Eduroam Service Template
This template is designed for the following scenarios:
Local campus users connecting to eduroam from the local wireless network.
Roaming users from an eduroam campus connecting to their campus network.
Roaming users connecting from a local campus or other campuses that are part of the eduroam federation.
To access the service template:
1. Navigate to > .
2. From the page, select Eduroam. The page opens to the tab.
Figure 1 Eduroam Service Template
Specify the parameters used in the service template as described in the following table:
|
Parameter |
Action/Description |
|---|---|
|
Select Prefix |
Select a prefix from the existing list of prefixes. This populates the pre-configured information in the and. The field is not editable. |
|
Name Prefix |
Enter a prefix that you want to append to services using this template. Use this to identify services that use templates. |
|
Service Rule |
|
|
Enter domain details |
Enter the domain name of the network. For example, @edunet.ucla.com. This field is mandatory. |
|
Select Vendor |
Select the vendor of the network device. This field is mandatory. |
|
Authentication |
|
|
Select an authentication source from the list, the information updated in the , , and tabs are auto-populated. |
|
|
Active Directory Name |
Enter the hostname or the IP address of the Active Directory server. This field is mandatory. |
|
Description |
Enter a description that helps you identify the characteristics of this template. This field is mandatory. |
|
Server |
Enter the host name or the IP address of the Active Directory server. This field is mandatory. |
|
Identity |
Enter the Distinguished Name (DNDistinguished Name. Distinguished Name. A series of fields in a digital certificate that, taken together, constitute the unique identity of the person or device that owns the digital certificate. Common fields in a DN include country, state, locality, organization, organizational unit, and the “common name”, which is the primary name used to identify the certificate. ClearPass uses this account to access all other records in the directory. For Active Directory, the bind DN can also be in the administrator@domain format (for example, administrator@acme.com).) of the administrator account. This field is mandatory. |
|
Enter the server Active Directory domain name. This field is mandatory. |
|
|
Base DN |
Enter the Distinguished Name (DN) of the administrator account. This field is mandatory. |
|
Password |
Enter the account password. This field is mandatory. |
|
Port |
Enter the TCPTransmission Control Protocol. TCP is a communication protocol that defines the standards for establishing and maintaining network connection for applications to exchange data. port where the server is listening for a connection. This field is mandatory. |
|
Wireless Network Settings |
|
|
Select wireless controller |
Select a wireless controller from the drop-down list. |
|
Wireless controller name |
Enter the name given to the wireless controller. |
|
Controller IP Address |
Enter the IP address of the wireless controller. |
|
Vendor Name |
Select the manufacturer of the wireless controller. |
|
Enter the shared secret that is configured on the controllerand inside Policy Manager to send and receive RADIUS requests. |
|
|
Select to enable RADIUS initiated CoA on the network device. |
|
|
RADIUS CoA Port |
Specifies the default port 3799 if RADIUS CoA is enabled. Change this value only if you defined a custom port on the network device. |
|
Federation Level RADIUS Server (FLR) |
|
|
Host Name |
Enter the host name of the federation RADIUS server. |
| IP Address | Enter the IP address of the federation RADIUS server. |
|
Vendor Name |
Select the manufacturer of the wireless controller. |
|
RADIUS Shared Secret |
Enter the shared secret that is configured on the controllerand inside Policy Manager to send and receive RADIUS requests. |
|
Enable RADIUS CoA |
Select to enable RADIUS initiated CoA on the network device. |
|
RADIUS CoA Port |
Specifies the default port if RADIUS CoA is enabled. Change this value only if you defined a custom port on the network device. |
|
RADIUS Authentication Port |
Enter the port number for the RADIUS Authentication Port. |
|
RADIUS Accounting Port |
Enter the port number for the RADIUS Accounting Port. |