This RADIUS server solution uses NPS to perform centralized authentication, authorization, and accounting for wireless, authenticating switches, remote access dial-up or virtual private network (VPN) connections.
This RADIUS server solution uses NPS to perform centralized authentication, authorization, and accounting for wireless, authenticating switches, remote access dial-up or virtual private network (VPN) connections. When you use NPS as a RADIUS server, you configure network access servers, such as wireless access points or VPN servers, as RADIUS clients in NPS.
NPS uses an Active Directory Domain Services (AD DS) domain or the local Security Accounts Manager (SAM) user accounts database to authenticate user credentials for connection attempts.
Features:
Supports WPA2-Enterprise (preferred) or WPA-Enterprise, and either AES (preferred) or TKIP encryption cipher, depending on which versions are supported by your wireless client computer network adapters.
Active Directory or local security accounts manager for authentication
Allow or deny connections to specific wireless networks that you specify by network type and Service Set Identifier (SSID)
Allow or deny connections to infrastructure networks
Allow or deny connections based on AD group membership
Machine certificate authentication using trusted certs
Built-in support for IEEE 802.1X Authenticated Wireless Access with PEAP-MS-CHAP v2
Accounting logging
Unlimited number of RADIUS clients (APs) and remote RADIUS server groups
Configure RADIUS clients (APs) by specifying an IP address range.
Single sign-on solution
RADIUS standard specified by the Internet Engineering Task Force (IETF) in RFCs 2865 and 2866
Highlights
Authenticate wireless users and control access to your wireless APs based on user, IP, device, AD groups and more
Unlimited number of RADIUS clients (APs) and remote RADIUS server groups
Single sign-on solution. Allow users to logon to wireless APs automatically
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier for more details.
You pay by the hour based on the EC2 instance type you choose to run this RADIUS server on Windows Server 2019. Pricing is not tiered by features. Every option delivers the same software; the hourly rate reflects the compute size you select. Options range from small burstable instances like t3a.nano and t2.micro to memory-, compute-, and storage-optimized families such as r5, c5, i3en, and large metal instances. Pick a smaller instance for light authentication loads and a larger one for heavier demand. Your cost scales with the instance size and hours the server runs.
Top-of-mind questions for buyers
What does one hourly unit cover for this RADIUS server?
One unit is one running EC2 instance of the size you pick, billed per hour. It bundles the RADIUS NPS software and Windows Server 2019. Each running instance meters separately. You pay for the hours the instance runs, regardless of how many access points or RADIUS clients authenticate through it.
Am I charged when the RADIUS server instance is stopped or idle?
Software charges meter running time only. A stopped instance stops accruing the hourly software fee. You may still pay underlying AWS storage costs for the instance volume while it is stopped. Charges resume when you start the instance again.
Does adding more wireless access points or users raise my hourly cost?
No. Cost depends only on the instance size and hours it runs, not on client count. The software supports an unlimited number of RADIUS clients and remote server groups. To handle heavier authentication demand, choose a larger instance rather than expecting per-client charges.
cloudinfrastructureservices.co.uk
Helpful?
Vendor refund policy
We do not currently support refunds, but you can cancel at any time.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Latest OS Patches installed. Simply run Windows update to install latest Microsoft OS patches
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Supports WPA2-Enterprise and WPA-Enterprise with AES or TKIP encryption cipher, and IEEE 802.1X Authenticated Wireless Access with PEAP-MS-CHAP v2
Centralized User Authentication
Uses Active Directory Domain Services (AD DS) or local Security Accounts Manager (SAM) user accounts database for centralized authentication, authorization, and accounting
Access Control Policies
Allows or denies connections based on network type, Service Set Identifier (SSID), infrastructure networks, AD group membership, and machine certificate authentication using trusted certificates
RADIUS Client Scalability
Supports unlimited number of RADIUS clients (APs) and remote RADIUS server groups with ability to configure clients by specifying IP address ranges
Accounting and Logging
Provides accounting logging capabilities and implements RADIUS standard as specified by IETF in RFCs 2865 and 2866
Cloud Directory Identity Management
Centralize access across all identities with integrations to AWS Identity Center, Google Workspace, Microsoft 365, Active Directory, HRIS platforms, and network infrastructure resources
Single Sign-On and Multi-Factor Authentication
Frictionless, secure access to AWS resources and over 900 pre-built applications with automated user provisioning to Amazon IAM Identity Center and group-based permissions
Cross-Operating System Server and Device Management
Deploy, manage, and remotely assist AWS servers and corporate devices across Windows, macOS, iOS, Linux, AWS Linux AMIs, and Android from a single cloud platform
Passwordless and Conditional Access
Enable phishing-resistant access with passwordless SSO, password management, and conditional access controls to ensure only specific users on trusted devices and networks can access AWS resources
Unified Platform with Zero Trust Capabilities
Combine cloud directory identity management, access management, and cross-OS server and device management with enhanced IAM and device management controls to support Zero Trust security goals
Zero-Trust Security Architecture
Network concealment powered by Zero-Trust architecture with granular and dynamic access authorization to reduce attack surface and security risks
Software Defined Perimeter Implementation
Based on CSA Software Defined Perimeter (SDP) standard specification for enterprise remote access security
Distributed Security Gateway Infrastructure
Distributed security gateways with clustering capabilities to handle concurrent connections and eliminate performance bottlenecks associated with traditional VPN solutions
Multi-Platform Client Support
Support for multiple client platforms including WEB browser, Windows, MacOS, Android, iOS, and Linux with integrated office application virtual portal
Identity Authentication and Single Sign-On
Identity authentication with dynamic trust evaluation and Single Sign-On (SSO) integration for streamlined access management
Poorna's RADIUS Server - Wireless Authentication NPS on Windows 2019 Review
Reviewed on May 12, 2023
Review provided by G2
What do you like best about the product?
RADIUS server is a fantastic Client-Server Protocol. It enables secure authentication to the NPS domain servers. Device authentication over the WIN 2019 servers is safe and optimized.
What do you dislike about the product?
The implementation or set up of the configuration is a bit complex, and sometimes, if a trouble shoot has to be performed, it is tough. Debugging the errors and resolving them takes a lot of time and effort.
What problems is the product solving and how is that benefiting you?
RADIUS Server - Wireless Authentication NPS on Windows 2019 is a secure and easy-to-utilize tool. The authentication and accounting requests are made and completed quickly.
Sidhant A.
RADIUS Server is more useful when you are getting started with a Wireless Authentication Solution
Reviewed on Sep 27, 2022
Review provided by G2
What do you like best about the product?
Ease of configuration and compatibility with services like Active Directory Certificate Services.
What do you dislike about the product?
Its complex to manage and someone configuring this solution must document all the steps for someone to later follow.
What problems is the product solving and how is that benefiting you?
Authentication wireless devices and a rollout for less than 500 users in the organization
Mitch H.
Radius
Reviewed on Jul 27, 2022
Review provided by G2
What do you like best about the product?
Radius allows for secure authentication of domain devices through NPS. It allowed me to provide secondary forms of device authentication using domain certificates and user authentication.
What do you dislike about the product?
Radius can be a complicated setup that is hard to troubleshoot where errors happen in the chain, adding this complexity into an already complex system can lead to a very complicated end setup that is hard to maintain for people than the designer.
What problems is the product solving and how is that benefiting you?
It allows me to provide certificate based secondary authentication to my devices when they are logging in remotely. It has increased our ability for providing managed connectivity securely to our fleet.