cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1191
Views
0
Helpful
1
Replies

802.1x credentials failure with ACS 5.2

deolayusuf
Level 1
Level 1

Hi all,

I recently tried to deploy an ACS appliance with version 5.2 installed on it for a customer.

After setting up the WLC to use the ACS as a radius server, and successfully testing connection from the ACS to the AD,

I get an error message " 12321 PEAP failed SSL/TLS handshake because the client rejected the ACS local-certificate" anytime a client tries to connect to the network.

This is surprising because I had already generated a certficate for the ACS from a CA and binded the CA signed certificate with the ACS, I also specified the CA in the client machine's wireless properties and checked the "validate certificate" button.

When I tried to connect using the internal identity store, the client was successfully authenticated without any certificate issues.

Any help on this will be appreciated.

1 Reply 1

Tarik Admani
VIP Alumni
VIP Alumni

Hi,

Can you please send me the pdf output of the authentication for the user which passes authentication to the internal identity store and for the user account that fails when pointing to AD? Are you using an identity sequence or are you modifying the identity settings? If it is ok please attach it to your next post. If not please PM me and i can setup a share for you to upload the files to securely.

thanks,

Tarik