Re: 802.1x EAP - TLS authentication with AD Computer Account WM2003/5
- From: "RPK" <news@xxxxxxxxx>
- Date: Mon, 1 May 2006 21:35:26 +0100
Did you get anywhere with this? I would like to do something similar; hence
the interest.
Thanks
Roger
"Roland Knoerl" <RolandKnoerl@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:88212C4C-8031-4BF4-80E8-210995CC8C10@xxxxxxxxxxxxxxxx
Installation:
- Windows 2003 Server with AD and IAS
- AD with computer account (user account not allowed for PDA)
- Computer certificate on PDA with computer account FQDN
- Certificate was installed on the PDA in the certificate store
Hello all,
we were able to install a computer certificate in the certificatestore on
a
Windows Mobile 2003/05 PDA.
We tried to get WLAN access via WPA/TKIP/802.1x, but the IAS-RADIUS-Server
can not find the account for that FQDN in AD.
The problem is, that the IAS always searches for a user account and not
for
a computer account to verify the PDA. The reason for that is, that IAS
does
not get the authentication string "host/accountname.domain.local", the PDA
always sends the "accountname.domain.local" string to authenticate as a
user
and not as computer. We also tried to let the PDA authenticate with a
username like "host/computeraccountname" and its domain. But that also
doesn't work.
Is it possible to let a Windows Mobile PDA authenticate via 802.1x/EAP-TLS
with a computer account and certificate ?
Hope you guys can help us.
Thanks in advance !
Regards,
Johannes and Roland
.
- Prev by Date: Stupid PDA question
- Next by Date: Using BT-headset with qtek 9000: headset not recognized
- Previous by thread: Stupid PDA question
- Next by thread: Using BT-headset with qtek 9000: headset not recognized
- Index(es):
Relevant Pages
|