Networking Forums

Networking Forums > Wireless Networking > Wireless Internet > Problem trying to force password change through PEAP

Reply
Thread Tools Display Modes

Problem trying to force password change through PEAP

 
 
maxwebster
Guest
Posts: n/a

 
      01-15-2008, 12:42 PM

Hi,
I recently setup a wireless network for a client, but left with one
issue that I cannot seem to resolve.
Hardware is a Cisco 2100 WCS controller with several compatible Cisco
AP's.
Hardware configured for PEAP / WPA / WPA2 / TKIP / AES combinations.
They authenticate through Windows IAS and authenticate against Active
Directory (2003).
IAS is configured to authenticate only wireless clients, and only
specifiy AD groups.
Clients are configured using PEAP / MSChapv2. Not configured to
validate server certificates. All use Windows wireless Zero
configuration utility.
The problem is that the client gives their users a standard password
which they are expected to change at first login. In other words, the
user's account in AD is set to force a password change the first time
they log into the wireless network.
Now I know this works, because it works in my lab without issue....as
long as you configure PEAP to allow the client to change their
password.
But in production, it only works sometimes. The problem occurs accross
different laptop brands....in other words, I can't pin it down to either
an IBM or Dell, or any specific kind of client wireless hardware.
When it does't work, users are prompted 3 times for their change their
password, but it doesn't work and then their authentication attempt
start sover from the beginning.
Note that when this policy is not enbaled (force passwor change), then
all notebooks authenticate without issue....it's only when we try to
force a password change through the client's AD account.
I tried applying several microsoft patches (to help with 3rd party
radius timing issues) to the clients, but so far no luck.
Any advice would be appreciated.


------------------------------------------------------------------------
View this thread: http://www.wirelessforums.org/showthread.php?t=36857
http://www.wirelessforums.org

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
802.1x PEAP Password Change Problem danwicks Wireless Networks 0 05-20-2009 02:35 PM
Force Password change in Domain Tim Windows Networking 4 04-21-2006 09:18 PM
Problem in Change Password! Password Recovery Prasad Dannani Windows Networking 0 08-26-2005 07:57 PM
Force password change Max André Bündchen Windows Networking 3 02-13-2004 12:10 AM
change password problem Hemasiri Karunanayake Windows Networking 0 08-04-2003 02:41 PM



1 2 3 4 5 6 7 8 9 10 11