I want to replace the SSL certificate that is used for PEAP on our NPS server that is doing RADIUS authentication for our Cisco WLCs. The current certificate is a SSL certificate that does Client Authentication and Server Authentication. We want to replace it with a wildcard that we use elsewhere in our domain to streamline management of our SSL certificates.
I read the Microsoft document here that outlines the requirements for using a 3rd party certificate with PEAP. The wildcard that we are using meets all of them. Microsoft support has been unable to resolve this issue for two business days now and their only response is: "it must be a problem with the certificate," but they cannot tell me specifically what about it is wrong, since it meets all of those requirements.
While my case is being escalated, I did some research and other people have had issues using 3rd party certificates with PEAP on an IAS/NPS server doing RADIUS. There has been no official response from Microsoft, as far as I can tell. Does anyone know for sure if a wildcard certificate can be used for PEAP?