Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,
I have a customer that is wanting to use user authentication with user certificates (wired and wireless). ISE is joined to their domain and providing the RADIUS authentication. When ISE receives a user cert it learns the name from the CN or SAN f...
we're using eap chaining with both user and machine certs. Because the customer does not have the required information in the same fields consistently for both certs, selecting any single option fails, or fails user / passes machine, fails machine / ...
hi Paul, I couldn't see the attachment with your post, but looks like we have a fix. Your suggestion about the identity source on the cert profile was spot on. Changing this from the default CN to 'Any Subject or Alternative Names Attributes' option ...
thanks for the reply Paul and Arne. The issue here is that the customer AD accounts look like that attachment. You'll see in this example that 'martin.ferguson@lab.local' is the user logon name, but the pre-Windows 2000 name is actually 'fergusma' - ...