06-18-2013 05:43 AM - edited 07-04-2021 12:14 AM
Hi,
I need guidance on configuring 7925G. The WLAN in the WLC has been configured for 802.1x authentication. I am not sure if EAP-TLS or PEAP will be used. If EAP-TLS will be used, a certificate must be installed in the 7925G? If PEAP will be used, a certificate is not required in the 7925G?
Please advise.
Regards,
06-18-2013 07:43 AM
Depends on the Security Mode configured on the 7925 phone.
If you want to use PEAP, then select PEAP. The server side cert can be uploaded optionally via the 792x phone webpage where server validation can then be enabled.
If you want to use EAP-TLS, then select EAP-TLS.
Can use a custom / user-installed cert or the MIC for the client cert.
The server side cert must also be uploaded via the 792x phone webpage.
See the 7925 Deployment Guide for more info.
http://www.cisco.com/en/US/docs/voice_ip_comm/cuipph/7925g/7_0/english/deployment/guide/7925dply.pdf
Sent from Cisco Technical Support iPhone App
06-18-2013 07:44 AM
Also you of course have to ensure the RADIUS server is properly configured for the desired EAP type.
Sent from Cisco Technical Support iPhone App
06-18-2013 09:20 PM
Agreeing with migilles
Just fo your info, PEAP needs only server side PKi certs for secured tunnel however, EAP-TLS needs both client and server side certs.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide