04-30-2003 07:45 PM - edited 03-10-2019 07:17 AM
Hi,
We had recently purchased ACS 3.1 and a few 54mbps wireless AP. Our ACS is installed on W2K Server with Novell Client installed. We were able to get the wireless users to login using the ACS's local database. When we try to set up using external user database for Novell NDS or Generic LDAP, we were not successful. Under the fail attempts, it will mention CS User Unknown.
We had go through the White paper in configuring LDAP with ACS but it does not help. Our Novell Netware 6.0, pure IP. The Novell NDS comes with the LDAP functionality, so as long as we can get ACS to work with Novell NDS or LDAP. It is fine with me.
Did anyone manage to configure it to work with wireless clients using Novell NDS as it's external database under the ACS? Please revert. Thanks.
Regards,
--
Tan Tshun Kiat (Mr)
Systems Administrator (Unix)
05-01-2003 10:55 AM
Hi Tan,
You need to use PEAP on the clients in order to authenticate from NDs database.
Q. What is PEAP?
A. Protected EAP (PEAP) is an 802.1X authentication type for WLANs. PEAP provides strong security, user database extensibility, and support for one-time token authentication and password change or aging. PEAP is based on an Internet Draft (I-D) submitted by Cisco Systems, Microsoft, and RSA Security to the IETF. Glen Zorn, a Cisco innovator, was the Cisco Systems lead engineer and coauthor of this I-D.
Q. What are the security benefits of PEAP?
A. PEAP provides the following security benefits:
PEAP relies on TLS tunnel security to allow non-encrypted authentication types such as EAP-GTC and One Time Password (OTP) support
PEAP uses server-side Public-Key Infrastructure (PKI) based digital certification authentication PEAP allows authentication to an extended suite of directories, including Lightweight Directory Access Protocol (LDAP), Novell NDS (Novell Directory Services) and OTP databases PEAP uses TLS to encrypt all user-sensitive authentication information
http://www.cisco.com/en/US/netsol/ns110/ns175/ns176/ns178/netqa09186a008010018c.html
Thanks
Sujit
05-01-2003 04:40 PM
Hi,
I read through the document just now. Still a bit lost. Other than ensuring the right components are installed, any other information as to how we can go about implementing PEAP with Novell NDS? Appreciate your response. Thanks.
Regards,
--
Tan Tshun Kiat (Mr)
Systems Administrator (Unix)
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide