PEAP using Passwords, Logon Script not running
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-18-2005 08:55 AM - edited 07-04-2021 10:28 AM
I am trying to get our wireless network up. I am using PEAP with MS-CHAPv2, ACS 3.3, 1100 series access points, WDS, Dell internal centrino cards, and Active Directory for user login. We currently are not using Group Policys but running logon scripts through the user profile. The problem I am having is that the logon scripts are not running. I first thought it was because machine authentication was not working but I got that to work but still no luck. The user logs in to the wireless network fine using the domain account. The machine also successfully authenticates. Just not sure why logon scripts are not runnning. Should I be using PEAP with client side certificates instead? Does Cisco ACS support Microsoft PEAP with client side certs?
Also, when using machine authentication the host name of the machine gets dynamically mapped in ACS user database. When someone gets prompted to type in their wireless credentials could they put the hostname of the computer in the username box and then use the local machine password for the user password and get access to the network?
- Labels:
-
Wireless Security
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-24-2005 12:20 PM
Since you are able to authenticate and logon without any problem but the login scripts are not running so you need to contact MS for configuring windows login scripts option.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-28-2005 06:18 AM
Hello ,
I am currently using 1200 Access point .
When I use a PEAP for windows Active Diretory authenticaton , after generation of certificates when i do a FTP from the ACS 3.2 it takes the certificate file but it says unsuppotred file format for the Private key file ,
Have you come across such a error .
Ketan
