cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
955
Views
0
Helpful
2
Replies

Roaming between APs with Radius

jimmy.gibson
Level 1
Level 1

Hi everyone,

Someone told me about this issue this week. I heard that roaming between APs was not possible without reauthenticating when RADIUS authentication is used. This means that you need to reauthenticate yourself to the RADIUS server each time you switch from an AP to another, so you have to re-enter your credentials many times.

Do someone have heard about the same thing? Is there some technical articles discussing about this issue?

Thx, Jim

2 Replies 2

bmcmurdo
Cisco Employee
Cisco Employee

With LEAP authentication, your credentials are cached (encrypted) from when you login to windows.

Wen you LEAP authenticate those cached credentials are used, and when you roam they are used to reauthenticate.

The user is not prompted for username-password when roaming with LEAP.

The best security white-paper is this one;

http://www.cisco.com/warp/customer/cc/pd/witc/ao1200ap/prodlit/wswpf_wp.htm

Well, what if you are not using LEAP. What if you are just using MAC Authentication. Does this pose a problem if you have wireless ip phones that have to authenticate their MAC to the ACS. Is there some sort of delay or will the call possibly drop off when roaming between access points.

-Scott
*** Please rate helpful posts ***
Review Cisco Networking for a $25 gift card