cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
481
Views
0
Helpful
3
Replies

WLC Single sing on with out PEAP

pandapritam
Level 1
Level 1

I have

ACS (4.2)1113 series

2003 AD server and 4402 WLC

is there any way to integrate all this for single sign on process by adding computer on the ADgroup(wireless) . Note i don't have any certificate server and don't want to use any certificate in the network.

Help me out. need ur prompt reply

3 Replies 3

dancampb
Level 7
Level 7

You could use LEAP or EAP-FAST for the user authentication. Just point the ACS server to look to AD for the username/password validation. There isn't a machine authentication option with these EAP methods but they also don't need certs.

I need machine authentication option. can i use peap without the certificate.

or

i want the users which are in wireless group in AD only access the wireless (this AD group inturn mapped with the ACS group)

If your clients are running Windows with Wireless Zero Config, then you have the option in the PEAP settings to disable the server certificate check. With that check disabled, then the only thing the client needs is a user id and password (to check against AD).

The Intel ProSET client also allows you to disable the server certificate check. I do not know about other clients.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card