<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Untrusted Certificate when performing PEAP Authentication in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/untrusted-certificate-when-performing-peap-authentication/m-p/3500780#M519380</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi there, thank you for the response, we are experiencing this issue on different clients, mostly Apple devices but have also experienced it on some Windows 7 PC's. Android devices are not affected.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 05 Dec 2017 07:20:45 GMT</pubDate>
    <dc:creator>cgarthvdb</dc:creator>
    <dc:date>2017-12-05T07:20:45Z</dc:date>
    <item>
      <title>Untrusted Certificate when performing PEAP Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/untrusted-certificate-when-performing-peap-authentication/m-p/3500777#M519375</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have an ISE deployment and we generated a MultiUse CSR and signed it using Comodo Public CA, the certificate works 100% when accessing the Portals (CWA) Admin etc however when authenticating a wireless client using PEAP some clients report a certificate trust error.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Has anyone experienced the same issue or know of a solution to this?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Garth&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 04 Dec 2017 10:49:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/untrusted-certificate-when-performing-peap-authentication/m-p/3500777#M519375</guid>
      <dc:creator>cgarthvdb</dc:creator>
      <dc:date>2017-12-04T10:49:16Z</dc:date>
    </item>
    <item>
      <title>Re: Untrusted Certificate when performing PEAP Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/untrusted-certificate-when-performing-peap-authentication/m-p/3500778#M519376</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What clients? For ios devices you will need to manually trust the certificate upon initial connection even though it’s a valid certificate.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;https://www.google.com/search?ei=UHYlWrKIL4W5ggfPnZrwDQ&amp;amp;q=ios&lt;EM&gt;manual&lt;/EM&gt;trust&lt;EM&gt;cert&lt;/EM&gt;peap&amp;amp;oq=ios&lt;EM&gt;manual&lt;/EM&gt;trust&lt;EM&gt;cert&lt;/EM&gt;peap&amp;amp;gs_l=psy-ab.3..33i160k1l2.34357.35016.0.35204.5.5.0.0.0.0.137.475.1j3.4.0....0...1.1.64.psy-ab..1.4.475...33i22i29i30k1.0.RbyEieLab0Q&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 04 Dec 2017 16:23:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/untrusted-certificate-when-performing-peap-authentication/m-p/3500778#M519376</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2017-12-04T16:23:57Z</dc:date>
    </item>
    <item>
      <title>Re: Untrusted Certificate when performing PEAP Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/untrusted-certificate-when-performing-peap-authentication/m-p/3500779#M519378</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As Jason said, this is expected on many client operating systems. On Apple iOS, for example, it shows the certificate of ISE EAP server as "Not Verified" while using an ad-hoc Wi-Fi WPA2 enterprise connections. &lt;A href="http://training.apple.com/pdf/WP_8021X_Authentication.pdf" title="http://training.apple.com/pdf/WP_8021X_Authentication.pdf"&gt;http://training.apple.com/pdf/WP_8021X_Authentication.pdf&lt;/A&gt; says,&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;TABLE border="1"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;
&lt;P&gt;... &lt;SPAN style="font-family: MyriadSet; font-size: 10pt; background-color: #ffffff;"&gt;The first time the user joins a device to an 802.1X-protected network, the device will prompt the user to trust the server’s certificate. &lt;/SPAN&gt;&lt;/P&gt;
&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;/BLOCKQUOTE&gt;&lt;DIV class="section" style="background-color: rgb(100.000000%, 100.000000%, 100.000000%);"&gt;&lt;DIV class="column"&gt;&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;P&gt;In order to make the certificate trusted, it needs included as part of a configuration profile installed via ISE BYOD, Apple Configurator 2, or a 3rd-party MDM.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Dec 2017 03:49:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/untrusted-certificate-when-performing-peap-authentication/m-p/3500779#M519378</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2017-12-05T03:49:34Z</dc:date>
    </item>
    <item>
      <title>Re: Untrusted Certificate when performing PEAP Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/untrusted-certificate-when-performing-peap-authentication/m-p/3500780#M519380</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi there, thank you for the response, we are experiencing this issue on different clients, mostly Apple devices but have also experienced it on some Windows 7 PC's. Android devices are not affected.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Dec 2017 07:20:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/untrusted-certificate-when-performing-peap-authentication/m-p/3500780#M519380</guid>
      <dc:creator>cgarthvdb</dc:creator>
      <dc:date>2017-12-05T07:20:45Z</dc:date>
    </item>
    <item>
      <title>Re: Untrusted Certificate when performing PEAP Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/untrusted-certificate-when-performing-peap-authentication/m-p/3500781#M519382</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you, unfortunately it is not only apple iOS devices, we are having the same issue on some corporate windows PC's.&lt;/P&gt;&lt;P&gt;This is very strange, I have logged a TAC with Cisco and am awaiting feedback.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Dec 2017 07:22:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/untrusted-certificate-when-performing-peap-authentication/m-p/3500781#M519382</guid>
      <dc:creator>cgarthvdb</dc:creator>
      <dc:date>2017-12-05T07:22:45Z</dc:date>
    </item>
    <item>
      <title>Re: Untrusted Certificate when performing PEAP Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/untrusted-certificate-when-performing-peap-authentication/m-p/3500782#M519383</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A href="http://techgenix.com/discovering-advanced-client-settings-8021x/" title="http://techgenix.com/discovering-advanced-client-settings-8021x/"&gt;Discovering the Advanced Client Settings of 802.1X - TechGenix&lt;/A&gt;&lt;/P&gt;&lt;P&gt; might help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The native supplicant on Windows client OS by default validates the server certificate of EAP servers and also often prompts to confirm the authenticating EAP server associated with the expected Wi-Fi network ID.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Dec 2017 09:02:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/untrusted-certificate-when-performing-peap-authentication/m-p/3500782#M519383</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2017-12-05T09:02:55Z</dc:date>
    </item>
  </channel>
</rss>

