Ik heb een omgeving ingesteld met een Windows 2008 Radius + NAP server. Als switch, met 802.1x ondersteuning, de Cisco SLM2008. De client is een Windows 7 machine.
Helaas werkt deze configuratie niet. Ik krijg ik bij het authentificeren van de client de volgende Windows 2008 event:
--------------------------------------------------------------------------------------------------------------------------------------------------
Network Policy Server discarded the request for a user.
Contact the Network Policy Server administrator for more information.
User:
Security ID: NULL SID
Account Name: host/CHRISWIN7DT.chrishooijer.eu
Account Domain: -
Fully Qualified Account Name: -
Client Machine:
Security ID: NULL SID
Account Name: -
Fully Qualified Account Name: -
OS-Version: -
Called Station Identifier: 00-0f-34-ff-67-c5
Calling Station Identifier: 00-11-2f-fc-71-e5
NAS:
NAS IPv4 Address: 192.168.1.8
NAS IPv6 Address: -
NAS Identifier: -
NAS Port-Type: Ethernet
NAS Port: 4
RADIUS Client:
Client Friendly Name: CHRISSWITCH
Client IP Address: 192.168.1.8
Authentication Details:
Connection Request Policy Name: NAP 802.1X (Wired)
Network Policy Name: -
Authentication Provider: Windows
Authentication Server: CHRISWIN2008PDC.chrishooijer.eu
Authentication Type: -
EAP Type: -
Account Session Identifier: -
Reason Code: 3
Reason: The RADIUS Request message that Network Policy Server received from the network access server was malformed.
--------------------------------------------------------------------------------------------------------------------------------------------------
Configuratie Radius client in NAP:
Vendor name: RADIUS standard (ook met Cisco geprobeerd)
Access request messages must contain the message-authenticator attribute: Zowel aan als uit geprobeerd
Radius client is NAP capable: aan en uit geprobeerd
Wat houden deze events in?
Helaas werkt deze configuratie niet. Ik krijg ik bij het authentificeren van de client de volgende Windows 2008 event:
--------------------------------------------------------------------------------------------------------------------------------------------------
Network Policy Server discarded the request for a user.
Contact the Network Policy Server administrator for more information.
User:
Security ID: NULL SID
Account Name: host/CHRISWIN7DT.chrishooijer.eu
Account Domain: -
Fully Qualified Account Name: -
Client Machine:
Security ID: NULL SID
Account Name: -
Fully Qualified Account Name: -
OS-Version: -
Called Station Identifier: 00-0f-34-ff-67-c5
Calling Station Identifier: 00-11-2f-fc-71-e5
NAS:
NAS IPv4 Address: 192.168.1.8
NAS IPv6 Address: -
NAS Identifier: -
NAS Port-Type: Ethernet
NAS Port: 4
RADIUS Client:
Client Friendly Name: CHRISSWITCH
Client IP Address: 192.168.1.8
Authentication Details:
Connection Request Policy Name: NAP 802.1X (Wired)
Network Policy Name: -
Authentication Provider: Windows
Authentication Server: CHRISWIN2008PDC.chrishooijer.eu
Authentication Type: -
EAP Type: -
Account Session Identifier: -
Reason Code: 3
Reason: The RADIUS Request message that Network Policy Server received from the network access server was malformed.
--------------------------------------------------------------------------------------------------------------------------------------------------
Configuratie Radius client in NAP:
Vendor name: RADIUS standard (ook met Cisco geprobeerd)
Access request messages must contain the message-authenticator attribute: Zowel aan als uit geprobeerd
Radius client is NAP capable: aan en uit geprobeerd
Wat houden deze events in?