<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: cisco WLC radius authentication  issue in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3893605#M4908</link>
    <description>Do you talk about the user 'test'?&lt;BR /&gt;Or do you mean the last line of the screenshot?&lt;BR /&gt;&lt;BR /&gt;Have you added the new WLC IP (assuming it's not using the same addresses as the old one) as a Radius Client on NPS?&lt;BR /&gt;What is written in the Event Viewer under Security when you try to authenticate?&lt;BR /&gt;Which software version is running on the new WLC?&lt;BR /&gt;</description>
    <pubDate>Fri, 19 Jul 2019 14:34:56 GMT</pubDate>
    <dc:creator>patoberli</dc:creator>
    <dc:date>2019-07-19T14:34:56Z</dc:date>
    <item>
      <title>cisco WLC radius authentication  issue</title>
      <link>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3892288#M4904</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;currently iam working on a migration of Cisco wlc 2504 to 3504.&lt;/P&gt;&lt;P&gt;we are using radius authentication with windows NPS to authenticate clients. when i am trying to connect the SSID, computer prompt me to enter the user name and password. once i enter credential it show the certificate in which the thumb print is same as my server certificate used for NPS. once i connect, getting ip address through dhcp and client shows connected. NPS server log shows authentication granted access logs and.i can see the connected client in the wlc.&lt;/P&gt;&lt;P&gt;the issue is wlc generated SNMP trap as, AAA Authentication Failure for Client MAC: 00:24:d7:96:8c:38 UserName:test User Type: WLAN USER Reason: Authentication failed&amp;nbsp; in&amp;nbsp; the controller.&lt;/P&gt;&lt;P&gt;authentication succeeded and client got the ip address through dhcp and shows connected, still WLC showing authentication failure traps.&lt;/P&gt;&lt;P&gt;wlc model: cisco wlc 3504&lt;/P&gt;&lt;P&gt;software version: 8.5.131.0&lt;/P&gt;&lt;P&gt;access point model: cisco 1532e outdoor&lt;/P&gt;&lt;P&gt;what could be the possible issues?&lt;/P&gt;&lt;P&gt;attached screen shots&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 17:43:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3892288#M4904</guid>
      <dc:creator>fasalrman@gmail.com</dc:creator>
      <dc:date>2021-07-05T17:43:25Z</dc:date>
    </item>
    <item>
      <title>Re: cisco WLC radius authentication  issue</title>
      <link>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3892398#M4905</link>
      <description>Hi&lt;BR /&gt;&lt;BR /&gt;I don't have any 3504 right now but can you share your ssid please or can you validate you have the exact same config between old and new wlc?&lt;BR /&gt;</description>
      <pubDate>Thu, 18 Jul 2019 04:10:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3892398#M4905</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2019-07-18T04:10:41Z</dc:date>
    </item>
    <item>
      <title>Re: cisco WLC radius authentication  issue</title>
      <link>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3892416#M4906</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Thank you for the reply&lt;/P&gt;&lt;P&gt;kindly find the attached the ssid details&lt;/P&gt;</description>
      <pubDate>Thu, 18 Jul 2019 04:54:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3892416#M4906</guid>
      <dc:creator>fasalrman@gmail.com</dc:creator>
      <dc:date>2019-07-18T04:54:12Z</dc:date>
    </item>
    <item>
      <title>Re: cisco WLC radius authentication  issue</title>
      <link>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3892900#M4907</link>
      <description>Thanks for sharing. Can you share the advanced tab config please? I would disable all extra features like Fast Transition to do the test and also enable the account radius in your ssid. Then, just for testing and to keep a config clean for troubleshooting, I would remove local and ldap from Authentication order protocols.&lt;BR /&gt;&lt;BR /&gt;While authenticating, can you a run a debug on your WLC?&lt;BR /&gt;&lt;BR /&gt;Thanks&lt;BR /&gt;</description>
      <pubDate>Thu, 18 Jul 2019 15:34:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3892900#M4907</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2019-07-18T15:34:42Z</dc:date>
    </item>
    <item>
      <title>Re: cisco WLC radius authentication  issue</title>
      <link>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3893605#M4908</link>
      <description>Do you talk about the user 'test'?&lt;BR /&gt;Or do you mean the last line of the screenshot?&lt;BR /&gt;&lt;BR /&gt;Have you added the new WLC IP (assuming it's not using the same addresses as the old one) as a Radius Client on NPS?&lt;BR /&gt;What is written in the Event Viewer under Security when you try to authenticate?&lt;BR /&gt;Which software version is running on the new WLC?&lt;BR /&gt;</description>
      <pubDate>Fri, 19 Jul 2019 14:34:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3893605#M4908</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2019-07-19T14:34:56Z</dc:date>
    </item>
    <item>
      <title>Re: cisco WLC radius authentication  issue</title>
      <link>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3893805#M4909</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;contacted cisco TAC and they concluded that when iam trying from my pc which is under my company domain, the first time NPS denied access to the client the first time it is using my own username to authenticate, after 9 seconds the event viewer shows NPS granted access to the client by using the provided username and password.&lt;/P&gt;&lt;P&gt;Tried with mobile and another workstation which is under workgroup no errors were there in WLC&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Jul 2019 18:46:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3893805#M4909</guid>
      <dc:creator>fasalrman@gmail.com</dc:creator>
      <dc:date>2019-07-19T18:46:06Z</dc:date>
    </item>
    <item>
      <title>Re: cisco WLC radius authentication  issue</title>
      <link>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3893807#M4910</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;Contacted Cisco TAC and they concluded that when iam trying from my pc which is under my company domain, the first time NPS denied access to the client the first time it is using my own username to authenticate, after 9 seconds the event viewer shows NPS granted access to the client by using the provided username and password.&lt;/P&gt;&lt;P&gt;Tried with mobile and another workstation which is under work group no errors were there in WLC&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Jul 2019 18:47:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3893807#M4910</guid>
      <dc:creator>fasalrman@gmail.com</dc:creator>
      <dc:date>2019-07-19T18:47:04Z</dc:date>
    </item>
    <item>
      <title>Re: cisco WLC radius authentication  issue</title>
      <link>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3893836#M4911</link>
      <description>Yeah, normal behaviour for domain joined devices. You can create a group policy with the correct profile settings to work around that.&lt;BR /&gt;</description>
      <pubDate>Fri, 19 Jul 2019 19:32:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-wlc-radius-authentication-issue/m-p/3893836#M4911</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2019-07-19T19:32:59Z</dc:date>
    </item>
  </channel>
</rss>

