Questions tagged [802.1]

IEEE Standard for port-based Network Access Control

141 questions
1
vote
0 answers

Using airport extreme as an AP with true bridge mode (forwarding 802.1x auth)

So here is my setup. I have a Router (Fortigate) 4 airport Extreme, and a radius/ldap server on a distant server. I want my user to authenticate with the radius or LDAP server, and be able to create specific policy for each person on the…
Xarouma
  • 53
  • 7
1
vote
2 answers

Windows 802.1X WiFi First Login To Domain Laptop

So I have my Windows laptops using 802.1X for authentication to connect to my WPA2-Enterprise WiFi network. This works well except for one edge case. These laptops are Windows 7 Pro and Windows 8 Pro. As a background, I have only been able to get…
David Mackintosh
  • 14,223
  • 6
  • 46
  • 77
1
vote
1 answer

EAP-TLS: is it possible eavesdropping when sharing client certificate?

I want to know how to share a network of WPA2 enterprise with EAP-TLS, authenticating users with a common certificate. They share the same certificate. I'm afraid they can monitor each other. Is that possible? In EAP-TLS, do clients encrypt…
jumeno
  • 25
  • 6
1
vote
1 answer

802.1X port-based wired NAP Enforcement

I'm learning about NAP enforcement in Windows Server 2008 R2. I am unable to grasp how to enforce NAP based on port. I understand that 802.1x wired NAP Enforcement uses switches to decide whether computers is compliant enough to go on network, or…
Glowie
  • 169
  • 3
  • 11
1
vote
1 answer

"Certificate not trusted error" for eap-tls

I'm setting up freeradius as the authentication server for 802.1x. While testing the config using rad_eap_test, the server returns the following error: [tls] <<< TLS 1.0 Handshake [length 0491], Certificate --> verify error:num=27:certificate not…
1
vote
1 answer

What network/device info can be obtained from an iOS device connected to an 802.11u-enabled access point?

In order to perform some device security validations, I need canonical references to what device/hardware/network information can be obtained from an iOS device connected to an 802.11u-enabled access point. There are of course your typical network…
1
vote
2 answers

How to limit user's access to a specific NAS?

I'm new to RADIUS and I have just set up a very basic FreeRADIUS server for 802.1x (WPA). I use EAP, MySQL as backend with daloRADIUS as webGUI (for user management, mainly). I got two WiFi networks, one private network and a guest network. Now I…
Compizfox
  • 375
  • 1
  • 6
  • 17
1
vote
1 answer

Is IEEE802.11 preamble a null frame?

I'd like to know if preamble is a null frame. One person has quoted such in this forum. But, in many other websites, it is given that it is some part of information needed to receive and transfer data. Could you kindly clarify me?
Gomu
  • 113
  • 6
1
vote
0 answers

802.11n router supporting 802.11n as WAN connection?

I have an existing 802.11n WLAN router with an Ethernet connection as its upstream WAN connection (router A). I would like to get another 802.11n WLAN router (router B) and have it use router A as its upstream WAN connection. Router B needs to…
noctonura
  • 443
  • 1
  • 4
  • 10
1
vote
1 answer

MAB and 802.1x Issue - MAB-authenticated device gets dropped

I'm trying to use 802.1x to authenticate clients on my network with dynamic VLAN assignment from RADIUS. We have IP-Phones(powered by PoE) that only supports EAP-MD5, and we would rather use MAB(it also uses LLDP-MED for some settings) to…
Frode F.
  • 111
  • 1
  • 5
1
vote
0 answers

Windows 7 802.1x wired authentication to domain with single sign on

I'm doing some research here regarding possible implementations of 802.1x wired authentication with single sign on - domain username/password is used for 802.1x authentication. Initially user is connected to the network through VLAN without DHCP or…
Vieplis
  • 43
  • 1
  • 7
1
vote
1 answer

Enterprise Wireless Authentication without Active Directory

We are in the process of redoing our wireless access network and would like to know if there is any method to get Windows clients/users access to the network using 802.1x WITHOUT having an Active Directory server for authentication and WITHOUT…
ank
  • 700
  • 5
  • 13
1
vote
2 answers

VMWare vsphere 4.1 - how to allow 802.1q vlan tagging?

I read this KB article: http://kb.vmware.com/selfservice/microsites/search.do?cmd=displayKC&docType=kc&externalId=1003806&sliceId=1&docTypeID=DT_KB_1_1&dialogID=395552540&stateId=1%200%20395566747 and this kb…
TheCleaner
  • 32,352
  • 26
  • 126
  • 188
1
vote
1 answer

802.1x, what is meant by "port-based"?

I'm reading about 802.1X, mainly on Wikipedia, but can't quite get it. So here is a very basic question: What is meant, when they say that 802.1X is "port-based"?
1
vote
2 answers

Windows XP will not connect to Enterprise Wireless

We run a Radius server (Windows Server 2008 R2 running NPS). My goal is to push out GPOs to wireless users with the network information. I am successfully doing this with Windows 7 clients, iOS clients, and Android clients, but Windows XP is…
Luke
  • 51
  • 3