Networking Forums

Networking Forums > Wireless Networking > Wireless Internet > PEAP and Group Policy

Reply
Thread Tools Display Modes

PEAP and Group Policy

 
 
Kevin Lancaster
Guest
Posts: n/a

 
      06-23-2004, 03:44 PM
I quote from the "Microsoft Windows Small Business Server 2003
Administrators Companion" book:-

"Although PEAP provides great wireless security and is easier to
implement than EAP-TLS authentication, there are two significant
drawbacks. The first is that you won't be able to remotely administer
wireless clients unless someone's logged on. The second is that Group
Policy Computer Configuration won't work."

Based on my own experience of using PEAP based wireless networks, I
would disagree with both of the above statements.

1. When a computer on the network starts up, the computer account
authenticates. This is confirmed by the following;
i) An event appears in the event log stating that the computer account
has authenticated
ii) I can access the computer via Computer Management from the server
iii) There is an option in the configuration that states to
"Authenticate as computer when computer information is available"
iv) When a user logs on, another event occurs stating the user has
been given access. When the user logs off, the computer again
authenticates.
v) The computer account is denied access unless Dial-In access is
granted according to the Remote Access Policy.

2. I can only assume the statement about Group Policy Computer
Configuration not working is because of the first point that,
according to the book, the computer does not have network access until
a user logs on. Thus, no access, how can Group Policy be applied?

I am surprised to read this because without the computer obtaining
network access the whole process of domain access, DNS registration,
roaming profiles etc will not work unless network access is obtained
prior to logon.

These statements are based on experience gained from using Cisco
Aironet Access Points, Windows 2003 Small Business Server, Both
Verisign and Microsoft Certificates and Windows XP Desktops using the
WZC service.

Can anyone shed some light on this?

Kevin
 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Group Policy again!! WMSalam Windows Networking 0 02-23-2006 03:50 PM
Cant locate wireless network policy in group policy Tom Windows Networking 0 05-11-2005 01:28 PM
Group Policy Josh Windows Networking 1 03-18-2005 02:24 AM
Group Policy and PEAP Kevin Lancaster Wireless Networks 0 06-23-2004 03:42 PM
Group Policy BA Home Networking 4 06-15-2004 12:16 PM



1 2 3 4 5 6 7 8 9 10 11