Quantcast
Channel: General Networking
Viewing all articles
Browse latest Browse all 27527

Cisco 2504 WLC and Windows 2008 R2 RADIUS NPS issue.

$
0
0

I've been pulling my hair out with this one. I have a Cisco 2504 WLC that is configured to authenticate against my 2008 R2 domain controller with Network Policy Server. I have my CA and certs in order, successfully deployed my wireless profile through a test Group Policy, and verified that everything does indeed work. My test laptop successfully joins the wireless network. My configuration allows joining the wireless network prior to user login. I've verified that it is working fine (I've also verified that it will deny access if the wrong credentials are given). I'm still logging a ton of errors on both my WLC and the domain controller. I'm not sure they are anything to worry about, but I'm trying to get any kinks worked out before deploying to my test users.

Here are the errors:

WLC:

RADIUS server 10.10.130.6:1813 failed to respond to request (ID 146) for client 68:c3:c4:3a:a2:2d / user 'unknown'

AAA Authentication Failure for UserName:host/BWD1LT001.CTCHC.local User Type: WLAN USER

NPS:

Network Policy Server discarded the accounting request for a user.

Contact the Network Policy Server administrator for more information.

User:
Security ID:   NULL SID
Account Name:   CTHC_DOMAIN\hstemp
Account Domain:   -
Fully Qualified Account Name: -

Client Machine:
Security ID:   NULL SID
Account Name:   -
Fully Qualified Account Name: -
OS-Version:   -
Called Station Identifier:  10.10.130.172
Calling Station Identifier:  10.10.130.133

NAS:
NAS IPv4 Address:  10.10.130.172
NAS IPv6 Address:  -
NAS Identifier:   DL-LWAP-CONTROL
NAS Port-Type:   -
NAS Port:   1

RADIUS Client:
Client Friendly Name:  Cisco Controller
Client IP Address:   10.10.130.172

Authentication Details:
Connection Request Policy Name: Use Windows authentication for all users
Network Policy Name:  -
Authentication Provider:  RADIUS Proxy
Authentication Server:  DOMCTRL2.CTCHC.local
Authentication Type:  -
EAP Type:   -
Account Session Identifier:  35313862613563642F36383A61333A63343A33613A62323A32632F313330
Reason Code:   113
Reason:    The remote RADIUS (Remote Authentication Dial-In User Service) server group does not exist.

Viewing all articles
Browse latest Browse all 27527

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>