cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
456
Views
0
Helpful
1
Replies

EAP TLS for machine and EAP PEAP for user

zma
Level 1
Level 1

Hi forum

I am doing a design to use ISE to enforece dot1x for corporate machinese on both wired and wireless.

Due to the particular environment, we will need to use EAP-TLS for machines auth and on top of that use EAP-PEAP for user auth with windows credential and posture for full access.

Just wondering if anyone has done this before:

1. Will this work?

2. Any gottas?

3. what is the user experience like?

All machines are win7 based.

Thanks

1 Reply 1

Tarik Admani
VIP Alumni
VIP Alumni

You can not use the native supplicant for this. Cisco Anyconnect NAM will allow you to use this method. It is very simple to configure and deploy.

Tarik Admani
*Please rate helpful posts*