Certificate between Access point and Wireless client

Hi;
is there anyway to configure a certificate between the wireless AP and clients to secure my username and the password.
my setup is WLC5508/AP1142/ACS5.4
I need the client to trust  the certifcate before entering the UN/PW

Hello,
As per your query i can suggest you the following solution-
LAP authorization can be performed in two ways:
Using the Internal Authorization list on the WLC
Using the MAC address database on an AAA server
The behaviors of the LAPs differ based on the certificate used:
LAPs with SSCs—The WLC will only use the Internal Authorization list and will not forward a request to a RADIUS server for these LAPs.
LAPs with MICs—WLC can use either the Internal Authorization list configured on the WLC or use a RADIUS server to authorize the LAPs
This document discusses LAP authorization using both the Internal Authorization list and the AAA server.
For more information refer to the link-
http://www.cisco.com/en/US/products/ps6366/products_configuration_example09186a00808c7234.shtml
http://technet.microsoft.com/en-us/library/cc759077(v=ws.10).aspx
Hope this will help you.

Similar Messages

  • L3 connections between Access points and WLC

    hi,
    we have a customer asking us to configure wireless system as per attached drawing.
     WLC is in Data Center which is connected to Data Center Switch ( Cisco 3850), then this DC-Switch is connected to DC-Core ( Cisco Nexus-7K).
    this Nexus-7K is connected to many campus Networks. in all campuses there is Cisco 4507 Campus Core which is connected to Nexus-7K.
    then from Campus core many distribution switches are connected.
    all Vlans for data and wifi is created in Distribution Switches. Distribution Switches are VTP Servers and many access switches with connected APs are connected back to this Distribution Switch.
    All Access Points are registered at WLC in Data Center, but wifi clients are not getting ip address from DHCP Server, as well as even if we configured static ip address at wifi clients they are not able to communicate correctly.
    please correct me if there is a mistake in this design , or we have a solution to solve this problem please let me know.
    attached topology diagram 
    thanks,
    anvar

    Hey Anvar,
    Too much details about network, to make it simple:
    1- APs and WLC can be in separate VLANs (Not a problem)
    2- As APs have joined, these two VLANs look fine for me
    If your clients can't communicate probably with static IP address
    1- From the WLC, ping default gateway for that VLAN
    2- If the WLC can reach the gateway, its wired VLAN issue that you need to investigate in the path (maybe using wired device in the same VLAN as the clients in the switch where the APs are connected)
    Now, about why the clients are not taking IP:
    1- What is your DHCP, where its located? Is it the same one for all clients?
    2- Do you have local APs or FlexConnect ?
    3- When you run the debugs for DHCP where the process breaks?
    Cheers,
    Nour

  • Connection between lightweight access point and switch?

    Hello everybody,
    I am a bit confused about cisco 1000 series access point connection. On wireless lan controller and lightweight access point basic configuration example document id 69719 (http://www.cisco.com/en/US/products/ps6366/products_configuration_example09186a0080665cdf.shtml), I understood the access point has two vlans associated with (vlan 3 and 4). Am I correct?
    Why is connection between access point and catalyst port just access port rather 802.1q trunk? How vlan traffic can traverse from the access point to controller?
    Please advice.
    Many thanks,
    Nitass

    Nitass,
    The AP itself does not need to be a trunked port, but the uplink to the controller does. When using a Lightweight enviroment, all the traffic passes thru an encrypted LWAPP tunnel from the AP to the controller, and then gets sent out the correct VLAN interface on the controller.

  • Bridge to bridge and bridge to access-point via wireless is it possible.

    here;s my topology i am trying to configure. i have a router whose ethernet is connected to a bridge.this bridge 1 is connected to a bridge 2 via wireless. now i am trying to connect a access-point via wireless to this bridge2. is it possible for bridge 2 to support connectivity to the bridge1 and the access-point both of them via wireless.
    can someone pls help me on this.
    waiting for someone to reply.
    regards
    sebastan

