[c-nsp] Question about PEAP Radius certificate export (IAS 2003 versus NPS 2008) for Wireless 802.1x WLC

Ryan West rwest at zyedge.com
Fri Jun 11 08:33:29 EDT 2010


Manu,

> -----Original Message-----
> Sent: Friday, June 11, 2010 7:27 AM
> To: cisco-nsp
> Subject: [c-nsp] Question about PEAP Radius certificate export (IAS 2003
> versus NPS 2008) for Wireless 802.1x WLC
> 
> By default, is the CA certificate exported to XP clients on the wired Microsoft
> network domain?
> 
> When i manually imported the CA certificate on a XP computer, Wireless
> 802.1x works fine but by default it seems certificate are not exported on the
> Microsoft Domain :(
> 
> Is it correct? How can we automatically export CA certificate for all wired
> users?
> 
> Any sucessfull 802.1x deployment recommandation with NPS 2008 are
> welcome, not find NPS update of the Cisco PEAP documentation with IAS?
> 

I wasn't able to find anything like the old PEAP 1.6 zip either.  Root CA's in a MS domain _should_ be automatically trusted, but it's hard to tell exactly what steps were followed.  Just add the root certificate to your WLAN GPO and distribute it there or domain wide.  The more challenging part, NPS, sounds like it's already done.

-ryan 



More information about the cisco-nsp mailing list