Link to home
Start Free TrialLog in
Avatar of Steven Hoong
Steven Hoong

asked on

Intermittent Issues with RADIUS

Over the weekend we needed to power down our servers for some building testing. After booting everything back up, one of our SSID's that use RADIUS was not working. The logs didn't show any issues so instead of wasting anymore time on it (I had spent 2 hours on it) I decided to uninstall the NPS role on the server (dc01) and decided to install it on our second server (dc02). Upon installing it, I tested everything and it works. Both on my phone and laptop.

However, coming in this morning. There are a couple of end users that state they are unable to connect to the SSID that uses RADIUS via Laptop. I check the logs and it states
Authentication failed due to a user credentials mismatch. Either the user name provided does not map to an existing user account or the password was incorrect

Open in new window


They are able to connect with their phones with the same credentials. Some are able to connect w/ their laptop (windows 7). All macOS are able to connect.

Setup:
  • 2 x Windows Server 2012R2 NPS
  • 1 x HP Aruba (all iAPs, no network controller
Avatar of David Johnson, CD
David Johnson, CD
Flag of Canada image

There is a registry entry that will fix this
https://support.microsoft.com/en-us/help/4034681/windows-8-1-windows-server-2012-r2-update-kb4034681

HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesRasManPPPEAP13

In the above key create a DWORD called DisableEndEntityClientCertCheck and set the value of it to 0 and restart your NPS server.
This question needs an answer!
Become an EE member today
7 DAY FREE TRIAL
Members can start a 7-Day Free trial then enjoy unlimited access to the platform.
View membership options
or
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.