    You can set up each radio in the access point for different functionality. Considering the scenario, this can be done by setting up the SSID for the G radio and another SSID for the A radio. Then, set the role in the radio network parameter for the G radio to access point and for the A radio to the root bridge role.
    ou can prevent unauthorized users from reconfiguring your access point/bridge and viewing configuration information. Typically, you want network administrators to have access to the access point/bridge while you restrict access to users who connect through a terminal or workstation from within the local network.
    To prevent unauthorized access to your access point/bridge, you should configure one of these security features:
    Username and password pairs, which are locally stored on the access point/bridge. These pairs authenticate each user before that user can access the access point/bridge. You can also assign a specific privilege level (read only or read/write) to each username and password pair.
    http://www.cisco.com/en/US/products/ps5861/products_configuration_guide_chapter09186a00804ed6d4.html

  • Access points wont accept clients on 2.4 GhZ

    Hi
    We are having some Issue with some Access Points are dropping clients on 2.4 GhZ radio, the radio is if you SSH to the Access Point "Dot11Radio0 is up, line protocol is up".
    Our setup is 2 x Wism2 controller (7.5), a CPI (1.4), and around 750 Access points of various types (1121, 1131, 1142, 2602).
    If we reset the Access Point from CPI it comes up and it will again accept clients on 2.4 GhZ for a random time period, sometimes it works for some hours, sometimes for a couple of days, total random.
    The once we have seen the problem on is as I know 1142:
    Software Version
    7.5.102.0
    Boot Version
    12.4.23.0
    AP Model
    AIR-LAP1142N-E-K9
    IOS Version
    15.2(4)JA1$
    Hope to get help finding a solution.
    Best regards
    Jørgen

    If you have a high density deployment, you might want to look at your RRM. What is the power set to on the AP's. If the power is set too low, that can cause clients not to see or be able to join an access point. If this is the case, you need to set the min tx power level for the 2.4ghz radio which is under the wireless tab in the 802.11bgn TPC.
    If you have an issue with a certain AP model, it might be a bug, but you didn't mention what model AP is was happening to.
    Sent from Cisco Technical Support iPhone App

  • IOS 6, Netgear access point and Internet

    Hi,
    I’ve reached a point where I’m not entirely sure what to do next.
    Here are some quick details (all are on most recent firmware unless stated):
    Router: Draytek Vigor2830n
    Access Point: Netgear WG102
    Devices: iPhone 4, iPhone 5, iPad 2 and two iPad 2’s for comparison on iOS 5.
    So, all devices running iOS 6.1.3/4 will connect to the Netgear access point just fine, can browse the LAN / stream media from network shares but internet access seems to be 'delayed' and can take anywhere between a minute to 20 minutes to connect (I give up after this). In comparison both the iPad 2’s running iOS 5 will gain internet access immediately after connecting to the access point.
    On the other hand, when connecting to the routers wireless on all devices it works flawlessly and internet connection is 'instant'.
    Given the problems that Netgear wifi has had with iOS 6, which were supposedly ‘fixed’ in iOS 6.1, I’m not sure what to do. It’s definitely a software problem, and could well be something to do with the router (along with connecting to the access point and iOS 6), but I’m not sure what to start changing first. iOS 5 works fine, so what has changed in iOS 6 to break it?
    Its not a security issue like before 6.1 and not being able to connect to the access point at all.
    Basically:
    - I either need to figure what in iOS 6 is causing this ‘delay’ and how to fix it
    -Give up on the access point and buy a new one (seems a bit extreme given that every other devices works fine – iOS 5, blackberry, laptops etc).
    -Wait for iOS 7, hopefully in the next couple of weeks and see if it fixes it, though I can find little information on this issue as it is, and nothing to suggest iOS 7 might help. Though if iOS 5 is fine, iOS 6 broke it and 6.1 slightly fixed it, maybe iOS 7 will cure it? Doubt it…but worth waiting a few days.
    Anyone got any suggestions? I have been through all the usual (HTTP proxy, forget this network, reset network settings), nothing makes it work flawlessly like iOS 5 and the issue is the same on a wide spread of devices running iOS 6.

    Dont know my routerand access point works fine. Try http://support.apple.com/kb/HT4199 and make sure your setting are correct.

  • Silly doubt abt access-points and bridges

    hi all i have read cisco doc wherein clients connecting to access-points and also where the cisco access-point is working like a bridge and still clients can connect to it .
    then any specific reason why people generally connect clients to access-points.
    i mean is there any benefit of either method over the other.
    any help and guidance would be really helpful.
    regards
    sushil

    In short, it is preferred to have users connect to access points.... 99% of the time. You can use a wireless bridge (that is associated to an AP) that is connected to a switch/hub to supply network connectivity to wired users off the switch/hub. There are also access points that can be used as a bridge for building point to point connectivity.
    Look at the home users with wireless.... it allows then to move from place to place (as long as there is coverage) without having to be wired in.

