10-30-2025 12:17 AM
I'm lokking 802.1x protocol that use native windows supplicant and based on Entra ID, previously i try using EAP-TTLS but now work.
Open case to microsoft then they said that EAP-TTLS is not supported by windows 11 and must use 3rd praty supplicant installed on the machine.
If i use EAP-TLS this will autenticate based on the certificate ant not use Entra ID. With this situation, anyone here know what 802.1x that will use native supplicant from windows and authentication based on Entra ID?
10-30-2025 03:13 AM
Hi, You can do EAP_TLS authentication using the certificates and further check some attributes from Entra ID. Machines can't perform authentication against Entra ID just like traditional AD. Instead you can use some attributes from Entra ID in authorization profiles. Refer this link for more details:Cisco ISE with Microsoft Active Directory, Entra ID, and Intune - Cisco Community
11-04-2025 03:32 AM
11-04-2025 02:03 PM
Windows supports 802.1X with EAP-TTLS.
See EAP-TTLS Client Configuration > Windows 10/11
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide