Empty certificate on iPhone iOS 7 when password request should be done
We have an issue where MobileIron MDM joined iPhone clients recieves an empty certificate instead of new password question, when they have changed the domain password from their PC clients. We also have this issue on iPhones that are not joined to MobileIron but there it seems to be more intermittent.
- A client is requested to change his password in the windows domain. - When he later on try to connect to the wireless infrastructure with the same user id on his iphone he receives an empty certificate. And when he accept it the phone tries a couple of times and then stops instead of a request for new password.
Wireless infrastructure Cisco WLC 5508 with 220.127.116.11 (tested with 7.0.235 and 7.3 with the same result) AP's 3502 Encryption WPA2 AES Authentication 802.1x PEAP MS-CHAPv2 Microsofts IAS
And so far we have only seen this on iOS 7 devices. iPhones and iPads. No issues with Android. Its possible to force this problem on iPhones that are not joined to MobileIron by cancel the password request and then try to connect to the network again. Then it will try to connect without success and after a while the empty certificate is shown.
Lot of things here that can cause the problem I presume.. But if anyone have any tips it would be much appreciated!
Transferring Crash file from standby: Login to the Active WLC in HA.
From CLI: (Cisco Controller) >transfer upload datatype crash (Cisco
Controller) >transfer upload filename (Cisco
Controller) >transfer upload mode tftp (Cisco Controller) >transfer
This is the start of a display filter cross reference between Wireshark
and OmniPeek. The 1st installment is a table of advanced filters. More
filters will be added as time allows. It is a living doc, so check back
for changes every so often Please feel f...
I have created a Powershell script to automatically add a Wireless Guest
User on Cisco WLCs. (tested on 2500 Series) The script should be
completely self explanatory. Prerequisites: Powershell SNMP Module
(Install-Module -Name SNMP) SNMP Write Access to y...