I'm looking at testing WPA/WPA2 Enterprise encryption, using IAS (Radius) on a W2K3 DC. How do I setup Radius, etc. to allow some domain users access to one SSID, and some to another? Is there a way to assign by Group?
For clarification: The APs will send a NAS-Identifier tag with the access request. Right now, the tags look like this: "RalinkAP0", "RalinkAP1" etc. This is misleading since the tags refer to a network (SSID), not an Access Point.
So you can use per-SSID RADIUS auth right now, you just have to find out which tag relates to which SSID.
We'll change this in GA, so the NAS-ID tag will actually be the SSID.
For clarification: The APs will send a NAS-Identifier tag with the access request. Right now, the tags look like this: "RalinkAP0", "RalinkAP1" etc. This is misleading since the tags refer to a network (SSID), not an Access Point.
So you can use per-SSID RADIUS auth right now, you just have to find out which tag relates to which SSID.
We'll change this in GA, so the NAS-ID tag will actually be the SSID.