Certificates in RADIUS server
Even though I think the configuration of my NPS Server (using RADIUS) is correct, I have 'This network requires certificate' message during connection to my wireless network. I've used this site http://araihan.wordpress.com/2009/11/11/windows-server-2008-how-to-configure-network-policy-server-nps-or-radius-server/ to configure NPS. NPS Server is on a DC. DC has a valid certificate based on 'Controller Domain' template. Every user who is in domain has his own user certificate which is automatically installed when it connects to the domain using wire. I would like to use these certs instead of typing key to the network. For Allowed EA Types I've choosen 'MS Protected EAP (PEAP)' with suboptions: 'MS Smart Card or other certificate' and 'MS Secured Password'. In Configuring Authentication Methods window I've added 'MS: SmartCard or other certificate type'. To be honest I cannot distinguish what's the difference between 'Allowed EA types' and 'Authentication Methods'. That is all. On the AP I've typed IP of a server (DC), choosen WPA-Enterprise type with TKIP or AES. Unfortunately even when I'm on a user account with valid user certificate installed I cannot connect to the network. Please, help
November 13th, 2010 7:41am

First thing you should be aware of, is the type of EAP you want to use. On NPS you can choose different types, PEAP (protected EAP), which has to sub-options of authentication. You can do MS-CHAPv2 with PEAP, which requires username and password. Or you can use the smartcard or other certificate option which would be PEAPv1 / PEAP-TLS. I think the part where you are confused is under the condition tab in NPS policy, where it gives you the option of EAP types and 802.1x. All you need in the condintion tab is a NAS Port type, select IEEE 802.11 and Other Wireless. The more conditions you have selected the more stringet it is. What type of access points are you using? Is there a vlan scheme involved? Also how do the users logon with the certificate..via a smartcard??? Bryce"I wish I knew"
Free Windows Admin Tool Kit Click here and download it now
November 16th, 2010 6:05pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics