cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
326
Views
0
Helpful
2
Replies

EAP-TLS possible problem

knik-knik
Level 1
Level 1

Hi everyone, were using EAP-TLS for wlan security. we got hundreds of wlan users, what will happen if the client certificate expires? what can we do avoid it?

thanks

2 Replies 2

Scott Fella
Hall of Fame
Hall of Fame

I too would like to hear some ways to get around that. I have never had experience with the certification expireing, but what I have been told is that you can have GPO have the clients renew the certificate at a given time before expiration. They say that it should be configured to have clients renew at half life of the cert expiration. GPO as I was told is the only way to get around having to manually enrol of a new certificate.

-Scott
*** Please rate helpful posts ***

ivosevicd
Level 1
Level 1

Hi,

there is an option under the certificate template configuration, that renews client certificates when they expire.

See point 15 under "Create the Certificate Template for the ACS Web Server" on this link:

http://www.cisco.com/en/US/partner/products/ps6366/products_configuration_example09186a00807917a6.shtml

Hope this helps!

Review Cisco Networking products for a $25 gift card