Quantcast
Channel: Security forum
Viewing all articles
Browse latest Browse all 12072

MAC and Linux NPS authentication

$
0
0

Hi,

I am setting up PKI and NPS environment for 802.1x authentication. I published computer certificates to all Windows Domain Computers. All Windows Domain Computers are connected successfully using mutual authentication (EAP-TLS). Now the problem is that we have MAC and Linux systems as well. I can get them to work using PEAP authentication (asking username and password) but that´s not what I want. I created template "non-domain Client Certificate - Computer" and I enrolled the certificate via Windows Workstation. I can export the certificate with Private Key to MAC or Linux environment. But all I can see from IAS log is that they try to connect using username rather then Computer certificate.

Windows computer IAS log: "host\machinename.domain.com - IAS_SUCCESS"

MAC computer IAS log: "username - IAS_AUTH_FAILURE"

I don´t know lot about MAC or Linux computers. In Windows I have Computer and User certificate store. And I can choose what kind of authentication will I use in Wifi AP properties (Computer auth or User outh or both). I can´t see any options in MAC or Linux. So is there any solutions what I can try to get MAC and Linux computers to authenticate using computer certificate and EAP-TLS. What am I doing wrong.

Any help will be appriciated

Taavi


Viewing all articles
Browse latest Browse all 12072

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>