08-20-2012 08:47 AM - edited 07-03-2021 10:33 PM
How can I setup the WLC to accept authentication based on the device itself and not a user?
08-20-2012 08:51 AM
Do you have an AAA server that you will be backending to for the machine accounts?
the config on the WLC doesn't change if you do. It all depends on the EAP config you have on the AAA server.
HTH,
Steve
-----------------------------------------
Please remember to rate useful posts, and mark questions as answered
08-20-2012 05:39 PM
Can you plz clarify more
What is the auth type that you want to use?
Sent from Cisco Technical Support iPad App
08-21-2012 06:40 AM
Customer wants to authenticate against LDAP based on the device itself, not any particular user. He has the computers in AD that he wants to have access to the wireless with, some are Windows CE type devices. He has Windows Server 2003.
08-21-2012 06:51 AM
LDAP to AD does not work well from the WLC, as AD stores the password in a non-reversable format.
You'd be better off promoting the 2k3 server to run IAS and doing the authentication from there.
HTH,
Steve
-----------------------------------------
Please remember to rate useful posts, and mark questions as answered
08-21-2012 11:18 AM
I guess you mean machine authentication, not user authenticatoin, right?
the answer will be "No". This is not supported with LDAP unfortunately.
You need to enter the username and the password to authenticate.
If you want machine authentication you can use MS IAS/NPS or Cisco ACS.
HTH
Amjad
08-21-2012 11:30 AM
Yes, Machine auth. So is there a good example based on Windows, and not ACS? Customer is not going to purchase an ACS for this.
08-21-2012 11:39 AM
Well, you better visit microsoft forums and ask there. It is almost a checkbox to check in the NPS policies to enable machine authentication but I have no idea how to go to that piece of configuration.
HTH
Amjad
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide