Creating the Secure SSID

To configure the onboarding SSID, navigate to: For ZoneDirector and SmartZone, go to the Wireless LANS section of the controller UI; for Unleashed, go to Wifi Networks to create the WLAN.
Instructions slightly modified. New screenshot for Unleashed.
  1. Name the SSID.
  2. Type=Standard Usage.
  3. Authentication Option Method=802.1x EAP.
  4. Encryption Option Method=WPA2 (not applicable for Unleashed once the 802.1x EAP authentication option method is selected).
  5. Encryption Option Algorithm=AES (not applicable for Unleashed once the 802.1x EAP authentication option method is selected).
  6. Select the Cloudpath RADIUS authentication server.
  7. Select the Cloudpath RADIUS accounting server (required only if you are using Cloudpath onboard RADIUS Accounting and Connection Tracking). Note: For ZoneDirector, you need to expand the Advanced Options section of the screen to locate the drop-down selection for the accounting server.
    Anna: I've added Accounting server for all 3 controller types to this section now.
  8. Leave the defaults for the remaining settings and click OK.

    Configure Secure SSID on the ZoneDirector controller

    Select RADIUS Accounting Server on ZoneDirector

    Configure Secure SSID on the SmartZone controller

    Configure Secure SSID on the Unleashed controller

    The SSIDs are now configured on the wireless LAN controller. When the user connects to the onboarding (open) SSID they are redirected to the Cloudpath web page. When the user successfully completes the enrollment process, they are migrated to the secure SSID.