<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PEAP and Integrity Client in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878393#M25725</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Correct me if I'm wrong (I'm not very familier with these client firewall products), but as I understand it they are all layer-3/4 firewalls.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That being the case none of them will effect the 802.1x authentication/authorization process.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 22 Oct 2007 15:06:03 GMT</pubDate>
    <dc:creator>erikszewczyk</dc:creator>
    <dc:date>2007-10-22T15:06:03Z</dc:date>
    <item>
      <title>PEAP and Integrity Client</title>
      <link>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878386#M25718</link>
      <description>&lt;P&gt;Dear Support,&lt;/P&gt;&lt;P&gt;Looking at deploying PEAP, via WZC client and MS-CHAP v2.&lt;/P&gt;&lt;P&gt;The desktop team would like to know what rules need to be configured on the Integrity client for PEAP authentication.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can anyone help me please?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks in advance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I always rate helpful posts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards, Adrian.&lt;/P&gt;</description>
      <pubDate>Sat, 03 Jul 2021 21:48:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878386#M25718</guid>
      <dc:creator>aoshea</dc:creator>
      <dc:date>2021-07-03T21:48:51Z</dc:date>
    </item>
    <item>
      <title>Re: PEAP and Integrity Client</title>
      <link>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878387#M25719</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;A WPA suite is always a good option for message integrity. Both WPA/WPA2 do MIC through TKIP and AES, which would be an answer to your query. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2007 11:33:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878387#M25719</guid>
      <dc:creator>rnigam</dc:creator>
      <dc:date>2007-10-22T11:33:02Z</dc:date>
    </item>
    <item>
      <title>Re: PEAP and Integrity Client</title>
      <link>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878388#M25720</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Many thanks for the update, I total agree with your recommendations, but from a client firewall perspective (i.e. the integrity client) what ports would i need to allow for peap authentication ... i.e. is it over http (tcp port 80), https (tcp port 443), etc.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your assistance is appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Adrian&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2007 12:16:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878388#M25720</guid>
      <dc:creator>aoshea</dc:creator>
      <dc:date>2007-10-22T12:16:29Z</dc:date>
    </item>
    <item>
      <title>Re: PEAP and Integrity Client</title>
      <link>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878389#M25721</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;802.1x authentication happens (primarily) at layer 2, there are no ports to open on the client(s).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In fact, prior to 802.1x authentication you dont get access to the network medium past layer 1; your clients wont even have IP address yet (or be allowed DHCP requests).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Erik&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2007 14:25:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878389#M25721</guid>
      <dc:creator>erikszewczyk</dc:creator>
      <dc:date>2007-10-22T14:25:22Z</dc:date>
    </item>
    <item>
      <title>Re: PEAP and Integrity Client</title>
      <link>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878390#M25722</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Many thanks Erik, so hopefully no configuration necessary of the integrity client.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;many thanks adrian&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2007 14:36:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878390#M25722</guid>
      <dc:creator>aoshea</dc:creator>
      <dc:date>2007-10-22T14:36:38Z</dc:date>
    </item>
    <item>
      <title>Re: PEAP and Integrity Client</title>
      <link>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878391#M25723</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That's correct, there should be no client (software) firewall configuration.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Erik&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2007 14:50:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878391#M25723</guid>
      <dc:creator>erikszewczyk</dc:creator>
      <dc:date>2007-10-22T14:50:23Z</dc:date>
    </item>
    <item>
      <title>Re: PEAP and Integrity Client</title>
      <link>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878392#M25724</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I wish it was as simple as that, unfortunately all laptops (the wireless users) will have the integrity client, so not sure where to go from here, as since checkpoint has purchased integrity the free support has gone!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But as you have pointed out, this happens at layer 2, so not sure if the integrity client gets involved at this point?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards adrian&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2007 15:00:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878392#M25724</guid>
      <dc:creator>aoshea</dc:creator>
      <dc:date>2007-10-22T15:00:59Z</dc:date>
    </item>
    <item>
      <title>Re: PEAP and Integrity Client</title>
      <link>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878393#M25725</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Correct me if I'm wrong (I'm not very familier with these client firewall products), but as I understand it they are all layer-3/4 firewalls.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That being the case none of them will effect the 802.1x authentication/authorization process.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2007 15:06:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878393#M25725</guid>
      <dc:creator>erikszewczyk</dc:creator>
      <dc:date>2007-10-22T15:06:03Z</dc:date>
    </item>
    <item>
      <title>Re: PEAP and Integrity Client</title>
      <link>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878394#M25726</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I agree, but for some reason the windows team who do the image for the laptop need me to provide them with what is needed on the integrity client. By as it is layer 2 i'm not sure if rules need to be defined. Suspect the only way to be sure would be to put a sniffer on the client.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again for your assistance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards, Adrian.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2007 15:23:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878394#M25726</guid>
      <dc:creator>aoshea</dc:creator>
      <dc:date>2007-10-22T15:23:23Z</dc:date>
    </item>
    <item>
      <title>Re: PEAP and Integrity Client</title>
      <link>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878395#M25727</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I know this isnt exactly an all encompasing list but it's about the best thing I could find:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.checkpoint.com/products/enterprise/comparison_chart.html" target="_blank"&gt;http://www.checkpoint.com/products/enterprise/comparison_chart.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For what it's worth the Integrity firewall does do some application layer filtering.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would tell your Windows build team that no settings are needed and just test prior to deployment (you're going to know quickly if it isnt working).  I would be very suprised if the client had issues because of this.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2007 15:41:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878395#M25727</guid>
      <dc:creator>erikszewczyk</dc:creator>
      <dc:date>2007-10-22T15:41:39Z</dc:date>
    </item>
    <item>
      <title>Re: PEAP and Integrity Client</title>
      <link>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878396#M25728</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Eric,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again for your assistance, this is a good page to work from.&lt;/P&gt;&lt;P&gt;Thanks again for your efforts it is appreciated.&lt;/P&gt;&lt;P&gt;All the best for the testing!&lt;/P&gt;&lt;P&gt;Thanks and regards,&lt;/P&gt;&lt;P&gt;Adrian.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2007 18:25:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/peap-and-integrity-client/m-p/878396#M25728</guid>
      <dc:creator>aoshea</dc:creator>
      <dc:date>2007-10-22T18:25:29Z</dc:date>
    </item>
  </channel>
</rss>

