RE: Strange Apple 802.1x Client Names

2012-02-01 Thread Reynolds, Walter
In the last two days I have found one occurrence of com.apple.systemdefault We run both Meru and Cisco going through Freeradius. It was coming from a Cisco controller and was a Stop accounting record. I was unable to find a corresponding Start record yet. We have not noticed this before, but

RE: [WIRELESS-LAN] RADIUS Server preference for 10K+ Client Environments?

2011-11-01 Thread Reynolds, Walter
Freeradius on RHEL5.X We support PEAP/MSCHAP and TTLS/PAP As far as NAS clients, we have maybe 750-1,000 clients (though some of these are netblock ranges) As far as user clients, we have almost 400K authentications a day (smart phones like to auth a lot) from approximately 30,000 unique

RE: [WIRELESS-LAN] iOS devices on wireless

2011-06-14 Thread Reynolds, Walter
1. We do not support or allow Bonjour over wireless. We have a very flat wireless domain and do not want to add all the added traffic to the network. 2. We have both an open SSID (captive portal) as well as a 802.1X WPA2-Enterprise SSID. Most iPhone and iPad users have moved over to the later

Re: [WIRELESS-LAN] Apple Support

2011-04-14 Thread Reynolds, Walter
I do not have an answer about suppo, but am wondering what types of problems you are referring to. -- Walt Reynolds University of Michigan On Apr 12, 2011, at 1:29 PM, Lee H Badman lhbad...@syr.edumailto:lhbad...@syr.edu wrote: Beyond being in for-fee development programs (must suppress salty

RE: Prolems with Apple Macs and 802.1x

2011-04-12 Thread Reynolds, Walter
We have seen this on most versions of Apple software but as you said it is very sporadic. We however do not use Safeconnect. --- Walter Reynolds Principal Systems Security Development Engineer ITS Communications Systems and Data Centers University of Michigan (734) 615-9438 -Original

Re: [WIRELESS-LAN] iPad spontaneous reboots?

2011-03-10 Thread Reynolds, Walter
Have not heard of this happening here. We have mostly Meru and some legacy Cisco. -- Walt Reynolds University of Michigan On Mar 10, 2011, at 8:48 AM, Peter P Morrissey ppmor...@syr.edumailto:ppmor...@syr.edu wrote: Has anyone heard about iPads suddenly rebooting on their own? We are hearing

Re: [WIRELESS-LAN] Windows 7 and WPA WPA2?

2010-11-17 Thread Reynolds, Walter
We have not heard of anything. I used a test phone with no problem using an inner authentication method of MS-CHAP. -- Walt Reynolds University of Michigan On Nov 17, 2010, at 10:33 AM, Russ Leathe russ.lea...@gordon.edumailto:russ.lea...@gordon.edu wrote: We just started having issues with

RE: [WIRELESS-LAN] Active Directory and LDAP at the same time. Or... just LDAP with 802.1x.

2010-10-12 Thread Reynolds, Walter
We have been using FreeRadius with TTLS/PAP which has been working fine (against Kerberos and not LDAP) We recently added support for PEAP/MSChapv2 on the same SSID without a problem. --- Walter Reynolds Principal Systems Security Development Engineer ITS Communications Systems and Data

RE: [WIRELESS-LAN] Apple and wireless connectivity issues?

2010-10-07 Thread Reynolds, Walter
We have found that many of these are fixed by disabling IPv6 on the Airport interface for the client. --- Walter Reynolds Principal Systems Security Development Engineer ITS Communications Systems and Data Centers University of Michigan (734) 615-9438 -Original Message- From: The

Re: [WIRELESS-LAN] Wireless and Apple Clients

2010-09-16 Thread Reynolds, Walter
We run Meru and no band steering but this may help. We have Mac clients that will connect to an AP that is definitely not the best AP to connect to. I think that there may be some sort of caching of network access that Mac is doing to try and speed up connections some how like it is doing

RE: [WIRELESS-LAN] RADIUS Accounting Interval

2010-09-08 Thread Reynolds, Walter
We have, at the request of Operations, put ours at 1 hour. This is more of an issue with being able to deal with lost Start or Stop records. --- Walter Reynolds Principal Systems Security Development Engineer ITS Communications Systems and Data Centers University of Michigan (734) 615-9438

Re: [WIRELESS-LAN] Alternatives to XpressConnect

2010-04-22 Thread Reynolds, Walter
So for those using this how many need to use the TTLS supplicant setup? For those that do how do you handle if a user is using a built in supplicant that has profiles for other locations? -- Walter Reynolds University of Michigan On Apr 22, 2010, at 6:07 AM, Gogan, James P go...@email.unc.edu

Re: [WIRELESS-LAN] Alternatives to XpressConnect

2010-04-22 Thread Reynolds, Walter
On 4/22/2010 11:13 AM, Reynolds, Walter wrote: So for those using this how many need to use the TTLS supplicant setup? For those that do how do you handle if a user is using a built in supplicant that has profiles for other locations? -- Walter Reynolds University of Michigan

RE: [WIRELESS-LAN] Experiences with Meru

2010-03-10 Thread Reynolds, Walter
We have more users but I still concur with Richard in both comments regarding drivers in general and the RealTek cards. --- Walter Reynolds Principal Systems Security Development Engineer ITS Communications Systems and Data Centers University of Michigan (734) 615-9438 -Original

RE: [WIRELESS-LAN] securew2 and Windows 7 - what are you doing?

2009-10-22 Thread Reynolds, Walter
We have gotten the distribution license for the personal edition. The cost was roughly $1,400 for the year but allows us to be able to continue to support users without a built in supplicant that supports TTLS/PAP --- Walter Reynolds Principle Systems Security Development Engineer Information

RE: [WIRELESS-LAN] securew2 and Windows 7 - what are you doing?

2009-10-22 Thread Reynolds, Walter
-...@listserv.educause.edu] On Behalf Of Reynolds, Walter Sent: October 22, 2009 11:25 AM To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU Subject: Re: [WIRELESS-LAN] securew2 and Windows 7 - what are you doing? We have gotten the distribution license for the personal edition. The cost was roughly $1,400

RE: [WIRELESS-LAN] securew2 and new licensing, what are you doing?

2009-09-22 Thread Reynolds, Walter
With the license change happening so close to the start of school, we decided to get the distribution license. This will get us through the year and give us time to determine a longer term plan. --- Walter Reynolds Principle Systems Security Development Engineer Information and Technology

Re: [WIRELESS-LAN] iPhone 2.0 news

2008-07-23 Thread Reynolds, Walter
Wireless has been smooth for those using it with WPA2 enterprise. But it was installed with the iphone config tool. Added cert trust settings there. -Original Message- From: Barber, Matt [EMAIL PROTECTED] Subj: Re: [WIRELESS-LAN] iPhone 2.0 news Date: Wed Jul 23, 2008 7:17 am Size:

RE: Certificate validation...

2008-07-23 Thread Reynolds, Walter
I am not aware of a way to automatically set the trust settings within OS X 10.4 (Mac said this was a security feature so user had to validate the trust of EAP certificates). Leopard however has been changed so that is something that can somehow be set automatically. On the windows supplicant

RE: [WIRELESS-LAN] Support headache of WPA2 Enterprise

2008-07-22 Thread Reynolds, Walter
For those that did use AutoConnect, what was the response of users who actively used third party clients that were then removed? Walt Reynolds Principal Systems Security Development Engineer Information Technology Central Services University of Michigan (734) 615-9438 -Original