Cisco CB21AG Installation And Configuration Manual page 90

Aironet 802.11a/b/g wireless lan client adapters
Hide thumbs Also See for CB21AG:
Table of Contents

Advertisement

Setting Security Parameters
Step 3
Check the Use Machine Information For Domain Logon check box if you want the client to attempt
to log into a domain using a machine certificate (before you log on using your username and password).
Doing so enables you to get login scripts, map profiles, implement domain security policies, and so on.
The default setting is checked.
Note
Choose the certificate authority from which the server certificate was downloaded in the Network
Step 4
Certificate Authority drop-down list.
Choose either Token or Static Password, depending on your user database.
Step 5
Note
Perform one of the following to specify the username that will be used for inner PEAP tunnel
Step 6
authentication:
If you want your Windows username to also serve as your PEAP username, check the Use Windows
User Name check box. This option gives you only one username to remember.
Note
If you want to enter a separate PEAP username (which is registered with the RADIUS server) in
addition to your regular Windows username in order to start the PEAP authentication process, enter
your PEAP username in the User Name field.
Note
Step 7
If you chose the Static Password option in
registered with the RADIUS server) in both the Password and Confirm Password fields.
Step 8
Perform one of the following:
If you are finished configuring PEAP (EAP-GTC) for this profile, go to
If you want to implement added security by further refining the network certificate that will be
accepted and controlling the string used to set up the outer PEAP tunnel, follow these steps:
a.
Cisco Aironet 802.11a/b/g Wireless LAN Client Adapters (CB21AG and PI21AG) Installation and Configuration Guide
5-30
If you do not check the Use Machine Information For Domain Logon check box, machine
authentication is not performed. Authentication does not occur until you log on.
If you choose Token, you must use a hardware token device or the Secure Computing SofToken
program (release 2.1 or later) to obtain the one-time password and enter the password when
prompted during the authentication process. Secure Computing PremierAccess release 3.1.1 or
later is the only supported token server.
If you chose the Static Password option in
Name and Password.
Your Windows username is filled in automatically. Simply delete your Windows username
and enter your separate PEAP username.
Click Advanced. The Advanced Configuration window appears (see
Step
5, the check box reads Use Windows User
Step
5, enter your PEAP authentication password (which is
Chapter 5
Configuring the Client Adapter
Step
9.
Figure
5-10).
OL-4211-02

Advertisement

Table of Contents
loading

This manual is also suitable for:

Pi21ag

Table of Contents