Using Certificates for 802.1x and VPN accecss

From: Dan (Dan_at_discussions.microsoft.com)
Date: 06/29/05


Date: Wed, 29 Jun 2005 09:25:08 -0700

Hi, I have posted questons regarding 802.1x before but have more questions
which I hope someone can help out. Trying to use WPA-RADIUS on my Dlink
DWL-2100AP wireless AP using EAP-TLS authentication.

In my test environment:
Win2k /SP4 running DHCP, DNS, WINS, IAS and CA as a domain controller. 2nd
Win2k Server running Microsoft ISA Server2000 acting as firewall and RRAS and
a VPN server.

My question is:
1. What certificate should be installed on which server and computer?
2. How do I distribute the certificate to my clients? As far as I
understand, I need to distribute computer and user certificates to my
clients. My preference would be to export it to a diskette and then ship
them to my clients.

TIA, Daniel



Relevant Pages

  • RE: 802.1x Authentication Fails
    ... Reason = The authentication request was not processed because the ... a default certificate is being sent to ... I queried the product team about this and they feel the server certificate ... which is causing the problem that the clients cannot ...
    (microsoft.public.internet.radius)
  • Re: Can this be done? Wireless Access w/o the use if CERTs
    ... a default certificate is being sent to user ... Could not retrieve the Remote Access Server's certificate due to the ... to use EAP-TLS but you don't have a server certificate. ... EAP-TLS requires certificates on clients and on the IAS server. ...
    (microsoft.public.internet.radius)
  • Re: trouble using SSL on WSUS
    ... clients according to the deployment guide. ... I configured the client to use the WSUS server through https. ... Schemes used: ... I've read on serveral sites that the server certificate has to be imported ...
    (Focus-Microsoft)
  • Re: Basic WEP/RADIUS/802.11 (Cisco/MS) question
    ... but I am interested in this whole Radius ... > I see that I can pull a Radius server out of the Microsoft Windows ... Cisco 1200 APs would be the RADIUS clients. ... a third party CA for your server certificate that your clients already ...
    (microsoft.public.internet.radius)
  • Re: subtext search in encrypted text
    ... > * clients access the system by communication with a application server ... both a client certificate and a server certificate. ... How secure is the memory of the phone? ...
    (sci.crypt)