Networking Forums

Networking Forums > Wireless Networking > Wireless Networks > 802.1x EAP-TLS wireless networking - connect before logon

Reply
Thread Tools Display Modes

802.1x EAP-TLS wireless networking - connect before logon

 
 
Dr Zoidberg
Guest
Posts: n/a

 
      11-01-2005, 02:49 PM
Hi there.
I've set up a test lab using a windows XP SP2 laptop with built in W-LAN
card using EAP-TLS authentication and WPA encryption to connect to a Cisco
access point.
The authentication is done using a Windows 2000 server using IAS and running
as a certificate authority.

It's working happily with users requesting a certificate from the CA via the
web interface and they can then connect after they have logged onto the
laptop (using cached credentials as there is no connection to the network
yet).

Can anyone point me in the direction of a guide to getting it authenticating
the client PC (again via certificate) rather than the user and establishing
the wireless connection before the user has logged on so that logon scripts
etc will run reliably

Thanks

--
Alex

Hermes: "We can't afford that! Especially not Zoidberg!"
Zoidberg: "They took away my credit cards!"

www.drzoidberg.co.uk www.ebayfaq.co.uk


 
Reply With Quote
 
 
 
 
Martin Bodenstedt
Guest
Posts: n/a

 
      11-02-2005, 06:22 AM
Dr Zoidberg schrieb:
> Hi there.
> I've set up a test lab using a windows XP SP2 laptop with built in W-LAN
> card using EAP-TLS authentication and WPA encryption to connect to a Cisco
> access point.
> The authentication is done using a Windows 2000 server using IAS and running
> as a certificate authority.
>
> It's working happily with users requesting a certificate from the CA via the
> web interface and they can then connect after they have logged onto the
> laptop (using cached credentials as there is no connection to the network
> yet).


To logon to the IAS before user logon the laptop must have a certificate
validating the computer account as well as the user account.

Look into the IAS logs to see any messages relating to failed computer
authentication.

Also, you should use the zero configuration service of XP to manage the
wlan card...

At our office, we do this successfully (almost the same setup as yours:
XPSP2 laptops (centrino) logging on to a network of cisco ap's using an
IAS server for 802.1x authentication...).


--
Martin Bodenstedt

(www.die-bodenstedts.de / www.maboko.de)
 
Reply With Quote
 
Dr Zoidberg
Guest
Posts: n/a

 
      11-02-2005, 08:59 AM
Martin Bodenstedt wrote:
> Dr Zoidberg schrieb:
>> Hi there.
>> I've set up a test lab using a windows XP SP2 laptop with built in
>> W-LAN card using EAP-TLS authentication and WPA encryption to
>> connect to a Cisco access point.
>> The authentication is done using a Windows 2000 server using IAS and
>> running as a certificate authority.
>>
>> It's working happily with users requesting a certificate from the CA
>> via the web interface and they can then connect after they have
>> logged onto the laptop (using cached credentials as there is no
>> connection to the network yet).

>
> To logon to the IAS before user logon the laptop must have a
> certificate validating the computer account as well as the user
> account.
> Look into the IAS logs to see any messages relating to failed computer
> authentication.
>
> Also, you should use the zero configuration service of XP to manage
> the wlan card...
>
> At our office, we do this successfully (almost the same setup as
> yours: XPSP2 laptops (centrino) logging on to a network of cisco ap's
> using an IAS server for 802.1x authentication...).


Yep , got it working last thing yesterday using group policy to
automatically generate certificates.

Thanks

--
Alex

Hermes: "We can't afford that! Especially not Zoidberg!"
Zoidberg: "They took away my credit cards!"

www.drzoidberg.co.uk www.ebayfaq.co.uk


 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
cannot connect to router logon screen Jeff@nospam.invalid Wireless Networks 0 08-25-2010 02:47 PM
Windows ME and Wireless Networking - Failure to Connect Robin CB Windows Networking 16 05-02-2008 08:34 PM
Wireless networking issues - not seen/can't connect EGMcCann Wireless Networks 2 10-24-2007 04:18 PM
problem connect wireless connection before user logon in WXPSP2 angelmoreno27 Wireless Internet 0 05-23-2007 04:03 PM
re logon in networking. melvin Windows Networking 0 09-08-2003 08:22 PM



1 2 3 4 5 6 7 8 9 10 11