cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1141
Views
0
Helpful
1
Replies

Meraki local authentication

Ajchand
Community Member

Hi,

For Meraki local authentication with an LDAP server what are the Pre-requisites ? and is certificate must or is it optional if i am going with only LDAP & not LDAPs ?

1 Reply 1

aleabrahao
Meraki Community All-Star
Meraki Community All-Star

Requirements

  • All MR access points in the Network must be running MR 27.1+ firmware*

  • An admin account credential for the LDAP server with read-only permissions has to be input as part of dashboard configuration

  • If an Active Directory-based LDAP server is used, it must support an LDAP bind operation

  • The LDAP server must support STARTTLS

  • CA certificate used to sign the LDAP server's private key must be uploaded to the dashboard. This certificate is used by an MR to verify the authenticity of the LDAP server.

  • The LDAP server’s certificate must have a subjectAltName field that matches the Host address configured on the dashboard (either IP address or FQDN)

  • Wireless clients must trust the certificate presented by the MR which is signed by a well-known Certification Authority QuoVadis for the purposes of validation of the MR for certificate-based authentication.

    https://documentation.meraki.com/MR/Encryption_and_Authentication/Meraki_Local_Authentication_-_MR_802.1X

I am not a Cisco employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
Review Cisco Networking for a $25 gift card