<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PEAP TLS Wired in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/peap-tls-wired/m-p/4128412#M562023</link>
    <description>&lt;P&gt;It sounds like you're trying to use a certificate for 802.1x on a client that either does not have the correct certificate requirements or for which the client does not have the private key. The supplicant (native or AnyConnect NAM) will not present a certificate for 802.1x if that certificate does not meet the requirements or the client does not have the private key.&lt;/P&gt;
&lt;P&gt;See the following link for some info on minimum certificate requirements:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.microsoft.com/en-au/help/814394/certificate-requirements-when-you-use-eap-tls-or-peap-with-eap-tls" target="_blank" rel="noopener"&gt;Certificate requirements when you use EAP-TLS or PEAP with EAP-TLS&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 31 Jul 2020 00:02:58 GMT</pubDate>
    <dc:creator>Greg Gibbs</dc:creator>
    <dc:date>2020-07-31T00:02:58Z</dc:date>
    <item>
      <title>PEAP TLS Wired</title>
      <link>https://community.cisco.com/t5/network-access-control/peap-tls-wired/m-p/4128140#M562008</link>
      <description>&lt;P&gt;Hi guys&lt;/P&gt;&lt;P&gt;I have a big problem in my envirenment.&lt;/P&gt;&lt;P&gt;I installed Cisco ise 2.7 and upgarded to patch2.&lt;/P&gt;&lt;P&gt;my scenario is peap tls. our clients are non domain join so users login locally.(windows 10)&lt;/P&gt;&lt;P&gt;we have a windows certificate server that generate certficate for users and users installed it on his certificate store.&lt;/P&gt;&lt;P&gt;other methods such as PEAP mschapv2-EAPFast works but PEAPTLS and EAPTLS dosent work.&lt;/P&gt;&lt;P&gt;after configure windows native supplicant for user authentication we get this error in ise:&lt;/P&gt;&lt;DIV class="ellipsis"&gt;&lt;STRONG&gt;Endpoint abandoned EAP session and started new&lt;/STRONG&gt;&lt;/DIV&gt;&lt;DIV class="ellipsis"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class="ellipsis"&gt;Also I migrated to use cisco anyconnect with peaptls but i got below error during authtication&lt;/DIV&gt;&lt;DIV class="ellipsis"&gt;&lt;STRONG&gt;cisco anyconnect no valid certificates available. please insert a smart card&lt;/STRONG&gt;&lt;/DIV&gt;&lt;DIV class="ellipsis"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jul 2020 15:58:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/peap-tls-wired/m-p/4128140#M562008</guid>
      <dc:creator>Saeid</dc:creator>
      <dc:date>2020-07-30T15:58:59Z</dc:date>
    </item>
    <item>
      <title>Re: PEAP TLS Wired</title>
      <link>https://community.cisco.com/t5/network-access-control/peap-tls-wired/m-p/4128412#M562023</link>
      <description>&lt;P&gt;It sounds like you're trying to use a certificate for 802.1x on a client that either does not have the correct certificate requirements or for which the client does not have the private key. The supplicant (native or AnyConnect NAM) will not present a certificate for 802.1x if that certificate does not meet the requirements or the client does not have the private key.&lt;/P&gt;
&lt;P&gt;See the following link for some info on minimum certificate requirements:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.microsoft.com/en-au/help/814394/certificate-requirements-when-you-use-eap-tls-or-peap-with-eap-tls" target="_blank" rel="noopener"&gt;Certificate requirements when you use EAP-TLS or PEAP with EAP-TLS&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 31 Jul 2020 00:02:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/peap-tls-wired/m-p/4128412#M562023</guid>
      <dc:creator>Greg Gibbs</dc:creator>
      <dc:date>2020-07-31T00:02:58Z</dc:date>
    </item>
    <item>
      <title>Re: PEAP TLS Wired</title>
      <link>https://community.cisco.com/t5/network-access-control/peap-tls-wired/m-p/4128585#M562030</link>
      <description>&lt;P&gt;I met all the requirements but I get below error&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;5440 Endpoint abandoned EAP session and started new&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;after almost 2 minutes I get below error&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;12942 Supplicant stopped responding to ISE during conducting inner EAP-TLS method&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My user has client authentication purpose certificate and ise has server authetication&amp;nbsp;purpose certificate&lt;/P&gt;&lt;P&gt;I have a user with name ise and below certificate (Attachments)&lt;/P&gt;&lt;P&gt;Windows event viewer error is attached&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 31 Jul 2020 10:11:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/peap-tls-wired/m-p/4128585#M562030</guid>
      <dc:creator>Saeid</dc:creator>
      <dc:date>2020-07-31T10:11:34Z</dc:date>
    </item>
  </channel>
</rss>