  • How do I set the transition between access points would be fine?

    Hello everyone,
    We have an organization Wirless controller 2504 with 20 aironet access-point (700 series)
    Once I defined  all the access points I noticed that the transition between them is not working fine...
    I mean that clients can not walk around in our organization without having to connect to any access point separately.
    How do I set the transition between access points would be fine?
    Thanks a lot (:

    HI Omri,
    which software version you have on WLC ?
    Is the site survey done propely ?
    Remember: It is the client that decides when to roam and which AP to connect to based on what it perceives the signal to be.
    If your site survey design is perfect and still have problems while roaming then:
    Disable your lower data rates on the 2.4ghz and or 5ghz radio and your clients will roam better. Try to disable everything below 11mbps. and give that a try.May be old device will work in this case.
    Regards
    Dont forget to rate helpful posts

  • 2 Access Points Same Wireless Network

    ok the basics: I have a cable modem hooked up to a linksys router ... the signal does not cover the whole house, so I got a linksys range expander ... set the whole thing up and everything works nice ... except that my PB keeps picking up the weak signal from the main router and doesnt connect to the range expander ... they both have the same security settings and all and they even appear as the same wireless network ... any thoughts on how to make my PB connect to the access point with the best signal?

    I don't think that was the question posed. The issue is not how do I increase a particular access point's range, or can I dispense with one of them.
    The issue is how to best work with TWO access points on the SAME network. I am very interested in this issue, as I have not been able to get my system to work properly. In short, there is an Airport Express (access point only) in the upstairs family room, and a Motorola (router and access point) in the basement. For those of us who own the new PB's, it is a lost cause to get reception comparable to the iBooks. Literally hundreds of posts exist in this area trying to improve it. So the ability to automatically connect to the highest reception point is a great benefit.
    I have a unique IP address to each access point, and the Airport Express is tied to the Motorola router through ethernet. I have tried both devices on the same wireless channel, and each on its own (1 and 11). I have also tried using the same SSID & password for each point, and giving them unique names. In all situations, the result is the same. Once the Mac is connected to a particular access point, it will never switch over to the other one, unless connectivity is completely lost to the first one (i.e. unplug the AE).
    This does not meet the 'roaming' idea. The goal is that when I am upstairs, I automaticallly connect to the AE, as it is strongest. When I move downstairs, it should connect to the Motorola, as the signal strength is SIGNIFICANTLY increased (we are running a PB, here). But this never happens. Instead, the PB will choke on internet browsing, because it is connecting to the gateway through a very weak wireless signal upstairs, when an alternate strong one is right next to it !!
    Doesn't matter if I sleep in between relocating. All settings are automatic; that is, the Airport will automatically connect to the available networks. What I have to do is click the airport signal meter and choose my access point in order to change.
    For those who think this is all acceptable performance, I don't have to do this with my HP work laptop. Windows does not seem to have a problem with proper, correct, and optimized roaming.
    Hi-res PB15, 1.5GB Mac OS X (10.4.7)

  • IPad's Roaming Between Access Points

    A company with 460 Cisco Access Points is using iPad Mini's to control lighting and other things, the iPad Mini's are roaming between access points VERY SLOW, they are dropping 45-50 packets between roams. iPad 2's and iPhone's are roaming just fine, if they drop any packets it's a max of 5.
    Is there any differance in the NIC's that are in iPad 2's and iPad Mini's? Or is there a setting for fast roaming?

    Hi,
    It seems that these APs are not aware of each other, I would suggest you look into a controller based solution, that means you need some sort of controller base AP system to get this seamless roaming feature, I also suggest you check whether there's compatibility
    issue for the device with product vender.
    Yolanda Zhu
    TechNet Community Support

  • WRT54G ver. 6 Connected to access point and internet, but cannot access the web

    I can connect to the access point and it shows that I an connected to the internet.  However when I open a bowser it says page cannot be displayed!  Signal is very good to excellent.  Also, I have been using it all day and it was working fine, until I shutdown.  When I booted back up it stopped working.  The internet is working!  I have XBOX Live working right now.  Just not the computer.  Any Help would be appreciated.
    WRT54G ver. 6
    Message Edited by SJohnson4 on 12-01-200607:35 PM

    Hi... it seems that your Wireless adapter on does get a IP address or DNS no after reboot. Try assigning a Static IP address and DNS on the Wireless Adapter. Also try to update the drivers for that wireless adapter.

  • Use N95 as access point and get laptop inet throug...

    Is it possible to use the N95 as an (WIFI) access point and use a laptop, a psp, an ipod touch to access the internet through 3G or even Turbo 3G?
    That would be really really cool!
    Regards
    Raptor

    I dont think it is as would have to be connected through a router to a phone line anyway. My psp doesn't even detect my N95. You would have to use it as a bluetooth modem and 3g.
    Its not who i am underneath. But what i do that defines me.
    You are here for a reason Superman.
    "Come to me son of Jor-EL. KNEEL BEFORE ZOD"

  • Diffrence between Measuring point and Counter

    What is the difference between Measuring Point and Counter ?
    -Md

    Hi,
    _Measuring Point_
    Measuring points in the SAP System describe the physical locations at which a condition is described, (for example, Temparature and Pressure on a Boiler ). The characteristics associated with the measuring points which record the value can only be numeric characteristic. Measuring points are located on technical objects, in other words, on pieces of equipment or functional locations. For every measuring point there should be some characteristics to measure the reading.
    To enable you to differentiate more easily between the individual measuring points and provide them with a unit, you assign each measuring point to a characteristic.
    The parameters like Running Hours, Temperature, Pressure etc,, on equipments can also be mapped under measuring point.
    Counter:
    A type of measuring point, where a continuous reading is recorded (e.g. Milometer). In case the measuring point is a counter, it needs to be defined likewise.
    Counter readings are taken at counters at particular intervals and in particular measurement units.
    For Example, counter readings for kilometers driven or electricity used
    Regards,
    Krishna Mohan.

  • Difference between system copy and Remote Client copy?

    Hi,
    Can any body suggest me , What are the major difference between System copy and Remote Client Copy.
    As per my knowledge , Both are different
    1.In system copy  entire data recovered mean copy from Source to target
    2.In Remote client copy All  Client data can't me import if you choose SAP_ALL profile also
          I hope Transaction data and user data can't copied
    Anybody share this Question and Give me some idea about this
    If anybody  give brief explanation that is very gratefull.
    regards,
    Balaram

    Hi,
    System copy will replicate all database from source to target system.
    In remote copy only client in which you are performing the copy will get refresh. Also, remote client copy will be done between systems on same patch level. with SAP_ALL profile you can bring all data in target system including your transactional data.
    Thanks
    Sunny

  • What is the difference between access specifiers and access modifiers?

    what is the difference between access specifiers and access modifiers? are they same? if not what is the difference.

    Access Specifier are used to specifiy how the member variable ,methods or class to other classes.They are public ,private and protected.
    Access Modifier:
    1.Access
    2.Non Access
    Access:
    public ,private,protected and default.
    Non Access:
    abstract,final,native,static,synchronized,transient,volatile and strictfp

Maybe you are looking for

  • Regarding process mapping related to media

    Dear all My client is in media business, his requirements are to have episode wise Cost & revenue. I am mentioning below the process I have mapped currently Company code - ABC Business Area u2013 Channel (as their have more than one channel) Program

  • Problem with 845PE Max2 & Saphire 9000Pro

    Hello everyone!!! I have a little problem. 3 days ago I change 845E max m/b to 845PE Max2. And I have a problem with Saphire 9000Pro. When I install Intel Chipset Driver I cannot install Ati drivers. When I install Ati driver, then install Intel Chip

  • How to split one request into many to reduce response time

    Hi, In a request I may get more than 20-30 materials for which, pricing info need to be returned. Its increasing the load on SAP and XI is not waiting for a long time to get the price. Please let me know a work around for this otherthan BPM. Or is th

  • Get Info image data missing

    I have used the Finder's Get Info command and accompanying window to determine the height and width of images since the beginning of time. Today that capability suddenly disappeared. When I select an image in the Finder and invoke Get Info, under "Mo

  • A700: 8gb of memory installed, only 4gb are being used

    The a700 that I purchased from lenovo.com was the top model (40244JU) in the a700 series and came with 8gb of memory installed.  The os system screen properly shows the 8gb of memory installed.  The bios screen shows only 4gb of memory installed, thu