Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

PEAP MSCHAPv2 failed

Hi Sir,

I tried to implement PEAP on wireless LAN. Have configured the ACS 3.3 to slef generate Digital Cert prior to enable PEAP MSCHAPv2 on the ACS Global Authentication menu. However I failed to get the user authenticated. Output of the debug dot11radio on the AP is as follows:

May I know what I might have done wrong or missed out?

Thank you.

Delon

1 REPLY
Super Bronze

Re: PEAP MSCHAPv2 failed

Hi

Are you using both machine and user authentication?

As you're using self generated certificates, the client doesn't trust the cert by default.

For computer authentication (done at startup if you are using built-in Windows wireless config utilities) you need to have the cert from the ACS in the 'Local Computer Store'.

For user auth, you need it in the user's own certificate store.

Regards

Aaron

Aaron Please remember to rate helpful posts to identify useful responses, and mark 'Answered' if appropriate!
129
Views
0
Helpful
1
Replies
CreatePlease to create content