![]() |
2007-12-14
, 21:58
|
|
Posts: 574 |
Thanked: 166 times |
Joined on Oct 2007
@ BC, Canada
|
#2
|
![]() |
2007-12-14
, 22:22
|
Posts: 19 |
Thanked: 1 time |
Joined on Dec 2007
|
#3
|
We don't run the same setup, but they are almost certainly using EAP-TLS if they are using certs in a Microsoft authentication environment (which is what it sounds like here).
So here are the settings I suggest you try when creating a new connection:
Connection type: WLAN
Security method: WPA with EAP
EAP type: TLS
Advanced / Other: you may or may not need to check WPA2-only mode... try both.
Advanced / EAP: you may or may not need to use Manual user name... try both.
![]() |
2007-12-14
, 23:32
|
|
Posts: 574 |
Thanked: 166 times |
Joined on Oct 2007
@ BC, Canada
|
#4
|
![]() |
2007-12-15
, 02:22
|
|
Posts: 574 |
Thanked: 166 times |
Joined on Oct 2007
@ BC, Canada
|
#5
|
![]() |
2007-12-15
, 04:10
|
|
Posts: 574 |
Thanked: 166 times |
Joined on Oct 2007
@ BC, Canada
|
#6
|
![]() |
2007-12-15
, 06:03
|
Posts: 19 |
Thanked: 1 time |
Joined on Dec 2007
|
#7
|
![]() |
2007-12-15
, 08:17
|
|
Posts: 574 |
Thanked: 166 times |
Joined on Oct 2007
@ BC, Canada
|
#8
|
![]() |
2007-12-15
, 19:06
|
Posts: 19 |
Thanked: 1 time |
Joined on Dec 2007
|
#9
|
I think it's OK that your cert didn't have a password... shouldn't be a problem. Good to hear it appears under User.
I believe you checked this before, but your personal cert (under User) does have the Trust set for WLAN, right? Because if not, then it definitely won't be selectable in the connection config.
Since I don't have any experience with your type of setup (we use PEAP+MSCHAPv2), I think I'm out of ideas. But report back on how it goes on Monday, and maybe by then someone with some more experience with cert authentication will turn up in this thread.
![]() |
2008-02-21
, 16:33
|
Posts: 19 |
Thanked: 1 time |
Joined on Dec 2007
|
#10
|
The Following User Says Thank You to cynoclast For This Useful Post: | ||
What I DO know:
uses infrastructure/access point (not ad-hoc)
hidden network
WPA access required
Windows clients must:
1) install this MS hotfix: KB893357
2) Get a Personal Digital Certificate from an internal website. The server is called a Microsoft Certificate Services and request a user certificate, then install it. I'm certain the server is a Microsoft product if that helps.
3) Select (under Wireless network properties) Network Authentication WPA2, and AES data encryption.
4) Under Authentication, the EAP type is "Smart Card or other Certificate"
5) and trust two local server certificates (that internet explorer seems to magically install)
I was able to download and install the personal and root certificates to my N810.
All certificates I installed are trusted for all three operations (email, web, WLAN).
Some of the wireless configuration options on the N810 allow for a username and password. Despite trying everything I can think of, I've never been prompted for a username and password, just "Authentication failed." So I suspect that I'm not even making it past authentication to the login stage.
What I don't know:
What EAP type to select on my tablet that corresponds to "Smart Card or other Certificate". And how to translate the rest of the settings from Windows-ese to N810 settings.
I've tried virtually ever setting permutation I can think of in the connectivity settings, but so far, I get "Authentication failed." every single time.
What I need
Help discovering the wireless network configuration. If there are some utilities out there that can run on the N810 to help discover how our network is setup. Also, if you can come up with pointed questions that I could simply go ask, those might work too. The IT guys tried to help me set this up, but I exhausted their knowledge. They've got a setup guide for Mac OS too, but it doesn't help me.
If you guys could help me figure this out it would be awesome. One of my friends that works here has an N800, and the IT guys would be interested in a Linux setup guide as well.
I'm not entirely certain that my inability to connect isn't due to this bugzilla issue: https://bugs.maemo.org/show_bug.cgi?id=327
I was the last guy to comment on it and haven't received a response yet.
If you're interested in helping but don't know wtf EAP is (I didn't until I got my tablet), I found this very helpful: http://en.wikipedia.org/wiki/Extensi...ation_Protocol