Hey,

WDS allows clients to roam between access points without having to
re-associate each time. It communicates with the RADIUS server for
authentication between access points. I have been successful in getting
that to authenticate.

http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag/122-15.JA
/1100/h_ap_contextmgr.htm

It's odd how simple the EAP configuration should be (or is)... it makes
me wonder if there is something wrong with my AP.

Thanks,
lje

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Artur
Hecker
Sent: Monday, June 07, 2004 12:35 PM
To: [EMAIL PROTECTED]
Subject: Re: Aironet 1200 / TLS-PEAP / FreeRADIUS

hi


> If I set up my access point as a Wireless Domain Service, it can
> communicate with the FreeRADIUS server, no problem. So, there aren't
any
> communication blocks going on here. The odd things is that I've
followed

well, i don't know what WDS is (if you have any futher info on this, i'm

always glad to learn). it could be in TCP though and thus go through NAT

while radius traffic would not.


> many different how-to's on Cisco/EAP, but still no luck.
> Anyway, I know this is out of scope but if someone has worked with
this
> configuration and could help me out it would be most appreciated.

actually, there is hardly anothing to configure.

- you put a radius server with a shared secret into your Cisco AP
- you say that this server is used for EAP auth
- you say that your SSID your_ssid is using Open Auth with EAP.
- you add the current cisco IP to the freeradius' clients file, along 
with the same shared secret
- you are the man who has all working.

probably you also want to activate link encryption and to use dynamic 
WEP keys etc. but strictly spoken this has little to do with the first 
and most important phase.


ciao
artur


- 
List info/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html


-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to