Microsoft Network Policy Server

Microsoft Network Policy Server

Network Policy Server (NPS) is the Microsoft implementation of a RADIUS server and proxy. Mobility can use the following protocols to authenticate users to Microsoft NPS: PEAP-MSCHAPV2, PEAP-EAP-TLS or EAP-TLS. It can use PEAP-EAP-TLS or EAP-TLS to authenticate devices to an NPS.

To perform Mobility client authentication with NPS, there are two main tasks you need to complete:

Installing certificates: For information on which certificates must be installed, see

: For information on which certificates must be installed, see Certificate Requirements . Because NPS is part of the Microsoft infrastructure, certificate installation can be automated using Active Directory and group policies. See About Certificate Installation for more information. This topic also describes how to install a server certificate and private key on the RADIUS server.

Configuring NPS: For steps on how to configure NPS, see

: For steps on how to configure NPS, see Configuring NPS for PEAP or EAP-TLS

The procedures documented here are just broad guidelines for configuration; refer to your server documentation for complete details. Due to the nature of RADIUS authentication, the Mobility server receives only an authentication success or failure from the RADIUS server; to troubleshoot RADIUS-based authentication you must refer to the RADIUS logs.

Note

Do not install NPS and the Mobility server on the same computer: collocation is not supported.

Related Information

©2017 NetMotion Wireless, Inc. | NetMotion Mobility® Server v11