cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1801
Views
0
Helpful
8
Replies

Workgroup Bridge using WPA2 Enterprise

dderbowka
Level 1
Level 1

Have a few ideas to buy IP Cameras. Most of which are Ethernet Connected and none use WPA2 Enterprise. Whixh isnt any big deal.

 

I have several old stock 1142N Access Points which I have Autonomous firmware on them which I would be mounting nearby for easy Ethernet Access.

 

How do I configure the 1142N to authenticate to my WPA2 802.1x Network? 

I have tried AP Authentication with the proper Username and Password. No luck with anything. 

8 Replies 8

Rasika Nayanajith
VIP Alumni
VIP Alumni

Hi

 

Have a look at below post, it should help you

https://mrncciew.com/2018/05/25/wgb-with-peap/

 

HTH

Rasika

*** Pls rate all useful responses ***

Is there a GUI version?

Maybe, but the 1142 have a horrible web interface. You're better of using the CLI, also for troubleshooting.

Believe I found the issue. Server 2012 is not providing a Certificate to the AP when I command the request for it. At the same time can't figure out how to get it to!

Does anyone know or have the familiarity with the certificates section of server 2012? 

I cant seem to get the "CA" active so I can load it to the AP's.

 

Browing to the URL in which the AP's seek the CA from just returns a "404 Not found"

If you are gonna use PEAP with MS-CHAPv2, you don't need a CA, but your Radius needs to have a certificate installed. I'm not sure if it's required to be valid or not, but at least a self-signed with the correct hostname doesn't hurt.
That certificate is then selected in the NAP profile properties. Here a configuration example: https://www.gypthecat.com/how-to-configure-windows-2012-nps-for-radius-authentication-with-ubiquiti-unifi Chapter 3 shows how to select the certificate on the Radius. For this you first have to generate and install one. You could use openssl for this, if you don't already have a CA in the company.

Did some digging. 
On the CLI of the AP I am getting this error message.
Aug 31 17:51:34.904 -0500: %DOT11-4-CANT_ASSOC: Interface Dot11Radio1, cannot associate: No Response
Aug 31 17:51:38.904 -0500: %DOT11-4-CANT_ASSOC: Interface Dot11Radio1, cannot associate: Rcvd response from a40c.c3d1.55ef channel 100 17093

Alright. 
On the controller See the Screenshot.
.

It didn't successfully Authenticate it seems (second screenshot on the right side Auth).
I sadly don't know WGB in detail, so I can't really help more.
One thing though, on the first screenshot is written "WEP Enable", do you have WEP enabled on that SSID? I don't think so, but just to be sure, it should not be enabled on the SSID.
Review Cisco Networking for a $25 gift card