Skip to main content
WiFi Pass support both Meraki’s Identity PSK without RADIUS and Identity PSK with RADIUS (Easy PSK) features integration. Each registrant receives a unique personal passphrase provisioned on the SSID via the Meraki iPSK API (for ipsk-without-radius) or pushed directly to RADIUS (ipsk-with-radius).

Requirements

Requires Wi-Fi 5 Wave 2 or newer access points:
GenerationSupported Models
Wi-Fi 5 Wave 2MR20, MR30H, MR33, MR42, MR42E, MR52, MR53, MR53E, MR70, MR74, MR84
Wi-Fi 6MR28, MR36, MR36H, MR44, MR46, MR46E, MR56, MR76, MR78, MR86, MR45, MR55
Wi-Fi 6EMR57, CW9162I, CW9164I, CW9166I
Older MR access points (Wi-Fi 4 / Wi-Fi 5 Wave 1) do not support Identity PSK. All APs in the network must meet the minimum hardware and firmware requirements.
  • Meraki firmware MR 30.1 or later on all APs
  • At least one Group Policy configured in the network (Network → Group Policies)
  • Available SSID
  • API mode required when ipsk-without-radius is used

Guest Experience

1

Registers

User registers via any onboarding channel.
2

Provisioned

A unique passphrase is created for the SSID.
3

Network details delivered

The SSID and passphrase are delivered to the user. The QR code allows one-tap connection on supported devices. These details can optionally be shown on-screen at registration time and sent through one of the enabled communication channels. See Messaging Services.
4

Connects

User connects using standard WPA2 — no app, no profile required.

Limits

For deployments exceeding 5,000 credentials, Identity PSK with RADIUS (Easy PSK) should be used.

Manual Configuration (Legacy / Non-API Mode)

Only Identity PSK with RADIUS (Easy PSK) is supported in legacy mode.
If you connected Wiacom via the Meraki API, SSID configuration is pushed automatically — skip this section.
RADIUS server FQDN/addresses, ports and shared secrets are region-specific. Obtain all values from the Wiacom admin panel or the Wiacom team before proceeding.
Log in to dashboard.meraki.com, navigate to Wireless → Access Control, and select your SSID.

Access Control

SettingValue
SSID statusEnabled
SecurityIdentity PSK with RADIUS (Easy PSK)
Splash pageNone (direct access) - Ask Wiacom if you want to enable it
Client IP and VLANAs preffered, per your network config

RADIUS Authentication Servers

Under RADIUS, click Add server and add two entries:
#HostAuth PortSecret
1<RADIUS_SERVER_1>1812<RADIUS_SHARED_SECRET>
2<RADIUS_SERVER_2>1812<RADIUS_SHARED_SECRET>
Click Save Changes. Follow this procedure for adding Meraki devices into the Wiacom platform.

Troubleshooting

Ensure the SSID is set to Identity PSK without RADIUS and at least one Group Policy exists in Network → Group Policies.
Check the credential is not suspended or expired under WiFi Pass → Credentials.
Check the expiry timestamp in the credential record. The user can re-register to receive a new passphrase.