802.1x Authentication over Wireless



I have implemented 802.1x with certificates in my Windows domain. I am
able to autoenroll computers and user certificates at login if they
are connected to the wire. Is it possible for the computer to push the
user certificate over the wireless link. I don't want to have my users
log on with the wire before they can connect onto the wireless. The
machine connects as a computer to the wireless and allows a domain
account to login. Once the domain account logs in, the wireless
disconnects with "Windows was unable to find a certificate to log you
on to the network XXXXXXX".

I can't really see why if the certificate was already issued to the
user and is published in Active Directory, why it IAS server can't
provide the certifcate to the machine and connect the user to the
wireless network.

My IAS is using Server 2003. My Certificate Authority is on another
Server 2003 machine. I am using Cisco Access Points controlled by a
Cisco WLAN Controller.

Please help.
.



Relevant Pages

  • Re: Wireless connection problem from XP Pro SP2 to SBS 2003
    ... As long as you're sure the certificate is properly installed on the PC, I guess the priority would be to get wireless working, then worry about the auto enrollment later. ... compare all the settings between the non-working PC and the one that works. ...
    (microsoft.public.windows.server.sbs)
  • Re: Wireless EAP Problem
    ... We setup Enterprise WPA2 with IAS as authentication. ... Any domain users just logon their domain user IDs without configuring computer certificate. ... Since sensitive patient info is sent over the wireless network it is essential that the communications be highly secure. ... I can easily change to PEAP in the remote access policy for IAS. ...
    (microsoft.public.windows.server.networking)
  • Re: Wireless WPA on SBS not authenticating
    ... I manually updated the cert on my client machine just fine. ... Automatic certificate enrollment for local system failed to contact the ... Enrollment will not be performed. ... certificate then tested on wireless. ...
    (microsoft.public.windows.server.sbs)
  • Re: Wireless connection problem from XP Pro SP2 to SBS 2003
    ... wireless NIC driver, ... But none of this gets to why the auto enrollment is failing. ... If IAS is logging failure, you're probably back to the certificate, or you ... However, that said, in the interest of getting the workstation connected, ...
    (microsoft.public.windows.server.sbs)
  • Re: WM5 PEAP with Certificates
    ... to connect to our wireless with my Axim x51v. ... in the trusted root certificate area. ... using TKIP encryption and then PEAP, if I hit the properties button for PEAP ... EAP/TLS and you do need a user and root cert on the device. ...
    (microsoft.public.pocketpc.wireless)