cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
723
Views
5
Helpful
1
Replies

802.1x Combine EAP Authentication - Machine and User

rdediana
Cisco Employee
Cisco Employee

Hello Team.

 

we have a requirement to build policy around the user identity; while also user machine certificates to authenticate the computer.

 

is it possible to build an authorization policy that combines the results for both EAP-TLS (cert for machine) and PEAP-MSCHAPv2 (User credentials)?

 

the goal is to provide network access based on the combined machine and user authentication results.

 

thanks

1 Accepted Solution

Accepted Solutions

Hi, If you want to combine EAP-TLS for computer and PEAP for user authentication you would need to use EAP Chaining, this requires AnyConnect NAM as the supplicant however. How to guide here.

 

HTH

View solution in original post

1 Reply 1

Hi, If you want to combine EAP-TLS for computer and PEAP for user authentication you would need to use EAP Chaining, this requires AnyConnect NAM as the supplicant however. How to guide here.

 

HTH