03-04-2007 11:26 PM - edited 02-21-2020 01:26 AM
Hi All,
I have a problem with the NAC deployment.
Currently i try to setup the lab for deploy 802.1x solution.
I have follow the step configure the NAD (switch), ACS,....but i still receive the error message that mention i don't have certificate in personal store as credential for authentication.
Anyone can help?
03-05-2007 06:46 AM
Hi,
CTA 802.1x supplicant uses only EAP-FAST.
So On the client you need to either uncheck "validate server certificate" on take the ACS Certificate/Root certificate of the CA Server and add it in the store. To add in the store use :-
ctacert /ui 5 /add "path to certificate" /store "root"
Regards,
Vivek
03-05-2007 05:02 PM
Hi,
Thanks for help, may i know how to disable "validate server certificate" on the CTA agent? For the CA, it is MUST be a root CA? if i plan to test it on lab environment, can i setup a standalone/standard CA?
Thanks
Chen
03-06-2007 05:26 AM
Chen,
You can setup a standalone CA or even use the self signed certificate from ACS.
Regards,
Vivek
03-06-2007 06:47 AM
Hi Vivek,
Thanks a lot, i will try it.
Thanks
Chen
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: