Questions tagged [802.1]

IEEE Standard for port-based Network Access Control

141 questions
1
vote
2 answers

Can I use wireless 802.1x authentication on windows for client machines that are not in the domain?

First off, I am not a sysadmin, so feel free to correct any mistakes in my question. We have a Windows Server 2008 R2 domain with 802.1X authenticated wireless access for laptops with Windows 7 installed. Most of the laptops are in the domain, but…
stombeur
  • 125
  • 1
  • 6
1
vote
2 answers

Can a device (WAP or switch) be configured as an 802.1x supplicant?

We are looking at implementing 802.1x on a wired/wireless network. What I am looking for is a device that can act as a supplicant and once authenticated on the network, is able to pass traffic from any downstream connected device. The point of doing…
Allan Ross
  • 11
  • 2
1
vote
0 answers

How to Implementing wired 802.1x in Win2k3 R2 and Windows XP SP3 Client

I just add this .ldf filesMicrosoft AD Extenstions that MS suggest for extending Windows Server 2003 GP to support 802.1x security policy over Wired. both file successfully installed, but I cannot find any changes in Win2k3 GPO. where those policy…
user19049
  • 487
  • 2
  • 13
  • 25
1
vote
1 answer

HP/3com 9552 802.11n AP won't let some clients connect

I splurged and bought an HP/3com 9552 802.11a/b/g/n access point. Like most enterprise-grade access points, it has very fine-grained configuration options. I'm pretty sure I've configured it correctly for WPA/WPA2 with CCMP/TKIP encryption using a…
Barry Brown
  • 2,392
  • 4
  • 22
  • 23
1
vote
1 answer

How to redirect http trafic from different VLANs?

Is there a way to match VLAN ids and redirect such http traffic to webserver (?? iptables)? And when at webserver, rewrite URL according to VLAN id? I would need such thing because our network implements number of VLANs with 802.1x and we would like…
zeratul021
  • 359
  • 1
  • 5
  • 18
1
vote
2 answers

Is browser based wireless authentication secure?

Our wireless network previously used a preshared WPA/WPA2 key for guest access, which allows them access to the Internet. (Our employee access uses 802.1x authentication). We just had a wireless consultant come in to fix various wireless issues we…
johnnyb10
  • 655
  • 4
  • 13
  • 28
1
vote
1 answer

Switches with 802.1x "supplicant timeout" feature?

I'm looking for a complete list of switches which will allow 802.1x and normal (non-supplicant) enabled hosts to connect to the same ports on a switch. This is useful for areas where there are semi-open ports such as a lobby area or a library where…
chris
  • 11,784
  • 6
  • 41
  • 51
1
vote
1 answer

Vista Enterprise doesn't find logon servers in a network with 802.1x authentication

In a network with 802.1x configuration and a samba server configured in the domain, I have a radius server that delegates the authentication against the samba domain for users (using LDAP). The radius defines which VLAN the user is supposed to have…
jneves
  • 1,043
  • 6
  • 15
1
vote
2 answers

8021x wireless clients auto connect prior to user login

I am using a 2008 r2 dc that also performs Radius (NPS), I also have a 2008 r2 certificate authority which is giving out certificates. The computers are getting the certificate and when a user logs into the device (that has previously logged in)…
JohnyV
  • 938
  • 4
  • 26
  • 45
1
vote
1 answer

802.1X Chicken or the Egg?

I'm reading about 802.1X and WPA-2 Enterprise and how to set up it. I've read briefly about the different EAPs and understand that EAP-TLS is the better method of authentication due to the use of client and server certificates. However I'm…
1
vote
3 answers

Is it possible to apply firewall on LAN to LAN packets with just PfSense and a layer 2 switch?

Is it possible to apply firewall rules on LAN to LAN packets? Imagine the following architecture: To get a valid IP, the clients must authenticate to PfSense LAN network using 802.1x against the pfSense's radius server. After that all packets sent…
0
votes
0 answers

Can NPS, RADIUS, and 802.1x Assign Multiple VLANs To A Single User?

I will be using Network Policy Server (NPS) with a RADIUS server to assign each user to a VLAN when they successfully authenticate to the network using 802.1x. In Active Directory Directory Services (AD) there will be users that are members of…
Bill Vallance
  • 227
  • 2
  • 7
0
votes
1 answer

Some Macs not authorizing via 802.1x

Hello I have a really weird issue with some macs not being able to connect to 801.1x in some areas on campus. They however can connect in other places on campus. The configs for both switches are the same and we cannot figure out what is going on.…
0
votes
1 answer

(Mass-)configure network interface for 802.1X EAP-TLS, no Windows Domain

I'm trying to prepare a decent amount of Windows 7 computers for wired 802.1X deployment. I have it working already in a test setup, but I need automation. There are two prerequisites; a) enabling a specific service; b) configuring 802.1X on the…
fstd
  • 141
  • 4
0
votes
1 answer

Will an IIS SelfSSL certificate still be valid when the signing server is replaced?

Will my 10 year valid self-signed certificate, that is using a common name not resembling any hostname, still be valid/trusted by others in the AD, after the signing server is replaced in maybe a few years? It will be used for 802.1x…