Re: EAP VPN PPC 2003

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance

From: afh3 (afhiii_at_hotmail.com)
Date: 03/26/04


Date: Thu, 25 Mar 2004 19:44:40 -0600


"Jacco de Leeuw" <jacco2@dds.mil> wrote in message
news:uePktIsEEHA.3976@TK2MSFTNGP12.phx.gbl...
> > I pulled a certificate from my Win2k CA and
> > imported it into the PPC with no problems. Now I just can't figure out
how
> > to get the VPN client configured to use that certificate in EAP
> > authentication mode.
>
> Which EAP exactly? PPC2003 supports PEAP and EAP-TLS.
> One difference is that EAP-TLS requires a Personal Certificate.

The EAP I'm referring to is "SmartCard or Other Certificate" EAP. Not PEAP
and not EAP-TLS.

As far as I can tell, the support you refer to is getting wireless access
point authentication, and not VPN authentication via RADIUS (utilizing the
RAS and Internet Authentication Services in Win2000.)

I could be wrong, here, but I can easily see the wireless authentication
schemes that utilize certs, just not the VPN config for EAP connections that
use them.

-afh3



Relevant Pages

  • EAP VPN Authentication
    ... all works well with my laptops -- I can VPN into the domain via EAP ... authenticated RAS using the certificate that I have setup on the machines. ... using the one login that I have left with MSCHAP authentication -- using ...
    (microsoft.public.pocketpc.wireless)
  • EAP VPN PPC 2003
    ... all works well with my laptops -- I can VPN into the domain via EAP ... authenticated RAS using the certificate that I have setup on the machines. ... using the one login that I have left with MSCHAP authentication -- using ...
    (microsoft.public.pocketpc.wireless)
  • Re: PEAP-TLS vs EAP-TLS
    ... "Protected EAP is an authentication method that uses TLS to enhance ... which uses certificates for server authentication and password-based ... the benefits of PEAP-TLS relative to EAP-TLS. ...
    (microsoft.public.windows.server.security)
  • Re: EAP VPN PPC 2003
    ... > I have my Win2k domain setup with RAS PPTP VPN with certificate-based EAP ... > using the one login that I have left with MSCHAP authentication -- using ... I pulled a certificate from my Win2k CA ...
    (microsoft.public.pocketpc.wireless)
  • Re: [fw-wiz] Secure access to LAN resources (WAS: terminal services)
    ... > encrypted tunnel. ... VPN devices are designed to do strong authentication. ... It's always a trade-off between risk and protection. ...
    (Firewall-Wizards)