PEAP MS CHAPv2

Unanswered Question
Oct 17th, 2007

Hi,

we have the following implementation:

Cisco Access Points mainly 1200 series, Cisco ACS v.3.3, and MS Active Directory.

I've

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 4 (1 ratings)
Loading.
irisrios Tue, 10/23/2007 - 06:24

Clients joining ssid wlpaltenpeap will authenticate to 170.64.216.164 primarily and fail over option is 170.64.216.166 in case if primary doesnt respond. aaa group server radius rad_eap statement implies the list of servers under the group rad_eap.aaa authentication login eap_methods group rad_eap statement implies that SSID configured with eap_methods authenticate against the server listed under rad_eap as a part of login process. Regarding the question of certificates Client side certificates are not needed. But the server's certifcates( Self generated certificates) should be present in the Trusted Root CA list of client.

jorge.s Sat, 10/27/2007 - 15:26

What do you mean by "Trusted Root CA list of client."

?

Actions

This Discussion

 

 

Trending Topics - Security & Network