Get the strength and security of RADIUS without building, maintaining, or monitoring physical servers. It’s also quick to roll out managed RADIUS to your organization to authenticate users to Wi-Fi, VPNs, switches, and network devices securely. This is a full walkthrough of configuring JumpCloud's RADIUS-as-a-Service (RaaS) and a Ruckus SmartZone (SZ).
Settings and Configuration Notes
- Encryption/Authentication Mode: WPA2 Enterprise.
 - Server IP Addresses: For current RADIUS server IPs, see JumpCloud RADIUS Server Details.
 - RADIUS Port(s): 1812/UDP (accounting port 1813 is not supported).
 - Shared Secret: The Shared Secret is created by performing the steps in RADIUS Configuration and Authentication.
 
To view the Shared Secret:
- Log in to the JumpCloud Admin Portal.
 - Select USER AUTHENTICATION > RADIUS from the left-hand navigation.
 - Click to select a configured RADIUS server.
 - The Shared Secret is below Server Name. Click the eye to make the characters visible,
 
Ruckus SmartZone Configuration
Ruckus SmartZone ConfigurationSteps to configure a Ruckus SmartZone is accurate as of 5/17/2018. If a discrepancy is found, contact JumpCloud Support.
Authentication Profile
- Navigate a web browser to your Ruckus SmartZone configuration management page.
 - Login with your Ruckus administrator username and password.
 - Click Services & Profiles to expand the Services & Profiles options.
 - In the Services & Profiles expanded options list, select Authentication.
 - On the Authentication page, select the tab for Proxy (SZ Authenticator).
 - Click + Create.
 - Leave the Service Protocol set to RADIUS.
 - Enter the RADIUS server IP. Refer to Configure a WAP, VPN, or Router for RADIUS for a list of JumpCloud's current server IP addresses.
 - Paste in your JumpCloud Shared Secret for this RADIUS connection.
 - (Optional, recommended) Configure the Secondary Server with the second JumpCloud Radius IP.
 
WLAN Configuration
- From the Ruckus SmartZone configuration management page, select Wireless LANs from the left side navigation.
 - Click + Create.
 - Give the SSID a Name.
 - Under Authentication Options, leave the Authentication Type set to the default Standard Usage.
 - Under Authentication Options, change the Method to 802.1X.EAP.
 - Under Encryption Options, leave the Method set to the default WPA2.
 - Under Authentication & Accounting Server, check the box for Use the Controller as Proxy.
 - Under Authentication & Accounting Server, select the JumpCloud Radius server you created in the Authentication Profile steps from the Select an authentication service drop-down menu.
 - Your configuration is complete. Next: Configure your WiFi Clients to use RADIUS.
 
                            
                            Back to Top
                        
                    

