<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 1130ag access point as local authenticator in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102422#M127861</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;they are the same ap&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 18 Aug 2008 18:24:45 GMT</pubDate>
    <dc:creator>101pch382</dc:creator>
    <dc:date>2008-08-18T18:24:45Z</dc:date>
    <item>
      <title>1130ag access point as local authenticator</title>
      <link>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102416#M127855</link>
      <description>&lt;P&gt;This is my first attempt at wireless other than static wep key. I have set my 1130 ag as having a local radius server, including groups, users and ssids. I am having trouble getting the access point to use the local radius server. When I try to connect using eap-fast I get prompted for a user name and password but no attempts are registered on the radius server.  Any help would be appreciated.&lt;/P&gt;</description>
      <pubDate>Sat, 03 Jul 2021 23:20:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102416#M127855</guid>
      <dc:creator>101pch382</dc:creator>
      <dc:date>2021-07-03T23:20:29Z</dc:date>
    </item>
    <item>
      <title>Re: 1130ag access point as local authenticator</title>
      <link>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102417#M127856</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Give this doc a try... it shows you what you need to do step by step.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/docs/wireless/access_point/12.3_7_JA/configuration/guide/s37local.html" target="_blank"&gt;http://www.cisco.com/en/US/docs/wireless/access_point/12.3_7_JA/configuration/guide/s37local.html&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Aug 2008 16:06:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102417#M127856</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2008-08-18T16:06:02Z</dc:date>
    </item>
    <item>
      <title>Re: 1130ag access point as local authenticator</title>
      <link>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102418#M127857</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I tried following the steps in this doc and still receive an error on the client that the 802.1x authentication server is not available&lt;/P&gt;&lt;P&gt;Heres a copy of my config&lt;/P&gt;&lt;P&gt;Current configuration : 2085 bytes&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;version 12.4&lt;/P&gt;&lt;P&gt;no service pad&lt;/P&gt;&lt;P&gt;service timestamps debug datetime msec&lt;/P&gt;&lt;P&gt;service timestamps log datetime msec&lt;/P&gt;&lt;P&gt;service password-encryption&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;hostname APTEST5&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;enable secret xxx&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius rad_eap1&lt;/P&gt;&lt;P&gt; server 27.101.1.5 auth-port 1645 acct-port 1646&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa authentication login eap_methods1 group rad_eap1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa session-id common&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 ssid jets&lt;/P&gt;&lt;P&gt;   authentication open eap eap_methods1 &lt;/P&gt;&lt;P&gt;   authentication network-eap eap_methods1 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;power inline negotiation prestandard source&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;username Cisco password xxx&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;bridge irb&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt; no ip route-cache&lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; encryption mode ciphers wep128 &lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; ssid jets&lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; station-role root&lt;/P&gt;&lt;P&gt; bridge-group 1&lt;/P&gt;&lt;P&gt; bridge-group 1 subscriber-loop-control&lt;/P&gt;&lt;P&gt; bridge-group 1 block-unknown-source&lt;/P&gt;&lt;P&gt; no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt; no bridge-group 1 unicast-flooding&lt;/P&gt;&lt;P&gt; bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio1&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt; no ip route-cache&lt;/P&gt;&lt;P&gt; shutdown&lt;/P&gt;&lt;P&gt; dfs band 3 block&lt;/P&gt;&lt;P&gt; channel dfs&lt;/P&gt;&lt;P&gt; station-role root&lt;/P&gt;&lt;P&gt; bridge-group 1&lt;/P&gt;&lt;P&gt; bridge-group 1 subscriber-loop-control&lt;/P&gt;&lt;P&gt; bridge-group 1 block-unknown-source&lt;/P&gt;&lt;P&gt; no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt; no bridge-group 1 unicast-flooding&lt;/P&gt;&lt;P&gt; bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!         &lt;/P&gt;&lt;P&gt;interface FastEthernet0&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt; no ip route-cache&lt;/P&gt;&lt;P&gt; duplex auto&lt;/P&gt;&lt;P&gt; speed auto&lt;/P&gt;&lt;P&gt; bridge-group 1&lt;/P&gt;&lt;P&gt; no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt; bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface BVI1&lt;/P&gt;&lt;P&gt; ip address dhcp client-id FastEthernet0&lt;/P&gt;&lt;P&gt; no ip route-cache&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ip http server&lt;/P&gt;&lt;P&gt;no ip http secure-server&lt;/P&gt;&lt;P&gt;ip http help-path &lt;A class="jive-link-custom" href="http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag" target="_blank"&gt;http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag&lt;/A&gt;&lt;/P&gt;&lt;P&gt;radius-server local&lt;/P&gt;&lt;P&gt;  nas 27.101.1.5 key xxx&lt;/P&gt;&lt;P&gt;  group giants &lt;/P&gt;&lt;P&gt;    vlan 1 &lt;/P&gt;&lt;P&gt;    ssid jets &lt;/P&gt;&lt;P&gt;  !&lt;/P&gt;&lt;P&gt;  user jwalsh nthash xxx group giants&lt;/P&gt;&lt;P&gt;  user rmerullo nthash xxx group giants&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;radius-server host 27.101.1.5 auth-port 1645 acct-port 1646 key xxx&lt;/P&gt;&lt;P&gt;radius-server deadtime 10&lt;/P&gt;&lt;P&gt;bridge 1 route ip&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;line con 0&lt;/P&gt;&lt;P&gt;line vty 0 4&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;end&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for any help&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Aug 2008 16:49:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102418#M127857</guid>
      <dc:creator>101pch382</dc:creator>
      <dc:date>2008-08-18T16:49:22Z</dc:date>
    </item>
    <item>
      <title>Re: 1130ag access point as local authenticator</title>
      <link>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102419#M127858</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Try to change the port to 1812 and 1813.  Also I don't see any EAP-Fast settings on your config?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Try to follow these commands:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/docs/wireless/access_point/12.3_7_JA/configuration/guide/s37local.html#wp1050270" target="_blank"&gt;http://www.cisco.com/en/US/docs/wireless/access_point/12.3_7_JA/configuration/guide/s37local.html#wp1050270&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Aug 2008 17:20:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102419#M127858</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2008-08-18T17:20:39Z</dc:date>
    </item>
    <item>
      <title>Re: 1130ag access point as local authenticator</title>
      <link>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102420#M127859</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I made the changes and still am unable to connect new config&lt;/P&gt;&lt;P&gt;Current configuration : 2276 bytes&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;version 12.4&lt;/P&gt;&lt;P&gt;no service pad&lt;/P&gt;&lt;P&gt;service timestamps debug datetime msec&lt;/P&gt;&lt;P&gt;service timestamps log datetime msec&lt;/P&gt;&lt;P&gt;service password-encryption&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;hostname APTEST5&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;enable secret xxx&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius rad_eap1&lt;/P&gt;&lt;P&gt; server 27.101.1.5 auth-port 1812 acct-port 1813&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa authentication login eap_methods1 group rad_eap1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa session-id common&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 ssid jets&lt;/P&gt;&lt;P&gt;   authentication open eap eap_methods1 &lt;/P&gt;&lt;P&gt;   authentication network-eap eap_methods1 &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;power inline negotiation prestandard source&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;username Cisco password xxx&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;bridge irb&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt; no ip route-cache&lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; encryption mode ciphers wep128 &lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; ssid jets&lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; station-role root&lt;/P&gt;&lt;P&gt; bridge-group 1&lt;/P&gt;&lt;P&gt; bridge-group 1 subscriber-loop-control&lt;/P&gt;&lt;P&gt; bridge-group 1 block-unknown-source&lt;/P&gt;&lt;P&gt; no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt; no bridge-group 1 unicast-flooding&lt;/P&gt;&lt;P&gt; bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio1&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt; no ip route-cache&lt;/P&gt;&lt;P&gt; shutdown&lt;/P&gt;&lt;P&gt; dfs band 3 block&lt;/P&gt;&lt;P&gt; channel dfs&lt;/P&gt;&lt;P&gt; station-role root&lt;/P&gt;&lt;P&gt; bridge-group 1&lt;/P&gt;&lt;P&gt; bridge-group 1 subscriber-loop-control&lt;/P&gt;&lt;P&gt; bridge-group 1 block-unknown-source&lt;/P&gt;&lt;P&gt; no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt; no bridge-group 1 unicast-flooding&lt;/P&gt;&lt;P&gt; bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!         &lt;/P&gt;&lt;P&gt;interface FastEthernet0&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt; no ip route-cache&lt;/P&gt;&lt;P&gt; duplex auto&lt;/P&gt;&lt;P&gt; speed auto&lt;/P&gt;&lt;P&gt; bridge-group 1&lt;/P&gt;&lt;P&gt; no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt; bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface BVI1&lt;/P&gt;&lt;P&gt; ip address dhcp client-id FastEthernet0&lt;/P&gt;&lt;P&gt; no ip route-cache&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ip http server&lt;/P&gt;&lt;P&gt;no ip http secure-server&lt;/P&gt;&lt;P&gt;ip http help-path &lt;A class="jive-link-custom" href="http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag" target="_blank"&gt;http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag&lt;/A&gt;&lt;/P&gt;&lt;P&gt;radius-server local&lt;/P&gt;&lt;P&gt;  eapfast authority id FFEEDDCCBBAA998877665544332211FF&lt;/P&gt;&lt;P&gt;  eapfast authority info pchtest&lt;/P&gt;&lt;P&gt;  eapfast server-key primary 7 012D708B293D31F12E9736E1BB9841F70D&lt;/P&gt;&lt;P&gt;  nas 27.101.1.5 key xxx&lt;/P&gt;&lt;P&gt;  group giants &lt;/P&gt;&lt;P&gt;    vlan 1 &lt;/P&gt;&lt;P&gt;    eapfast pac expiry 10  grace 2 &lt;/P&gt;&lt;P&gt;    ssid jets &lt;/P&gt;&lt;P&gt;  !&lt;/P&gt;&lt;P&gt;  user jwalsh nthash xxx group giants&lt;/P&gt;&lt;P&gt;  user rmerullo nthash xxx group giants&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;radius-server host 27.101.1.5 auth-port 1812 acct-port 1813 key xxx&lt;/P&gt;&lt;P&gt;radius-server deadtime 10&lt;/P&gt;&lt;P&gt;bridge 1 route ip&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;line con 0&lt;/P&gt;&lt;P&gt;line vty 0 4&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;end&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Output from sh radius local-server statist&lt;/P&gt;&lt;P&gt;Successes              : 9           Unknown usernames      : 16        &lt;/P&gt;&lt;P&gt;Client blocks          : 0           Invalid passwords      : 0         &lt;/P&gt;&lt;P&gt;Unknown NAS            : 0           Invalid packet from NAS: 3         &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NAS : 27.101.1.5&lt;/P&gt;&lt;P&gt;Successes              : 9           Unknown usernames      : 16        &lt;/P&gt;&lt;P&gt;Client blocks          : 0           Invalid passwords      : 0         &lt;/P&gt;&lt;P&gt;Corrupted packet       : 0           Unknown RADIUS message : 0         &lt;/P&gt;&lt;P&gt;No username attribute  : 0           Missing auth attribute : 0         &lt;/P&gt;&lt;P&gt;Shared key mismatch    : 0           Invalid state attribute: 0         &lt;/P&gt;&lt;P&gt;Unknown EAP message    : 0           Unknown EAP auth type  : 3         &lt;/P&gt;&lt;P&gt;Auto provision success : 3           Auto provision failure : 0         &lt;/P&gt;&lt;P&gt;PAC refresh            : 0           Invalid PAC received   : 1         &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Username                  Successes  Failures  Blocks&lt;/P&gt;&lt;P&gt;jwalsh                            9         0       0&lt;/P&gt;&lt;P&gt;rmerullo                          0         0       0&lt;/P&gt;&lt;P&gt;Thanks for your help&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Aug 2008 18:05:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102420#M127859</guid>
      <dc:creator>101pch382</dc:creator>
      <dc:date>2008-08-18T18:05:51Z</dc:date>
    </item>
    <item>
      <title>Re: 1130ag access point as local authenticator</title>
      <link>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102421#M127860</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What is the ip of this ap and is 27.101.1.5 a different ap or is it this ap?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Aug 2008 18:23:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102421#M127860</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2008-08-18T18:23:22Z</dc:date>
    </item>
    <item>
      <title>Re: 1130ag access point as local authenticator</title>
