ACS 5.2 Self Signed Certificate no need for client
If you're using PEAP MSCHAPv2 for wireless authentication with ACS configured for self-signed certificate. The users can connect without certificate because they are not validating the server certificate. This is normal but not a secure method. If you want them to validate the server certificate. If you have two options:
1.] Export the self signed certificate from ACS and install it on all the clients.
2.] Get the third-party CA certificates and install the root cert on all the clients.
In both the options, you've to check validate server certificate option on the client under Wirless 802.1x properties.
I'm providing few configuration examples for the same. You may go through it to have better understanding.
PEAP under Unified Wireless Networks with ACS 5.1 and Windows 2003 Server
Transferring Crash file from standby:
Login to the Active WLC in HA.
(Cisco Controller) >transfer upload datatype crash
(Cisco Controller) >transfer upload filename <Desired filename>
(Cisco Controller) >transfer up...
This is the start of a display filter cross reference between Wireshark and OmniPeek.
The 1st installment is a table of advanced filters. More filters will be added as time allows.
It is a living doc, so check back for changes every so often
Please feel ...
I have created a Powershell script to automatically add a Wireless Guest User on Cisco WLCs. (tested on 2500 Series)
The script should be completely self explanatory.
Powershell SNMP Module (Install-Module -Name SNMP)
SNMP Write Access to...