Quantcast
Channel: Network Infrastructure Servers forum
Viewing all articles
Browse latest Browse all 5877

Client authentication working on MS Protected PEAP, failing on EAP-MS-CHAPv2

$
0
0

Hi

Newbie question.

I currently have the setup as follows:

AD CS

Wireless Access Point

NPS

Windows 7 Client

The AD CS Server has the IAS/RAS template configured and has issued a certificate for the NPS server, which is configured to use with MS Protected PEAP authentication. The NPS server has been setup to authenticate RADIUS for the wireless access point. The only constraint is to check that the connection is wireless. No other constraints are present.

The wireless access point has been configured with the shared secret of the NPS server

The Windows 7 client is domain bound and has a Computer certificate issued to it by the AD CS server

============================================================

When I connect to the wireless access point on the W7 client through the "available wireless networks" icon. If I am using Protected MS-PEAP as the authentication method, the computer authenticates with the issued certificate and connects with no problems.

However, I would like to use both username/password and machine certificate in order to validate the connection to the access point. So when I change the authentication type in NPS to EAP-MSCHAPv2 only, the connection fails. I am unable to get any sort of prompt for the username and password.

Can somebody please tell me where I am going wrong with my configuration?

Thanks


Viewing all articles
Browse latest Browse all 5877

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>