Get the strength and security of RADIUS without building, maintaining, or monitoring physical servers. It’s also quick to roll out managed RADIUS to your organization to authenticate users to Wi-Fi, VPNs, switches, and network devices securely. This is a full walkthrough of configuring JumpCloud's RADIUS-as-a-Service (RaaS) and a Ruckus SmartZone (SZ).
Settings and Configuration Notes
- Encryption/Authentication Mode: WPA2 Enterprise.
- Server IP Addresses: For current RADIUS server IPs, see JumpCloud RADIUS Server Details.
- RADIUS Port(s): 1812/UDP (accounting port 1813 is not supported).
- Shared Secret: The Shared Secret is created by performing the steps in RADIUS Configuration and Authentication.
To view the Shared Secret:
- Log in to the JumpCloud Admin Portal.
- Select USER AUTHENTICATION > RADIUS from the left-hand navigation.
- Click to select a configured RADIUS server.
- The Shared Secret is below Server Name. Click the eye to make the characters visible,
Ruckus SmartZone Configuration
Ruckus SmartZone ConfigurationSteps to configure a Ruckus SmartZone is accurate as of 5/17/2018. If a discrepancy is found, contact JumpCloud Support.
Authentication Profile
- Navigate a web browser to your Ruckus SmartZone configuration management page.
- Login with your Ruckus administrator username and password.
- Click Services & Profiles to expand the Services & Profiles options.
- In the Services & Profiles expanded options list, select Authentication.
- On the Authentication page, select the tab for Proxy (SZ Authenticator).
- Click + Create.
- Leave the Service Protocol set to RADIUS.
- Enter the RADIUS server IP. Refer to Configure a WAP, VPN, or Router for RADIUS for a list of JumpCloud's current server IP addresses.
- Paste in your JumpCloud Shared Secret for this RADIUS connection.
- (Optional, recommended) Configure the Secondary Server with the second JumpCloud Radius IP.
WLAN Configuration
- From the Ruckus SmartZone configuration management page, select Wireless LANs from the left side navigation.
- Click + Create.
- Give the SSID a Name.
- Under Authentication Options, leave the Authentication Type set to the default Standard Usage.
- Under Authentication Options, change the Method to 802.1X.EAP.
- Under Encryption Options, leave the Method set to the default WPA2.
- Under Authentication & Accounting Server, check the box for Use the Controller as Proxy.
- Under Authentication & Accounting Server, select the JumpCloud Radius server you created in the Authentication Profile steps from the Select an authentication service drop-down menu.
- Your configuration is complete. Next: Configure your WiFi Clients to use RADIUS.
Back to Top