      <link>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102422#M127861</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;they are the same ap&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Aug 2008 18:24:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102422#M127861</guid>
      <dc:creator>101pch382</dc:creator>
      <dc:date>2008-08-18T18:24:45Z</dc:date>
    </item>
    <item>
      <title>Re: 1130ag access point as local authenticator</title>
      <link>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102423#M127862</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;How come you didn't specify the ip address on BVI interface?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Aug 2008 18:27:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102423#M127862</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2008-08-18T18:27:24Z</dc:date>
    </item>
    <item>
      <title>Re: 1130ag access point as local authenticator</title>
      <link>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102424#M127863</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;currently using dhcp to obtain ip&lt;/P&gt;&lt;P&gt;sh int&lt;/P&gt;&lt;P&gt;BVI1 is up, line protocol is up &lt;/P&gt;&lt;P&gt;  Hardware is BVI, address is 001e.f7ef.03ee (bia 0022.550d.0cf0)&lt;/P&gt;&lt;P&gt;  Internet address is 27.101.1.5/8&lt;/P&gt;&lt;P&gt;  MTU 1500 bytes, BW 54000 Kbit, DLY 5000 usec, &lt;/P&gt;&lt;P&gt;     reliability 255/255, txload 1/255, rxload 1/255&lt;/P&gt;&lt;P&gt;  Encapsulation ARPA, loopback not set&lt;/P&gt;&lt;P&gt;  ARP type: ARPA, ARP Timeout 04:00:00&lt;/P&gt;&lt;P&gt;  Last input 00:00:47, output never, output hang never&lt;/P&gt;&lt;P&gt;  Last clearing of "show interface" counters never&lt;/P&gt;&lt;P&gt;  Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0&lt;/P&gt;&lt;P&gt;  5 minute input rate 1000 bits/sec, 2 packets/sec&lt;/P&gt;&lt;P&gt;  5 minute output rate 8000 bits/sec, 1 packets/sec&lt;/P&gt;&lt;P&gt;     56221 packets input, 3451946 bytes, 0 no buffer&lt;/P&gt;&lt;P&gt;     Received 0 broadcasts, 0 runts, 0 giants, 0 throttles&lt;/P&gt;&lt;P&gt;     0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort&lt;/P&gt;&lt;P&gt;     9292 packets output, 7925395 bytes, 0 underruns&lt;/P&gt;&lt;P&gt;     0 output errors, 0 collisions, 0 interface resets&lt;/P&gt;&lt;P&gt;     0 output buffer failures, 0 output buffers swapped out&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Aug 2008 18:31:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102424#M127863</guid>
      <dc:creator>101pch382</dc:creator>
      <dc:date>2008-08-18T18:31:57Z</dc:date>
    </item>
    <item>
      <title>Re: 1130ag access point as local authenticator</title>
      <link>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102425#M127864</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Just making sure.... now are you using wep or eap-fast, because you have wep configured under the radio:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface Dot11Radio0 &lt;/P&gt;&lt;P&gt;no ip address &lt;/P&gt;&lt;P&gt;no ip route-cache &lt;/P&gt;&lt;P&gt;! &lt;/P&gt;&lt;P&gt;encryption mode ciphers wep128 &lt;/P&gt;&lt;P&gt;! &lt;/P&gt;&lt;P&gt;ssid jets &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Aug 2008 18:38:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102425#M127864</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2008-08-18T18:38:41Z</dc:date>
    </item>
    <item>
      <title>Re: 1130ag access point as local authenticator</title>
      <link>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102426#M127865</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;eapfast&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Aug 2008 18:42:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102426#M127865</guid>
      <dc:creator>101pch382</dc:creator>
      <dc:date>2008-08-18T18:42:18Z</dc:date>
    </item>
    <item>
      <title>Re: 1130ag access point as local authenticator</title>
