02-05-2020 04:21 PM
Hi,
Is this doable? Connectivity to APs governed by machine ID certificates provided Enterprise PKI solution?
Solved! Go to Solution.
02-05-2020 05:51 PM
Answer would be a No.
More details on available encryption & Auth modes on Meraki are on this doc.
https://documentation.meraki.com/MR/Encryption_and_Authentication/Setting_a_WPA_Encryption_Mode
Interested to know what is the use case where you want to use the machine ID certs over the other options ?
02-05-2020 05:51 PM
Answer would be a No.
More details on available encryption & Auth modes on Meraki are on this doc.
https://documentation.meraki.com/MR/Encryption_and_Authentication/Setting_a_WPA_Encryption_Mode
Interested to know what is the use case where you want to use the machine ID certs over the other options ?
02-06-2020 09:27 AM
Thank you!
02-06-2020 09:37 AM
Not sure I agree with your "No" here - unless I've misinterpreted something..?
If a customer is looking to have clients connect to a Meraki MR-based SSID using Enterprise 802.1x, with certificates for EAP-TLS, this is supported - but it would need an external RADIUS server to accomplish; the PKI infrastructure would need to issue appropriate certs for both the RADIUS server and all the connecting clients, establishing the necessary bi-directional chain of trust.
Meraki could also achieve something very similar, natively, through use of the new Trusted Access feature, using Systems Manager licensing: https://documentation.meraki.com/zGeneral_Administration/Cross-Platform_Content/Trusted_Access_for_Secure_Wireless_Connectivity
This is usually used for addressing Bring Your own Device (BYoD) requirements.
02-06-2020 11:35 AM
@GreenMan is correct here.
This is a walk through guide.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide