Wireless Computers Bound to AD Authentication

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on
01-19-2017
05:14 AM
- last edited on
03-04-2025
08:02 AM
by
kh-richa_mig
So the issue is this. We bind the iMacs to our AD server. Users can log in perfectly on Ethernet but will not authenticate on Wireless.
Am I missing something here?
- Labels:
-
Jamf Pro

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 01-19-2017 05:36 AM
Two things come to mind.
1. When you are connected to the wireless are you using the same DNS as Ethernet? Is the domain name resolvable?
2. When on the wireless can you contact all of the AD servers?

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 01-19-2017 05:44 AM
- All DNS servers are the same on both
- I am able to ping both AD servers just fine
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 01-19-2017 07:15 AM
Sounds like you're not creating a mobile account at login. check the users & groups in system preferences, you should see mobile listed under their name.
If you're referring to a first time login (freshly imaged system), are you using a wireless profile? could be something not setup properly with that, check your certs, ensure use as a login window configuration is selected, and use directory authentication.

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 01-19-2017 12:14 PM
Hi @m.higgins,
Are you using a radius server to issue certs? Does your Wi-Fi config profile include the needed certs? We're working through the same issue here.

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 01-20-2017 01:07 AM
Hi @rqomsiya
We aren't using a radius server but I am in the process of setting one up. Although with zero radius knowledge it is not as straightforward as I had hoped

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 03-06-2017 02:20 PM
Hi @m.higgens
We are using radius and found that we needed to push out two configurations, the wifi certificate via Configuration Profile as well as a Network configuration that was populated with a service account to get our shared Cart laptops onto the WiFi and available for any AD user log in.
