<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic EAP-TLS SSO in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/eap-tls-sso/m-p/665246#M50495</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I would need some informations about Single Sign On. My implementations is:&lt;/P&gt;&lt;P&gt;- WLC4400 ( 2 devices )&lt;/P&gt;&lt;P&gt;- EAP-TLS as authentication type&lt;/P&gt;&lt;P&gt;- IAS over win2003 as radius&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I just need to know how to implement SSO. I know it's "Microsoft" dependent as the controller forwrd all radius request to IAS, but:&lt;/P&gt;&lt;P&gt;If I want to configure the autoenrollment for the certificates, the wifi user must logon the domain the first time in WIRED, to let the autoenrollment process to download the certificate ? Or the certificate is "autoenrolled" via wifi also for the first time a user try the logon by EAP permitted traffic ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;many thanks and regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;luigi&lt;/P&gt;</description>
    <pubDate>Sat, 03 Jul 2021 20:30:57 GMT</pubDate>
    <dc:creator>LUIGI PIETRONAVE</dc:creator>
    <dc:date>2021-07-03T20:30:57Z</dc:date>
    <item>
      <title>EAP-TLS SSO</title>
      <link>https://community.cisco.com/t5/wireless/eap-tls-sso/m-p/665246#M50495</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I would need some informations about Single Sign On. My implementations is:&lt;/P&gt;&lt;P&gt;- WLC4400 ( 2 devices )&lt;/P&gt;&lt;P&gt;- EAP-TLS as authentication type&lt;/P&gt;&lt;P&gt;- IAS over win2003 as radius&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I just need to know how to implement SSO. I know it's "Microsoft" dependent as the controller forwrd all radius request to IAS, but:&lt;/P&gt;&lt;P&gt;If I want to configure the autoenrollment for the certificates, the wifi user must logon the domain the first time in WIRED, to let the autoenrollment process to download the certificate ? Or the certificate is "autoenrolled" via wifi also for the first time a user try the logon by EAP permitted traffic ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;many thanks and regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;luigi&lt;/P&gt;</description>
      <pubDate>Sat, 03 Jul 2021 20:30:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/eap-tls-sso/m-p/665246#M50495</guid>
      <dc:creator>LUIGI PIETRONAVE</dc:creator>
      <dc:date>2021-07-03T20:30:57Z</dc:date>
    </item>
    <item>
      <title>Re: EAP-TLS SSO</title>
      <link>https://community.cisco.com/t5/wireless/eap-tls-sso/m-p/665247#M50496</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Luigi,&lt;/P&gt;&lt;P&gt;we are running the WiSM (which is similar to a WLC) and I am looking for some information on setting up EAP/TLS. Can you send me some information pls?&lt;/P&gt;&lt;P&gt;--Joerg&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 26 Jan 2007 16:25:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/eap-tls-sso/m-p/665247#M50496</guid>
      <dc:creator>with_joerg</dc:creator>
      <dc:date>2007-01-26T16:25:47Z</dc:date>
    </item>
    <item>
      <title>Re: EAP-TLS SSO</title>
      <link>https://community.cisco.com/t5/wireless/eap-tls-sso/m-p/665248#M50497</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Joerg,&lt;/P&gt;&lt;P&gt;which informations do You require ?&lt;/P&gt;&lt;P&gt;Here an useful link from CCO;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/ps6366/products_configuration_example09186a00807917a6.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/ps6366/products_configuration_example09186a00807917a6.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;in this link the authentication server is a Cisco ACS; if You want to use a Microsoft Radius ( IAS ) You need to know:&lt;/P&gt;&lt;P&gt;- for certificate autoenrollment the IAS must be a win2003 enterprise&lt;/P&gt;&lt;P&gt;- for to be a CA, the win2003 ( or win2000 ) must be a primary domain controller &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Luigi&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 29 Jan 2007 13:37:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/eap-tls-sso/m-p/665248#M50497</guid>
      <dc:creator>LUIGI PIETRONAVE</dc:creator>
      <dc:date>2007-01-29T13:37:13Z</dc:date>
    </item>
  </channel>
</rss>

