I have setup and tested fine a network with EAP-TLS using microsoft cert server with an AP direct to ACS, handing off to AD for user auth. I had already installed Cisco Secure Services Client, which is great, but needs ot be purchased for wireless functions... So now to the problem....
I want to run without a supplicant, or at least a free supplicant (as I will have trouble convincing management for $50 a head for it). I cannot get it to work with just XP SP2 - am I doing something wrong or do I require an add-on, or could it be to do with my wireless card/ drivers not tieing in well enough with cisco extensions?
Re: EAP-TLS with windows - no supplicant required?
Doesn't even begin to negotiate with the AP for EAP (like it doesn't even attempt - maybe it can't detect the network type - windows says may be out of range or some other generic message) - other attempts the AP in debug say that windows is not responding properly (wpaie not found) like wondows didn't figure out the cipher scheme and responded incorrectly....
I don't think its an eap thing (not ACS, AD,) but wireless negotiation thing.
I just installed the intel proset full suite (not just drivers) which includes a dot1x supplicant and this also works fine like Cisco SSC.
Transferring Crash file from standby:
Login to the Active WLC in HA.
(Cisco Controller) >transfer upload datatype crash
(Cisco Controller) >transfer upload filename <Desired filename>
(Cisco Controller) >transfer up...
This is the start of a display filter cross reference between Wireshark and OmniPeek.
The 1st installment is a table of advanced filters. More filters will be added as time allows.
It is a living doc, so check back for changes every so often
Please feel ...
I have created a Powershell script to automatically add a Wireless Guest User on Cisco WLCs. (tested on 2500 Series)
The script should be completely self explanatory.
Powershell SNMP Module (Install-Module -Name SNMP)
SNMP Write Access to...