Redundant Network Policy Servers and how to implement them?

Posted on 2014-08-14
Last Modified: 2014-08-22
We currently have one Network Policy Server role installed on a domain controller, that is used to authenticate wireless clients onto our domain from a Cisco Aironet WAP.

How do we implement redundancy in case that NPS server goes down and can not authenticate? What are our options? I have read of load balancing NPS servers, but would prefer other options.

Do they have a hot standby option for the NPS role?
Question by:meade470
    LVL 20

    Assisted Solution

    The way I've done it in the past was to run a schedule task to export the NPS configuration on the primary server, and on the secondary server I had a similar task scheduled to import the file that was created by the first. This way, every hour the two NPS servers essentially synchronized settings so you would only need to configure one server.
    On networking equipment, you can specify multiple radius servers so that if one doesn't respond, it will try the other.
    Below is a link explaining the commands for export/import.
    LVL 2

    Author Comment

    Thanks rauenpc - how often does the configuration change? is it needed to keep loading the configuration?
    LVL 20

    Accepted Solution

    Only as often as you change it. If you only have, say, a couple policies and a handful of radius clients, then just configure the two NPS servers and configure your network devices with both radius servers and move on.
    In the environments that I set this up, there were usually a few changes made per month when it comes to policies and adding clients, so to reduce mistakes and ensure consistency I setup the scheduled tasks.

    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    Looking for New Ways to Advertise?

    Engage with tech pros in our community with native advertising, as a Vendor Expert, and more.

    I'm a big fan of Windows' offline folder caching and have used it on my laptops for over a decade.  One thing I don't like about it, however, is how difficult Microsoft has made it for the cache to be moved out of the Windows folder.  Here's how to …
    Container Orchestration platforms empower organizations to scale their apps at an exceptional rate. This is the reason numerous innovation-driven companies are moving apps to an appropriated datacenter wide platform that empowers them to scale at a …
    Hi everyone! This is Experts Exchange customer support.  This quick video will show you how to change your primary email address.  If you have any questions, then please Write a Comment below!
    Internet Business Fax to Email Made Easy - With eFax Corporate (, you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…

    779 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    21 Experts available now in Live!

    Get 1:1 Help Now