cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
762
Views
0
Helpful
3
Replies

ACS 4.2 and 802.1x auth with certificate

size57
Level 1
Level 1

Dear all

I have geerated new certificate and installed it on my ACS 4.2,it is self generated certificate by ACS.Now end user is not able authenticate automatically.

If i mnually install this certificate on end user machine then end user is able to authenticate.

Is there any way to authenticate end user automatically?

1 Accepted Solution

Accepted Solutions

Ohh, I'm sorry....



Here are the comments;


1.] You need to uncheck the "Validate server certificate" option on the client side, this way you don't need to install the certificate on the end user machines.


2.] Uncheck the option " Automatically use my windows password and domain username" by doing this users windows credential will be saved and client will connect everytime you logon to windows machine.



HTH


Rgds, Jatin


Do rate helpful posts~

~Jatin

View solution in original post

3 Replies 3

Jatin Katyal
Cisco Employee
Cisco Employee

You need to make slight changes on the client side.


Please follow the comments in attached snap shot.




Hope this helps.


Rgds, Jatin


Do rate helpful posts~

~Jatin

Dear Jatin,

I am not able to read your comments in the snap provided, can you please write those and repost.

also when we restart host after manualy adding certificate to it, its not able to authenticate what i need to do is either disable/enable NIC of local host or disable enable respective switch port and then host is able to authenticate. please suggest on this as well.

thnx for the information.

Ohh, I'm sorry....



Here are the comments;


1.] You need to uncheck the "Validate server certificate" option on the client side, this way you don't need to install the certificate on the end user machines.


2.] Uncheck the option " Automatically use my windows password and domain username" by doing this users windows credential will be saved and client will connect everytime you logon to windows machine.



HTH


Rgds, Jatin


Do rate helpful posts~

~Jatin