Wi-Fi employee access – ExtremeCloud IQ
In this topic, you will learn how to configure ExtremeCloud IQ to work together with Portnox™ Cloud and 802.1X RADIUS authentication for Wi-Fi connections.
Create IP objects for the Portnox Cloud RADIUS servers
In this section, you will create IP objects for the Portnox™ Cloud RADIUS servers. ExtremeCloud IQ uses these IP objects to reference IP addresses in external RADIUS server entries, which you will create in the next section.
Create the external RADIUS servers
In this section, you will create external RADIUS server entries for the Portnox™ Cloud RADIUS servers, using the IP objects that you created earlier. You will use these servers later when you configure your SSIDs.
Create an SSID for 802.1X authentication
In this section, you will create a new SSID and configure it for WPA2 Enterprise authentication, using the external RADIUS servers that you created earlier.
Result: You created an SSID that authenticates employee Wi-Fi devices using 802.1X and the Portnox Cloud RADIUS servers.
Optional: Create an SSID for MAC-based authentication
This is an optional task. Follow this task only if you want to authenticate devices, such as IoT devices, that do not support 802.1X, using their MAC address instead. Skip this task if you do not need MAC-based authentication.
Result: You created a separate SSID that authenticates IoT devices by their MAC address using the Portnox Cloud RADIUS servers on the basis of MAC-based accounts.
Assign SSIDs to a network policy and update your access points
In this section, you will add any SSIDs that you created to a network policy, and push the updated policy to your access points. Changes to your network policy do not take effect until you complete this section.
Result: Your access points receive the updated network policy, and clients can now access the SSIDs that you created.

























