Radius issue after Upgrade

Radius issue after Upgrade

Radius issue after Upgrade
Radius issue after Upgrade
2 weeks ago - last edited 2 weeks ago
Model: OC300  
Hardware Version: V1
Firmware Version: 7.1.29

Hi

 

I have problem with my WiFi network.

 

To the last Friday everything was ok.

 

My infrastructure is :

 

Omada OC300 Controller in Server Room

3 localizations configured on 3 different sites 

EAP653 AP's in each site

Radius Server (NPS windows)

 

After Upgrade controller to newest version i cant connect to wifi with radius in one się.

 

In the others site everything is ok.

 

In site, which is difficult, I can connect to Radius WiFi when i USE eap653 with old firmware 

 

When i Use eap653 from this site In other site connect is ok.

 

Connect without radius (wpa personal, no auth) is ok

 

I checked everything, i Have no idea what should i do.

 

In each sites ap are connect to tp link poe switch.

 

Firewall is ok, vlan are ok, In each of sites configuration is the same, firmware versions are the same

 

 

 

  0      
  0      
#1
Options
1 Accepted Solution
Re:Radius issue after Upgrade-Solution
2 weeks ago - last edited 2 weeks ago

  @ITAdminNetwork 

 

Is the ISP the same across all three sites? I suspect that the problematic site's ISP may have specific restrictions.

Did you upgrade the OC300 to the latest V6 version? This version introduces a new port (29817) — please verify that this port is open at the affected site.

 

 I can connect to Radius WiFi when i USE eap653 with old firmware 

>>> Do you mean if you downgrade the OC300 back to the old firmware, everything works? What's the old firmware is?

Recommended Solution
  0  
  0  
#2
Options
5 Reply
Re:Radius issue after Upgrade-Solution
2 weeks ago - last edited 2 weeks ago

  @ITAdminNetwork 

 

Is the ISP the same across all three sites? I suspect that the problematic site's ISP may have specific restrictions.

Did you upgrade the OC300 to the latest V6 version? This version introduces a new port (29817) — please verify that this port is open at the affected site.

 

 I can connect to Radius WiFi when i USE eap653 with old firmware 

>>> Do you mean if you downgrade the OC300 back to the old firmware, everything works? What's the old firmware is?

Recommended Solution
  0  
  0  
#2
Options
Re:Radius issue after Upgrade
2 weeks ago

  @Vincent-TP 

Controller has newest firmware.

 

Firmware which works on EAP653 is 1.1.3

 

Firewall is open, all ports beetween controller and AP's is allow.

 

I have two ISP in Every Location, but trafiic is route from locations to main location by SD WAN link ( two tunnels, one in L3, one in L2)

 

Yestarday I check AP in standalone mode , and without controller it works with Radius.

 

  0  
  0  
#3
Options
Re:Radius issue after Upgrade
2 weeks ago

  @ITAdminNetwork 

 

You're saying the issue only occurred after upgrading the controller to the latest OC300 firmware, and reverting to the previous firmware resolved it?

Or updating the EAP653's firmware?

 

Based on your description, only one site has this problem, and it's unrelated to the EAP hardware itself. Therefore, I believe it's related to the port configuration.

The EAP653 v1.1.3 is only compatible with version 5.14 and doesn't require the newly added port 29817 introduced in controller V6.0.0.x, which is why it works fine.

However, the new controller version 6.0.0.x requires this additional port.

 

While you may have opened these ports in your firewall, your Internet service provider might still be blocking them on their end. Please carefully check your ISP's equipment or contact them to confirm if there are any special restrictions on these ports. Thanks.

  0  
  0  
#4
Options
Re:Radius issue after Upgrade
2 weeks ago

  @Vincent-TP 

 

I didn'y try revert Controller to older firmware, EAP653 with older firmware 1.1.3 works fine.

 

But in this location a few of EAP653 works fine, but rest no work with radius. They have the same firmware.

 

I analized traffic by wireshark on Radius server and i see the first packets from working and from not working are the same, but when server response to the not working EAP, communication is stopped and first packets comes again.

 

  0  
  0  
#5
Options
Re:Radius issue after Upgrade
2 weeks ago

Hi  @ITAdminNetwork 

 

Thanks for the reply.

 

I analized traffic by wireshark on Radius server and i see the first packets from working and from not working are the same, but when server response to the not working EAP, communication is stopped and first packets comes again.

>>>The issue seems RADIUS-server related. Please verify its configuration, or alternatively test with the controller's built-in RADIUS server.

How to Configure Dynamic VLAN with the Built-in RADIUS Server of Omada SDN Controller via User Auth?

  0  
  0  
#6
Options