04-11-2022 08:41 PM
Hello,
Looking for a very high level explanation. I am trying to accomplish:
Tablet wirelessly connecting to existing RADIUS through VWLC
I need the certificate to be machine based, not user based. I think. I know the tablet needs to connect automatically without prompting for a user name and password.
I am using WPA2 Enterprise Security
I am looking for direction on how to generate the necessary certificates so that the tablet is authenticated by the RADIUS server when connected.
What certificate template do I use?
Do I generate the certificates through the VWLC?
Where do I store the certificates? Does it have to be on VWLC and tablet? Or just tablet?
Thank you,
John
Solved! Go to Solution.
04-12-2022 02:47 AM - edited 04-12-2022 03:59 AM
as others mentioned you need a PKI infrastructure.
What certificate template do I use?
workstation authentication template, when you go to manage template
Do I generate the certificates through the VWLC?
No, vWLC is not a certificate authority.
Where do I store the certificates? Does it have to be on VWLC and tablet? Or just tablet?
the client cert will be stored on client machine, server certificate will be on your Radius server, they both also need certificate authority root certificate to trust each other.
See this video it might help.
Hope this helps
04-11-2022 08:51 PM
HI,
What radius server are you using, Cisco ISE or Microsoft NPS?
The following doc should explain certificate based authentication and how to configure it.
Thanks
John
04-11-2022 09:15 PM
04-11-2022 10:24 PM
Hi,
You will need to configure your Microsoft infrastructure to support certificate authentication. Check the following docs:
Use the doc i previously attached for the cisco Wireless controller configuration.
Thanks
John
04-12-2022 02:47 AM - edited 04-12-2022 03:59 AM
as others mentioned you need a PKI infrastructure.
What certificate template do I use?
workstation authentication template, when you go to manage template
Do I generate the certificates through the VWLC?
No, vWLC is not a certificate authority.
Where do I store the certificates? Does it have to be on VWLC and tablet? Or just tablet?
the client cert will be stored on client machine, server certificate will be on your Radius server, they both also need certificate authority root certificate to trust each other.
See this video it might help.
Hope this helps
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide