Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Is it possible to limit the EAP-type allowed on an SSID?For example; Allow PEAP authenticated users to access SSID "PEAP-Users", allow LEAP-authenticated users to access SSID "LEAP-Users".but do not allow a LEAP authenticated user access to the "PEAP...
i tried this, and it did seem to work. The LEAP-Authenticating client appeared to "hang" during authentication, and never completed auth. The PEAP client worked just fine. I switched it around, and it still worked.Thanks for your help!
Forgive my simplistic questions, but, how do you configure a single device to use one name for TACACS+ authentication, and another for RADIUS Authentication?
Thanks for the info.That's how I understand it as well. Not broadcasting an SSID won't/can't stop someone from "sniffing" for SSIDs and changing their configuration to join the PEAP-SSID, using LEAP to authenticate.