<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Recommended Enterprise SSID Authentication in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3853466#M204708</link>
    <description>&lt;P&gt;I had to go through the same - so EAP-TLS should be the preferred choice from security point, we were deploying certs to our endpoints for VPN purposes so we are also using the same certs for the WIFI. You have to play with Active directory PKI, and NPS. The exact AP should be very easy to configure (we did Aruba sorry to mention that here:))&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Good thing this setup should be pretty straight forward and well documented online!&lt;/P&gt;&lt;P&gt;Good luck!&lt;/P&gt;</description>
    <pubDate>Thu, 09 May 2019 19:08:46 GMT</pubDate>
    <dc:creator>Chris_78</dc:creator>
    <dc:date>2019-05-09T19:08:46Z</dc:date>
    <item>
      <title>Recommended Enterprise SSID Authentication</title>
      <link>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3853446#M204705</link>
      <description>&lt;P&gt;Hello Team,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We currently have a mix wireless devices from laptops authenticating using certificates and credentials to pre-shard key WPA2 to Pre-shared WPA2 keys with mac filtering.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Although, what would be recommended way (enterprise model) to authenticate for example the Cisco 8821. Should we use.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;WEP&lt;/P&gt;&lt;P&gt;PSK&lt;/P&gt;&lt;P&gt;EAP-FAST&lt;/P&gt;&lt;P&gt;EAP-TLS&lt;/P&gt;&lt;P&gt;or PEAP-GTC&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you in advance.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 17:21:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3853446#M204705</guid>
      <dc:creator>fiestas.cesar</dc:creator>
      <dc:date>2021-07-05T17:21:59Z</dc:date>
    </item>
    <item>
      <title>Re: Recommended Enterprise SSID Authentication</title>
      <link>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3853454#M204706</link>
      <description>EAP-TLS will be my opinion.&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/wireless-mobility/wireless-lan-wlan/213543-configure-eap-tls-flow-with-ise.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/wireless-mobility/wireless-lan-wlan/213543-configure-eap-tls-flow-with-ise.html&lt;/A&gt;</description>
      <pubDate>Thu, 09 May 2019 18:40:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3853454#M204706</guid>
      <dc:creator>Sathiyanarayanan Ravindran</dc:creator>
      <dc:date>2019-05-09T18:40:09Z</dc:date>
    </item>
    <item>
      <title>Re: Recommended Enterprise SSID Authentication</title>
      <link>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3853455#M204707</link>
      <description>&lt;P&gt;There is good article one of vip member have a look for reference :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://mrncciew.com/2013/03/03/eap-overview/" target="_blank"&gt;https://mrncciew.com/2013/03/03/eap-overview/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 09 May 2019 18:42:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3853455#M204707</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2019-05-09T18:42:18Z</dc:date>
    </item>
    <item>
      <title>Re: Recommended Enterprise SSID Authentication</title>
      <link>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3853466#M204708</link>
      <description>&lt;P&gt;I had to go through the same - so EAP-TLS should be the preferred choice from security point, we were deploying certs to our endpoints for VPN purposes so we are also using the same certs for the WIFI. You have to play with Active directory PKI, and NPS. The exact AP should be very easy to configure (we did Aruba sorry to mention that here:))&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Good thing this setup should be pretty straight forward and well documented online!&lt;/P&gt;&lt;P&gt;Good luck!&lt;/P&gt;</description>
      <pubDate>Thu, 09 May 2019 19:08:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3853466#M204708</guid>
      <dc:creator>Chris_78</dc:creator>
      <dc:date>2019-05-09T19:08:46Z</dc:date>
    </item>
    <item>
      <title>Re: Recommended Enterprise SSID Authentication</title>
      <link>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3853505#M204709</link>
      <description>Chris,&lt;BR /&gt;&lt;BR /&gt;Thanks for your time. For best practice when using EAP-TLS did you use one service account for each phone or one service account for all phones?</description>
      <pubDate>Thu, 09 May 2019 20:28:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3853505#M204709</guid>
      <dc:creator>fiestas.cesar</dc:creator>
      <dc:date>2019-05-09T20:28:47Z</dc:date>
    </item>
    <item>
      <title>Re: Recommended Enterprise SSID Authentication</title>
      <link>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3853600#M204710</link>
      <description>&lt;P&gt;Hi mate,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What I recommend is have ISE as authentication server.&lt;/P&gt;&lt;P&gt;If you manage the AD, then integrate ISE with AD.&lt;/P&gt;&lt;P&gt;EAP-TLS using machine authentication is the way I suggest as well for windows machine.&lt;/P&gt;&lt;P&gt;For mobile (company provided), then it would be good to have a user cert installed to it using MDM.&lt;/P&gt;&lt;P&gt;And that user is found on AD, so it is easier to manage.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;For both non-company laptops and mobile, you have ways to go with BYOD and/or Guest network.&lt;/P&gt;&lt;P&gt;ISE has good feature for redirect and even social media login so it is easier for your users.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Raffy&lt;/P&gt;</description>
      <pubDate>Fri, 10 May 2019 00:42:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3853600#M204710</guid>
      <dc:creator>RaffyLindogan</dc:creator>
      <dc:date>2019-05-10T00:42:27Z</dc:date>
    </item>
    <item>
      <title>Re: Recommended Enterprise SSID Authentication</title>
      <link>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3854047#M204713</link>
      <description>Raffy,&lt;BR /&gt;&lt;BR /&gt;Thanks for your response, although will still need to have an AD account (service account) to authenticate the phone using this model? also how do we load the certificate into the 8821? Thanks</description>
      <pubDate>Fri, 10 May 2019 16:45:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3854047#M204713</guid>
      <dc:creator>fiestas.cesar</dc:creator>
      <dc:date>2019-05-10T16:45:19Z</dc:date>
    </item>
    <item>
      <title>Re: Recommended Enterprise SSID Authentication</title>
      <link>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3854471#M204715</link>
      <description>&lt;P&gt;Please refer the doc&amp;nbsp;&lt;A title="WiFi on 8821" href="https://www.cisco.com/c/dam/en/us/td/docs/voice_ip_comm/cuipph/8821/english/Deployment/8821_wlandg.pdf" target="_blank" rel="noopener"&gt;&lt;STRONG&gt;&lt;I&gt;WiFi on 8821&lt;/I&gt;&lt;/STRONG&gt;&lt;/A&gt; .&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 11 May 2019 21:54:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/recommended-enterprise-ssid-authentication/m-p/3854471#M204715</guid>
      <dc:creator>Sathiyanarayanan Ravindran</dc:creator>
      <dc:date>2019-05-11T21:54:17Z</dc:date>
    </item>
  </channel>
</rss>

