• No results found

NPS Knowledge Transfer document:

N/A
N/A
Protected

Academic year: 2021

Share "NPS Knowledge Transfer document:"

Copied!
47
0
0

Loading.... (view fulltext now)

Full text

(1)

1

NPS KT document………by…..Enayat Meer…[email protected]…..

NPS Knowledge Transfer document:

Note this document is a complete document that includes

basic/advance & expert level steps. Enayat Meer

Install NPS role on primary server

Add features

(2)

2

NPS KT document………by…..Enayat Meer…[email protected]…..

(3)

3

NPS KT document………by…..Enayat Meer…[email protected]…..

(4)

4

NPS KT document………by…..Enayat Meer…[email protected]….. Register NPS in Active directory

(5)

5

NPS KT document………by…..Enayat Meer…[email protected]…..

(6)

6

NPS KT document………by…..Enayat Meer…[email protected]…..

A certificate was installed on NPS server at this point. This is a sample certificate from my own test environment using meer.com domain. I installed AD root CA (sample screen test environment). We already have available certificate in production NPS servers (installed already)

Adding radius client

(7)

7

NPS KT document………by…..Enayat Meer…[email protected]…..

(8)

8

NPS KT document………by…..Enayat Meer…[email protected]…..

Let’s go and create a shared key template for wireless and wired devices first at this point

(9)

9

NPS KT document………by…..Enayat Meer…[email protected]…..

(10)

10

NPS KT document………by…..Enayat Meer…[email protected]….. Now I am going back to edit radius client for shared secret using template

(11)

11

NPS KT document………by…..Enayat Meer…[email protected]…..

(12)

12

NPS KT document………by…..Enayat Meer…[email protected]…..

(13)

13

NPS KT document………by…..Enayat Meer…[email protected]….. Adding vendor from advance tab

(14)

14

NPS KT document………by…..Enayat Meer…[email protected]…..

(15)

15

NPS KT document………by…..Enayat Meer…[email protected]….. Creating Network Policy

(16)

16

NPS KT document………by…..Enayat Meer…[email protected]…..

(17)

17

NPS KT document………by…..Enayat Meer…[email protected]…..

(18)

18

NPS KT document………by…..Enayat Meer…[email protected]…..

(19)

19

NPS KT document………by…..Enayat Meer…[email protected]…..

I am adding domain users for demo purposes now but, this group should be customized global security group as mentioned later in this document

(20)

20

NPS KT document………by…..Enayat Meer…[email protected]…..

(21)

21

NPS KT document………by…..Enayat Meer…[email protected]….. Grant access or deny access as needed

Use configuratin as shown below for authentaction mehtods

(22)

22

NPS KT document………by…..Enayat Meer…[email protected]…..

(23)

23

NPS KT document………by…..Enayat Meer…[email protected]….. Edit service type to login

(24)

24

NPS KT document………by…..Enayat Meer…[email protected]…..

(25)

25

NPS KT document………by…..Enayat Meer…[email protected]….. Add vendor and previllage

(26)

26

NPS KT document………by…..Enayat Meer…[email protected]…..

(27)

27

NPS KT document………by…..Enayat Meer…[email protected]….. Click on Finish

(28)

28

NPS KT document………by…..Enayat Meer…[email protected]…..

(29)

29

NPS KT document………by…..Enayat Meer…[email protected]….. Configure log file path

(30)

30

NPS KT document………by…..Enayat Meer…[email protected]…..

(31)

31

NPS KT document………by…..Enayat Meer…[email protected]….. Install NPS on secondary server now and register in Active Directory

(32)

32

NPS KT document………by…..Enayat Meer…[email protected]…..

(33)

33

NPS KT document………by…..Enayat Meer…[email protected]…..

On the source NPS server such as 39Radius, open Command Prompt, type netsh, and then press Enter. At the netsh prompt, type nps, and then press Enter (sample command is shown in these both screens)

(34)

34

NPS KT document………by…..Enayat Meer…[email protected]….. OR filename could be

Config.xml

as hown below
(35)

35

NPS KT document………by…..Enayat Meer…[email protected]…..

This stores configuration settings (including registry settings) in an XML file. The path can be relative or absolute, or it can be a Universal Naming Convention (UNC) path. After you press Enter, a message appears indicating whether the export to file was successful.

Copy the file you created to the destination NPS server. At a command prompt on the destination NPS server, type

netsh nps import filename="C:\config.xml"

and then press Enter. A message appears indicating whether the import from the XML file was successful. Make sure exported file is copied at target location.

Active Directory & Group Policy configuration:

Sample global security group with one member that can be a condition as I configured domain

users group earlier

(36)

36

NPS KT document………by…..Enayat Meer…[email protected]…..

Create a test user and add test user as member of NPSUsers group and follow as pointed in screens below.

(37)

37

NPS KT document………by…..Enayat Meer…[email protected]….. These are group policy screens pointing action with arrows

(38)

38

NPS KT document………by…..Enayat Meer…[email protected]…..

(39)

39

NPS KT document………by…..Enayat Meer…[email protected]…..

(40)

40

NPS KT document………by…..Enayat Meer…[email protected]…..

(41)

41

NPS KT document………by…..Enayat Meer…[email protected]…..

(42)

42

NPS KT document………by…..Enayat Meer…[email protected]…..

(43)

43

NPS KT document………by…..Enayat Meer…[email protected]…..

(44)

44

NPS KT document………by…..Enayat Meer…[email protected]…..

(45)

45

NPS KT document………by…..Enayat Meer…[email protected]….. Remote Radisu Server Groups for load balance

(46)

46

NPS KT document………by…..Enayat Meer…[email protected]…..

(47)

47

NPS KT document………by…..Enayat Meer…[email protected]….. Thank You: Enayat Meer

References

Related documents

The Payment Terminal Setup Wizard that walks you though the basic 8-step process for configuring a DVMAX terminal to accept real-time credit and debit card payments.. Payments

Most of the settings can be configured using Group Policy Object (GPO) set- tings; others can be configured though the Security Configuration Editor; and some cannot be configured

Comparing Security Options: Continued • Securely generated per-frame keys • Strong AES block cipher Securely generated per- frame keys Securely distributed per- session

Through its exclusive broker CBRE, the owner of 30 prime acres in East Cobb referred to as Johnson Ferry Landing is seeking quality-oriented, well-capitalized developers to submit

Just last year, working with Local Emergency Planning Committees (LEPCs), regulatory agencies such as the Louisiana State Police (LSP) and the Louisiana Department of

The increase was mainly due to higher unrealised mark-to-market gain on revaluation of financial investments at FVTPL of RM451.1 million, realised loss on financial liabilities at

Normally this means that you can import a primary group (such as Domain Users) to EPiServer, but an LDAP user that has this group as primary group will not act as a member of

We obtained the lists of users in the security sensitive groups, which are Domain Administrator Group, Schema Administrator Group, Domain Guests Group, Server Operator Group,