White Papers

Using Windows Active Directory For Account Authentication to PS Series Groups 21
Note: It is recommended to add RADIUS Clients for each of the enabled PS array IP
ports. This includes the PS Series group IP and all the enabled controller port IPs on the
arrays in the group. This allows CHAP connections through multiple ports for
redundancy and performance benefits.
Follow these steps to configure RADIUS with CHAP authentication:
Configuring the Windows Server 2008 NPS
On the Windows Server 2008 NPS server navigate to NPS Policies Connection
Request Policies
Open the built-in default policy Use Windows authentication for all users, (Figure
17).
Figure 17: Built-in Policy Use Windows authentication for all users
Open the policy and verify the policy is enabled. Under Network connection method,
be sure the Type of network access server radial button is selected and Unspecified
is shown in the drop down box.
Select the Settings tab. In the settings window check the box next to Encrypted
authentication (CHAP) and uncheck everything else, (Figure 18).