cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
822
Views
0
Helpful
4
Replies

AD Auth SSID on C9800

ToddLewis13460
Level 1
Level 1

I am looking to configure an AD authenticated SSID on a C9800 WLC.  In the past I have been able to successfully do this from the 5500 series controllers to a Windows NPS server.  However when I try and configure the C9800 with a Windows NPS server I get an error on the server that says that it cannot process this type of EAP request.  Can I set this up this way or does the C9800 only authenticate to the ISE product?

4 Replies 4

marce1000
VIP
VIP

 

  - What's the software version on the 9800 and or use the most recent release to verify this issue.

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

software version is 16.12.03.

9800 should support any RADIUS server, not limited to ISE. You require to configure the same shared secret on 9800 and NPS.

Hope you follow the configuration guideline for 9800 given below

https://www.cisco.com/c/en/us/support/docs/wireless/catalyst-9800-series-wireless-controllers/213919-configure-802-1x-authentication-on-catal.html 

 

As long as you configure NPS for basic client auth/authorization policy it should work. Below post may give some idea how you should configure NPS

http://wifinigel.blogspot.com/2014/03/the-microsoft-network-policy-server-nps.html 

 

HTH

Rasika

 

Try with 17.4.1 like marce100 suggested.  Features and fixes having been coming thick and fast in the 9800 code.

Review Cisco Networking for a $25 gift card