0D51Y00006EpDquSAFOkta Classic EngineAdministrationAnswered2026-01-11T09:00:34.000Z2019-05-10T20:31:24.000Z2019-10-29T19:36:45.000Z

bwoat (bwoat) asked a question.

Okta Radius server agent + Meraki Client VPN + built-in macOS VPN client

Can I up the Okta Radius server app to authenticate users connecting to my Meraki Client VPN using the macOS built-in VPN client? I have been trying to make this work but have not had any luck so far. Is this even possible?


BryanT.38843 likes this.
  • Hi Josh,

     

    Thank you for posting your question.

     

    You can install / configure the Okta Radius server agent and configure it with your Cisco Meraki VPN client to authenticate your users with your Okta org / On-prem AD domain, however I cannot confirm that the macOS built-in VPN client will be supported but as long as the Cisco Meraki VPN Client supports the built-in VPN Client , it should be supported as long as the macOS devices are domain joined and your users are members of your AD Domain.

     

    As per the below KB, Okta provides the Cisco Meraki Wireless Radius app that ca be used to integrate the Okta Radius server agent / Meraki Wireless VPN client, however the app is private an can be assigned to your organization upon your request which can be done by creating a case with Okta Customer Support:

    https://help.okta.com/en/prod/Content/Topics/integrations/meraki-radius-intg.htm

     

    Kind regards,

     

    Sergiu Costea

    Technical Support Engineer

    Okta Global Customer Care

    Expand Post
    Selected as Best
  • Hi Josh,

     

    Thank you for posting your question.

     

    You can install / configure the Okta Radius server agent and configure it with your Cisco Meraki VPN client to authenticate your users with your Okta org / On-prem AD domain, however I cannot confirm that the macOS built-in VPN client will be supported but as long as the Cisco Meraki VPN Client supports the built-in VPN Client , it should be supported as long as the macOS devices are domain joined and your users are members of your AD Domain.

     

    As per the below KB, Okta provides the Cisco Meraki Wireless Radius app that ca be used to integrate the Okta Radius server agent / Meraki Wireless VPN client, however the app is private an can be assigned to your organization upon your request which can be done by creating a case with Okta Customer Support:

    https://help.okta.com/en/prod/Content/Topics/integrations/meraki-radius-intg.htm

     

    Kind regards,

     

    Sergiu Costea

    Technical Support Engineer

    Okta Global Customer Care

    Expand Post
    Selected as Best
    • bwoat (bwoat)

      Thank you so much for your reply Sergiu! One more quick questions. Is this setup possible without using AD? My goal is to get rid of AD and authenticate my VPN and WiFi directly to Okta.

      Thanks again.
  • ScottF.86572 (Customer)

    That link no longer works, and I cannot find any reference to a Meraki Radius App in my searching. Is there any updated documentation available?

  • m2jv4 (m2jv4)

    I too am looking for the Cisco Meraki Wireless RADIUS app. Any more info that Okta support can provide?

  • BryanT.38843 (Customer)

    I can put together a guide for this. Standby everyone!

    • bwoat (bwoat)

      Bryan,

      Thank so much for putting this together! I can't wait to give it a try. This will work for us for now I believe but I can imagine that a logical next step for us will be to eliminate all on prem servers altogether. Any thoughts on how to make Meraki authenticate against Okta in an all-cloud solution? Again thanks so much for this and I will let you know how it goes!

      Josh
      Expand Post
  • BryanT.38843 (Customer)

    I suspect the only way we'll get this working "all-cloud" is if Meraki and Okta engineering teams worked together on it as they have with other VPN solutions. I know Meraki Client VPN needs some love from their team so perhaps it's already in the works. I'm a fellow customer/admin like you so we'll just have to wait and see! Good luck and feel free to ping me with questions.

  • m2jv4 (m2jv4)

    Thank you all for your replies. I can confirm Okta's RADIUS connectors will work to authenticate into Meraki VPN using built in macOS and Windows 10 VPN clients; I've had this exact setup deployed for well over 1/2 a year now (including push). Your guide is excellent Bryan; I trust it'll help many going forward.

     

    What I do not yet have functioning is RADIUS authentication for WiFi using Meraki equipment though and the mention of 'wireless' had me hopeful.

    Expand Post
This question is closed.

Recommended content

No recommended content found...