Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 
New Member

Configuring WLC 5508 and Iphone/blackberry to use certificates

Hello, we would like to configure additional wlan for iphone/blackberry internet access. The goal is to have internal users (Active Directory users) using blackberry connecting to internal wireless network and update their mailboxes. We would like to avoid roaming charges for blackberry data traffic (email updates) but on the other hand we have to provide some way of authentication to blackberry/iphone so we know that only corporate blackberry/iphones can connect to internal network and update emails. It would be greatly appreciated if someone point me to configuration docs covering this issue or give me quick overview what has to be done to make this happening. We have radius server available if needed.

Thanks so much.


New Member

Re: Configuring WLC 5508 and Iphone/blackberry to use certificat

With PEAP, you set up a Windows Server box as a root Certificate Authority and install the CA on all clients. Then, clients simply log on with their AD credentials.

EAP-TLS is much more secure because it requires a unique certificate generated by the CA installed on each client.

CreatePlease to create content