Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

WLC Single sing on with out PEAP

I have

ACS (4.2)1113 series

2003 AD server and 4402 WLC

is there any way to integrate all this for single sign on process by adding computer on the ADgroup(wireless) . Note i don't have any certificate server and don't want to use any certificate in the network.

Help me out. need ur prompt reply


Re: WLC Single sing on with out PEAP

You could use LEAP or EAP-FAST for the user authentication. Just point the ACS server to look to AD for the username/password validation. There isn't a machine authentication option with these EAP methods but they also don't need certs.

New Member

Re: WLC Single sing on with out PEAP

I need machine authentication option. can i use peap without the certificate.


i want the users which are in wireless group in AD only access the wireless (this AD group inturn mapped with the ACS group)

Re: WLC Single sing on with out PEAP

If your clients are running Windows with Wireless Zero Config, then you have the option in the PEAP settings to disable the server certificate check. With that check disabled, then the only thing the client needs is a user id and password (to check against AD).

The Intel ProSET client also allows you to disable the server certificate check. I do not know about other clients.

CreatePlease login to create content