiti APs

Hi,

 

I just found this, is the bottom solution still correct?

https://community.sophos.com/products/xg-firewall/f/authentication/91423/sso-radius-with-microsoft-nps-for-authenticating-wireless-ubiquiti-access-points

Here is my scenario

We recently switched over from Smoothwall+Ruckus to Sophos+Unifi for our Firewall/wifi solution.

In the previous config the user would log onto the guest WIFI (we are a school by the way) and get to a landing page where they would install the Smoothwall cert for HTTPS scanning. There was a link to the Ruckus logon page where the user logged on using there school username and password and the user would be authenticated against radius and put in the right filtering group. As far as I remember the setting Ruckus pointed to ADfor credential checking and then Smoothwall for radius accounting.

I would like to mirror this with Unifi and Sophos. but struggling.

I have radius setup and working with both Sophos and the Unifi controller (I cant see much logs on either of these to help me)

I've tried setting it up as previously but the user doesn't get put into groups, they get the Sophos logon page.

I've added all the access points and the controller and Sophos to the radius clients section on the windows server, when I do a test the logs in windows shows its successful.

What I have read I think I should point bot the radius and accounting to the windows server now which will then redirect accounting to the Sophos server to get its groups, I've tried both ways but neither work.

Can anyone help with some pointers please.. or if this is actually possible with these 2 vendors.

Any help would be appreciated



This thread was automatically locked due to age.