CLEANACCESS Archives

August 2006

CLEANACCESS@LISTSERV.MIAMIOH.EDU

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Ken Nelson <[log in to unmask]>
Reply To:
Perfigo SecureSmart and CleanMachines Discussion List <[log in to unmask]>
Date:
Tue, 1 Aug 2006 09:00:27 -0400
Content-Type:
text/plain
Parts/Attachments:
text/plain (30 lines)
We dumped Cisco ACS from our scheme.  We were not able to get it to work 
with openldap without major schema changes, but did get it to work fine 
with free-radius.  Now we just use wism/CCA/openldap.

Ken Nelson
Network Manager
Marietta college


Mark Duling wrote:
> I know this is off-topic but I wonder what everyone else is doing for
> authentication because I've hit a roadblock with what I'd planned to do.
>
> I'm trying to use a WiSM/CiscoSecure ACS/OpenLDAP (backend authentication)
> arrangement for authentication using WPA2 protocol for wireless access. 
> Authentication using LDAP fails, but authentication using local
> CiscoSecure ACS username/passwords work fine.
>
> The CiscoSecure ACS docs say LDAP support does not include EAP-MSCHAPv2,
> which is the only type of authentication PCs seem to be able to do.  Maybe
> I'm missing something here.
>
> How are y'all authenticating to your LDAP databases in a Cisco
> environment?  Anybody using CiscoSecure ACS?
>
> Mark
>
>
>   

ATOM RSS1 RSS2