Re: iPaq 5555 WPA Authentication

From: Eric Hicks [MVP, Windows Mobile devices] (i'm_at_home.with.u)
Date: 01/31/05


Date: Mon, 31 Jan 2005 10:20:57 -0500

Auto-enrollement would leave the certs on the machine. The whole process of
auto-enrollment is used to give the network admin some slck when it comes to
certificate distribution. Basically when a new machine is joined to the
domain auto-enrollment will issue a cert for the machine and when the user
logs on it will issue one to the user. After that the cert should always be
on the machine. Do you know if perhaps they are just using WPA with TKIP?

-- 
-- 
Eric Hicks [That_Kid] (MS-MVP Mobile Devices)
The MS-MVP Program - http://mvp.support.microsoft.com
This posting is provided "AS IS" with no warranties, and confers no
rights...
"Ronald" <rwhng@rogers.com> wrote in message 
news:e8wjn4uBFHA.2608@TK2MSFTNGP10.phx.gbl...
> Hi,
>
> I have the exact problem as David with my Ipaq 4150
> when I try to connect to the AP @ work.
>
> I think what Eric said made sense.
> So I talked to my IT about it but they insisted we don't have
> certificates - auto or otherwise.
>
> Eric, I don't suppose these 'auto-enrollement' you speak of, will leave
> behind
> personal certificates?
>
> The reason I ask is because I've checked the laptops there were able to
> connect and they don't have any personal certificates stored.
>
> TIA.
>
> Ron
>
> "Eric Hicks [MVP]" <i'm@home.with.u> wrote in message
> news:1105899219@i'm.home.with.u...
>> Reply to message from "DWO" <davidwoliver@ntlworld.com> (Sat, 15 Jan 2005
>> 19:30:46) about "iPaq 5555 WPA Authentication":
>>
>> It sounds like you need to add a user certificate to access the ap, you
>> will need too get with your IT dept and get the cert then use hp's cert
>> import utility to get it on the device. After that you should be fine. If
>> your office is running active directory on 2003 servers all windows pc's
>> and laptops can do auto-enrollement but the pocket pc can't so you have 
>> to
>> add the cert manually.
>> ---
>> Eric Hicks [MVP, Mobile Devices]
>>
>> ----- Original Message -----
>> From: "DWO" <davidwoliver@ntlworld.com> Sent: Sat, 15 Jan 2005 19:30:46
>> Subject: iPaq 5555 WPA Authentication
>>
>> Hi,
>> I've recntly read some similar postings, but none quite fit my problem. 
>> My
>> iPaq 5555 has all the latest ROM and driver updates as far as I can work
>> out. My wireless office lan is working fine with WPA TKIP. The only 
>> device
>> that won't connect is my iPaq. It detects the network SSID etc and
>> registers a healthy signal, but will not actually connect. It would seem
> to
>> require a certificate. In the 802.1x tab when properties is clicked, it
>> states it
>>  > Cannot log on to the wireless network. This network requires a
>>  > certificate
>> etc etc<
>> Anyone got a clue please, Regds,
>> David
>
> 


Relevant Pages

  • RE: WAS: Bittorrent - utorrent NOW: Certificate Talk
    ... Subject: WAS: Bittorrent - utorrent NOW: Certificate Talk ... is barely more trustworthy than a self-signed cert. ... opportunity to exclude a network from checks, ... you trust the issuer to begin with, ...
    (Focus-IDS)
  • Re: How to change "Common Name" field in a self-signed certificate on SBS 2003
    ... Common names cannot really be changed - its hashed into the cert. ... I need a little help in sorting out where to 'change' the certificate ... Network and Security Systems Professional ... Aboriginal Computer Solutions Ltd. ...
    (microsoft.public.windows.server.sbs)
  • Re: CA Role in 802.1x
    ... users able to authentication and login to the network? ... IAS does make sure that it trusts the issuer of the certificate, ... the CA that issued the connecting user or client cert, ...
    (microsoft.public.internet.radius)
  • Requesting an computer certificate for a off-line client
    ... I want to be able to create a certificate request for a computer that is ... All methods for obtaining a cert assume that network connectivity is ... My client is using a wireless adapter and requires a computer cert to get ...
    (microsoft.public.win2000.security)
  • Re: ADFS Token-signing Certs Not in Trusted Root Store
    ... This is good info, Joe. ... So now I know that the token-signing certificate is ... Get a signing cert from a CA ... case, you never have to worry about expiration or CRL checking, as your cert ...
    (microsoft.public.windows.server.active_directory)