IAS Server Event ID 3: Reason Code 5 - WLAN Authentication failure



Hi, i am looking for some help with a recent issue with our RADIUS/
WLAN problem.

I recenty configured a test WLAN to use RADIUS/CA/AD authentication.

Getting it all working was not too bad, and in fact it worked for over
one month. In the last week however, i cannot get any client machines
to authenticate. The wireless connection will hang at 'waiting for
authtication' and then fail miserably! As fas as i can recall i have
not made any chnages that would affect this authentication.

I am getting the loowing event in the IAS server logs:

Event Type: Error
Event Source: IAS
Event Category: None
Event ID: 3
Date: 29/04/2009
Time: 14:11:19
User: N/A
Computer: WMESEC01
Description:
Access request for user \ was discarded.
Fully-Qualified-User-Name = \
NAS-IP-Address = 147.114.179.99
NAS-Identifier = 001c10667328
Called-Station-Identifier = 001c10667328
Calling-Station-Identifier = 00166fbca417
Client-Friendly-Name = WAP01
Client-IP-Address = 147.114.179.99
NAS-Port-Type = Wireless - IEEE 802.11
NAS-Port = 15
Proxy-Policy-Name = Use Windows authentication for all users
Authentication-Provider = Windows
Authentication-Server = <undetermined>
Reason-Code = 5
Reason = The user account domain cannot be accessed.

For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 00 00 00 00 ....

Intially i found a hotfix, in KB Article Number(s): 946813 - this did
not resolve the issue.

I have been looking ion the IAS logs but the last entry was over one
week ago for some reason even though i have been attempting to connect
to WLAN today, so i cant see whats going on - its like the
authentication request isn't making it to IAS.

From the IAS server i can contact DC no problem. I also use Portqry to
verify port is open for 389.

Certificates are on the client machines in question in Trusted Root
Cert Authorities, using GPO. RADIUS access policy has not chnaged
since it was originally working.

I am struggling where to look next with this.

I would appreciate any suggestions!

Cheers,

Colin Laurie


.



Relevant Pages

  • IAS server akzeptiert nicht Anmeldung
    ... Ich versuche eine "802.1X Port Authentication with Microsoft's Active ... sprich den IAS "Internet Authentification Server" als radius server ... Ich starte auf dem Computer das wLan, ...
    (microsoft.public.de.german.windows.server.networking)
  • Re: Oddball IAS Issue - sees login ID as MAC and fails to auth wir
    ... Yes - a Cisco WLAN 4400 controller and two models of Cisco AP's. ... Proxy-Policy-Name = Use Windows authentication for all users ...
    (microsoft.public.internet.radius)
  • IAS Server Event ID 3: Reason Code 5 - WLAN Authentication failure
    ... Apologies for posting in AD group but i am hoping there is an IAS ... I recenty configured a test WLAN to use RADIUS/CA/AD authentication. ... Reason = The user account domain cannot be accessed. ... Certificates are on the client machines in question in Trusted Root ...
    (microsoft.public.windows.server.active_directory)
  • Re: Wireless network connection
    ... > Network Authentication: Open ... > Network Name: WLAN ... Got no IP from the dhcp. ...
    (alt.os.linux.suse)
  • Support 802.1x of LAN on Windows CE
    ... I can see the 802.1x authentication for LAN not only for WLAN, ... Does it mean CE can not support 802.1x authentication for LAN? ...
    (microsoft.public.windowsce.embedded)

Quantcast