Is it possible to use OpnSense Freeradius plugin for external Wireless Access Points WPA Enterprise authentication ?
Sure, set up your AP's as "clients" in FreeRadius, set up users and then to WPA2 Enterprise :)
Thanks for reply :).
So, I don't need to add server in
System/Access/Servers in this case ?
I just need to add freeradius plugin and configure it in
Services/FreeRADIUS (including users and clients-WAPs) ?
- Any firewall rules needed ?
- What IP address to put on my clients ? Is OpnSense listening for radius messages on all its interfaces ?
You have to allow 1812 udp If not yet. It listens in all IPs, yes
Any documentation?
Simmilar to my tutorial: https://docs.opnsense.org/manual/how-tos/interface_wireless_internal.html
Just with another NAS (you need an external IP and you need to open the port).