cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1154
Views
0
Helpful
1
Replies

Advice needed for WAP4410n to authenticate using active directory ?

1130wireless
Level 1
Level 1

Hello,

We have a couple of Cisco WAP4410n newly purchased for our organisation.

1)We already have a windows 2003 active directory with domain and users.

2)We have installed a machine with ubunto linux.It has freeradius configured

in it.we have also installed the certificate server in this machine.

3)we have given the linux machine's ip to the freeradius settings in  wap4410n.

4)Our logic is that when a wireless users tries to connect to wap4410n the linux

   free radius server will communicate with the windows active directory and grant

   access to the wireless user.

However when we try to connect a wireless user we are getting certificate related

errors.

Can someone advice us on the settings (PEAP and certificate issues) with respect to freeradius and wap4410n

so that the active directory users can be authenticated.

Thanks & regards.....

1 Reply 1

Nicolas Darchis
Cisco Employee
Cisco Employee

Hi Sabeesh,

if you get a certificate warning, then you should check what it is complaining about.

-If you go for PEAP, you're supposed to install a certificate on the radius server and to have the clients to trust it.

-Usually people configure the windows peap client to NOT validate the server certificate, which bypass this problem. However a certificate still has to be installed on the Radius server but it can be invalid.

Hope this helps

===

Don't forget to rate answers that you find useful

Review Cisco Networking for a $25 gift card