I have set up a 350 AP with 252 PCMCIA clients running Win2k prof. I am using ACS 3.0 running on an 2000 member server and set up for authentication against the Win2k domain. However, clients cannot authenticate. In the failed attempts log on ACS I get the message: "Radius extension DLL rejected user". Has anyone seen this before?
I'm sorry for the cryptic title of the message, it should be "Radius extension dll". It's also an error stating 252 PCMCIA clients, It should have been 352..
Anyway, I have sorted this one out. It seems that in my case all the Cs-services must run under local system account. This could be read from my domain security log which showed an event 577 for each failed attempt. This indicates an attempt to act as part of the operating system. The appropriate solution to this is using local system account, and it works.
IntroductionHow to use the Wireless LAN Controller Configuration Analyzer (WLCCA)
Javier Contreras is a Senior Tech Lead for the Wireless Business Unit in Cisco, with over 2 decades of experi...
< PRE >
(#)For this reason being that : - application that doesn't use multicast, sends one copy of each packet ( data unit of traffic at layer 3 ) to each client (" who seeks the traffic ).- application that does use multicast, sends ...
Transferring Crash file from standby:
Login to the Active WLC in HA.
(Cisco Controller) >transfer upload datatype crash
(Cisco Controller) >transfer upload filename <Desired filename>
(Cisco Controller) >transfer up...