We have a 4402 that is currently using machine authentication for radius.
Does anyone know how we'd switch it to use user authentication?
If you are referring to management user access of the 4402, simply define the Local management user under the management tab and then under security tab and priority order, ensure the order used is Local first and Radius second or remove it altogether after you have confirmed your local account is setup correctly.
are you using local eap on the WLC ?
if not , then no changes needed on the WLC , all changes should be implemented on the radius server and the end clients ,
This document explains how to configure the Wireless LAN controller (WLC) for Extensible Authentication Protocol (EAP) authentication with the use of an external RADIUS server. This configuration example uses the Cisco Secure Access Control Server (ACS) as the external RADIUS server in order to validate the user credentials.
This document explains how Cisco implements web authentication and shows how to configure a Cisco 4400 Series Wireless LAN (WLAN) Controller (WLC) to support an Internal web authentication.