cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
400
Views
0
Helpful
1
Replies

"PEAP Inner Methods" in ISE ???

The PC attempts to connect wirelessly using PEAP-MSCHAPv2.

However, if you check the failure log in ISE, the authentication protocol is EAP-TLS.

Does it have something to do with EAP-TLS in PEAP Methods being allowed in ISE?

What are the risks of unchecking EAP-TLS?

tls2.png

tls.png

1 Reply 1

Arne Bier
VIP
VIP

@JustTakeTheFirstStep - PEAP uses an outer TLS tunnel in which the "inner" methods are transported - e.g. MSChap-v2 and also, EAP-TLS. But I have not seen Windows supplicants using EAP-TLS as the inner method when EAP-PEAP is chosen during a connection to an SSID. But when you manually configure the WLAN, EAP-TLS is an option, as shown below from Windows 11. 

PEAP.png