      <link>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102427#M127866</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here is a config I have tried and it works.  It uses WPA2 w/ EAP-FAST.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Username is test&lt;/P&gt;&lt;P&gt;Password is test&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Building configuration...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Current configuration : 2451 bytes&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;version 12.4&lt;/P&gt;&lt;P&gt;no service pad&lt;/P&gt;&lt;P&gt;service timestamps debug datetime msec&lt;/P&gt;&lt;P&gt;service timestamps log datetime msec&lt;/P&gt;&lt;P&gt;service password-encryption&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;hostname ap&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;enable secret 5 $1$yZcX$DaBLyWCS36.HI.2PQKe2c.&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius rad_eap&lt;/P&gt;&lt;P&gt; server 192.168.1.16 auth-port 1812 acct-port 1813&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa authentication login eap_methods group rad_eap&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa session-id common&lt;/P&gt;&lt;P&gt;no ip dhcp use vrf connected&lt;/P&gt;&lt;P&gt;ip dhcp excluded-address 192.168.1.1 192.168.1.99&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ip dhcp pool DHCP&lt;/P&gt;&lt;P&gt;   network 192.168.1.0 255.255.255.0&lt;/P&gt;&lt;P&gt;   lease 0 1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 ssid TEST&lt;/P&gt;&lt;P&gt;   authentication open eap eap_methods &lt;/P&gt;&lt;P&gt;   authentication network-eap eap_methods &lt;/P&gt;&lt;P&gt;   authentication key-management wpa version 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;power inline negotiation prestandard source&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;username Cisco password 7 123A0C041104&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;bridge irb&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt; no ip route-cache&lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; encryption mode ciphers aes-ccm &lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; ssid TEST&lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; station-role root&lt;/P&gt;&lt;P&gt; bridge-group 1&lt;/P&gt;&lt;P&gt; bridge-group 1 subscriber-loop-control&lt;/P&gt;&lt;P&gt; bridge-group 1 block-unknown-source&lt;/P&gt;&lt;P&gt; no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt; no bridge-group 1 unicast-flooding&lt;/P&gt;&lt;P&gt; bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio1&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt; no ip route-cache&lt;/P&gt;&lt;P&gt; shutdown&lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; encryption mode ciphers aes-ccm &lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; ssid TEST&lt;/P&gt;&lt;P&gt; !&lt;/P&gt;&lt;P&gt; dfs band 3 block&lt;/P&gt;&lt;P&gt; channel dfs&lt;/P&gt;&lt;P&gt; station-role root&lt;/P&gt;&lt;P&gt; bridge-group 1&lt;/P&gt;&lt;P&gt; bridge-group 1 subscriber-loop-control&lt;/P&gt;&lt;P&gt; bridge-group 1 block-unknown-source&lt;/P&gt;&lt;P&gt; no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt; no bridge-group 1 unicast-flooding&lt;/P&gt;&lt;P&gt; bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0&lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt; no ip route-cache&lt;/P&gt;&lt;P&gt; duplex auto&lt;/P&gt;&lt;P&gt; speed auto&lt;/P&gt;&lt;P&gt; bridge-group 1&lt;/P&gt;&lt;P&gt; no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt; bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface BVI1&lt;/P&gt;&lt;P&gt; ip address 192.168.1.16 255.255.255.0&lt;/P&gt;&lt;P&gt; no ip route-cache&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ip http server&lt;/P&gt;&lt;P&gt;no ip http secure-server&lt;/P&gt;&lt;P&gt;ip http help-path &lt;A class="jive-link-custom" href="http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag" target="_blank"&gt;http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag&lt;/A&gt;&lt;/P&gt;&lt;P&gt;ip radius source-interface BVI1 &lt;/P&gt;&lt;P&gt;radius-server local&lt;/P&gt;&lt;P&gt;  no authentication leap&lt;/P&gt;&lt;P&gt;  no authentication mac&lt;/P&gt;&lt;P&gt;  eapfast server-key primary 7 7D16E1C2234E3179E16134EA007DB5DAC0&lt;/P&gt;&lt;P&gt;  eapfast server-key secondary 7 7D16E1C2234E3179E16134EA007DB5DAC0&lt;/P&gt;&lt;P&gt;  nas 192.168.1.16 key 7 045958140D721F&lt;/P&gt;&lt;P&gt;  group EAP &lt;/P&gt;&lt;P&gt;    eapfast pac expiry 100  grace 2 &lt;/P&gt;&lt;P&gt;    reauthentication time 3600&lt;/P&gt;&lt;P&gt;  !&lt;/P&gt;&lt;P&gt;  user test nthash 7 091C6D2B4F5C434A535C510C7C7D7F111370325F445B5101000F0076565A4D450E group EAP&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;radius-server host 192.168.1.16 auth-port 1812 acct-port 1813 key 7 045958140D721F&lt;/P&gt;&lt;P&gt;bridge 1 route ip&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;line con 0&lt;/P&gt;&lt;P&gt;line vty 0 4&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;end&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 23 Aug 2008 23:17:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/1130ag-access-point-as-local-authenticator/m-p/1102427#M127866</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2008-08-23T23:17:47Z</dc:date>
    </item>
  </channel>
</rss>

