Cisco ISE-CA, Microsoft NPS as Radius and Macbook with Client Cert - Anyone Tried?
Our current setup : Windows Wireless Client , Flexconnect APs drops the client locally in the LAN..Clients gets its certificate from Windows PKI , Uses Windows NPS as Radius. All works well with this setup.
New requirement > Wireless MACbook clients , Uses Cisco ISE as PKI for certificate provisioning instead of Windows ( Windows PKI team doesn't want to support non windows devices).
Provisioning of the client certificates works well, ISE 2.2 can provision certificates to the MACBOOK clients,but Windows NPS (Radius) is not able to validated the client certificate and hence MAC clients not able to connect to the corporate SSID (which works well for Windows). The Root CA was of ISE was imported into the NPS already.
I think the problem for non-working is due to - ISE uses MAC address in the SAN field while NPS is expecting username in the SAN field while validating the certificate.
Anyone has any ideas or suggestion to make it work.
Security has become one of the greatest concerns for every company alike. The industry is moving towards a fast paced and customer-oriented network infrastructure which automatically increases the vulnerabilities a network is exposed to. As the industry t...
We got some new Apple Macbook Air, when connected to wifi, we found the link speed was only 54Mbits, but other laptops like DELL or Panasonic were working fine, the link speed was at least 800 Mbits. we are using Cisco WLC 5504 and 2702I ap.and the funny ...
In today’s world where business needs to be up and available 24X7, one of the major challenges faced by a lot of companies is the seamless uptime of their network infrastructure. Any company’s primary focus is always on keeping its infrastructure ready fo...
As a network administrator keeping up with the methods of today is more challenging, and not relying solely on traditional ways of configuration and management is demanding. APIs have become a buzz word, and supporting it shows that your de...
We’re looking for network operators and engineers to complete a 2-minute icon preference study.
The icon choice will help us better represent information on a Cisco software product.
Click here: https://ciscoux.az1.qualtrics.com/jfe/form/SV_6saOh5...