08-11-2025 01:19 AM
We configured EAP chaining for TEAP and enabled certificate-based authentication for both user and machine.
Below are some key points:
Issue: The machine gets successfully authenticated on wired connection and hit the correct policy but when the user log in, it hits the default ACCESS_REJECT policy.
Live logs results:
During machine auth =
EapChainingResult | User failed and machine succeeded |
During user auth =
EapChainingResult | User succeeded and machine failed |
We are not able to achieve User and machine succeeded result.
Any leads will be helpful!
Solved! Go to Solution.
08-11-2025 05:10 AM
Update:
This issue was resolved. There were some mismatch attributes in SAN of the user cert after making some changings the issue was resolved.
08-11-2025 01:52 AM
Do you have such authorization policy for both suceeded?
08-11-2025 02:05 AM
Yes this one.. but i cannot see eap chain result of both succeeded in the live logs when user login
08-11-2025 02:02 AM
only change the order of Authz
1- both success
2- user failed and machine success
this order is write in doc you share and this what I know how you config chain
MHM
08-11-2025 05:10 AM
Update:
This issue was resolved. There were some mismatch attributes in SAN of the user cert after making some changings the issue was resolved.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide