Cisco Wireless :: How To Set Up User Authentication On Aironet 1200
Jan 22, 2013
I would like to be able to have a few "guest" users on the Wireless network for visitors. Is there any method to have a prompt for "Username / password"? I would like the user accounts to have different expiry periods if this is possible. My current config is attached. The SSID "test" appears on the network. The SSID "test111" does not appear.
View 1 Replies
ADVERTISEMENT
Aug 14, 2011
Is there a way to configure client/user to AP authentication without using encryption for joining to an wireless network? What we need to do here is protect network access at our hotspots by enforcing a password to get connected. The other part is making it compatible with every possible device so we need to have encryption off. We have a mixed environment at this time until everything is upgraded. Aironet 1200 series and some new Aironet 1142 models. No controller, all standand alone AP's
View 2 Replies
View Related
May 17, 2004
how i can limit the bandwidth for a all my client conect to the AP, i have a Aironet 1200 with the 12.2.15 code.
View 3 Replies
View Related
May 15, 2012
We had two dozen Aironet 1200 access points and a controller donated to us from a local hospital that no longer needed them. My boss would like me to set one up with 3 VLANs:
- encrypted VLAN for staff
- encrypted VLAN for students
- unencrypted VLAN for guests
Ultimately, we'd like the staff VLAN to have access to all internal network resources, the student VLAN to have access to several pre-defined printers, and the guest VLAN is web-only access. Whether the controller we were given will accommodate that, we won't know until we get one Aironet 1200 programmed and connected to the controller. For the time being, I just want to get this access point programmed with the 3 VLANs.
I'm easily able to get it running a single SSID (non-VLAN) network and confirm that I can use that network fine. However, I need to set up these 3 VLANs. I can connect to it via telnet if that'll let me program it faster.
View 7 Replies
View Related
Mar 26, 2012
I have some aironet 1200 AP's. I want to use this with a windows 2008 radius server. I followed the guide on [URL]. Unfortunately I can not get this working. In the securtiy log of the event viewer there is always the message "authenication was not succesful because an unknown username or incorrect password".
- Is it possible to get this working?
- If yes, is there a manual how to configure the AP's and the radius server, or are there any hints?
- Is this the best way to setup a wireless network or is there a better way?
I saw there is also a local radius server inside the 1200. Can all the 1200's work together? I suppose that if I use the built-in radius server than I can't make a connection to my AD database, correct?
View 3 Replies
View Related
Nov 20, 2012
I have this version Ap "c1200-rcvk9w8-tar.124-21a.JA2" and a WLC 5500. When i connect the ap to the network i can ping from ap to wlc and the wlc to ap, but the proccess of lwapp messages give errors on the Ap when the Ap try to download the image from wlc and could not join the wlc. why this could be? this is the info of the wireless lan controller.
View 6 Replies
View Related
Jan 25, 2012
I'd like to change the SSID name on Aironet 1200 which is currenty used by my wireless network.
View 3 Replies
View Related
Oct 1, 2011
I have a Cisco Aironet 1200 series Access point and currently i am using wep with 128 bit . My concern is that i want to change this key with current SSID .
My current SSID is ABtc. My current key is abcdefgh12345. when i try to change the key its give me error :
"encryption key must be 26 hexadecimal characters" .
View 3 Replies
View Related
Apr 4, 2013
I want to disable the MAC authentication that is configured in my Aironet 1200 Cisco Access Point, now set to "Local list only". I want that any wireless device can connect if the user knows the wep password.
I cannot find the option to disable the MAC authentication.
View 1 Replies
View Related
Dec 30, 2012
we have 6 access points in production and we want to chnage the IP addresses of them. So what would be the procedure for that.
View 17 Replies
View Related
Jun 7, 2012
I have a WLAN with 5 1200 Series AP (A/G) configured for Fast Roaming using the Cisco supplied documentation. Can I use one user name for all of my devices to connect to the Internal Radius Server? This would be similar to having a passphrase for WPA.
View 3 Replies
View Related
Jan 20, 2012
I have cisco aironet 1200 series Acess point i want to configure wep with mac authentcation .
If any document with GUI configuration
View 11 Replies
View Related
Mar 13, 2011
Is it possible to setup a Cisco 1200 AP with 802.1x to drop users into the corprate network if they have a certificate or if not to put them on the guest network?
View 3 Replies
View Related
Jul 24, 2011
at one of my Aironet 1200 the update through web interface of the IOS seems failing. THe webpage now looks damaged and not all points are availible.
I now want to update the IOS through telenet. A TFTP server is running and it is sharing the actual TAR-file.
View 7 Replies
View Related
Nov 24, 2011
I have a Cisco Aironet 1200 Series Access Point. It takes long time to boot up.
After showing the warning banner message it takes long time before asking for username.
The sh version is given below.
Cisco IOS Software, C1200 Software (C1200-K9W7-M), Version 12.3(7)JA4, RELEASE SOFTWARE (fc1)Technical Support: [URL] Copyright (c) 1986-2006 by Cisco Systems, Inc.Compiled Tue 05-Sep-06 14:15
[Code].....
View 3 Replies
View Related
Mar 28, 2012
I try to setup a 1141 aironet AP to authenticate my user through our Ms Radius Server ( Win 2008 R2).Everything is fine with small Bussiness AP WAP4410N with the following configuration:But I can't setup successfully the aironet 1141 with the same settings and getting it works.Here is my configuration for the Aironet 1141 Vlan 1 is the ssid I want to get it work with Radius.
View 1 Replies
View Related
Sep 14, 2012
I'm using the Express Security Set-up tab to configure an Aironet 1142 (stand-alone) access point with EAP.
Objective is to make it a RADIUS client and have laptops authenticate through this access point to a Windows 2008 NPS (Network Policy Server) using computer (machine) certificates - EAP-TLS.
When I select "EAP Authentication" under the "SSID Configuration" I was literally floored to see mention of WEP encryption (a security joke) and no possibility to prefer some variant of WPA (well, apparently not with EAP).
WPA2-Enterprise is what I've selected for "Authentication" and "AES" for encryption in Group Policy (so the laptop clients automatically connect to the access point).
WEP? I bought a Aironet 1142 access point for WEP encryption? How can I configure this securely?
These are currently configured settings as displayed under the "SSID Table" heading:
SSID - "MYSSID"
VLAN - none
Encryption - WEP Mandatory !!!
[Code].....
View 6 Replies
View Related
Nov 30, 2011
Users are facing issue since a long time now . Whenever user connected to wireless is idle say 10 -20 seconds he gets disconnected This happens for all the users and even Mac/Win 7 I changed Activity Timeout on AP and even rebooted but still when I do show dot11 associations all-client I see activity-timeout
Users don't get disconnected when there is continous flow of data its only when user is idle
When user disconnects and hit refersh it starts working again
View 1 Replies
View Related
Feb 22, 2013
I am evaluating a Cisco wireless solution for our building. The building is occupied by two separate but related companies, which share some basic network infrastructure (some switches, an Internet connection, a DMZ environment), but which have two completely separate "Windows networks" with separate Active Directories. Each of these two networks are placed behind separate Microsoft TMG firewalls, each of whose external NIC are connected to the same DMZ network.
a) Acquire a set of Aironet 2600 APs and a controller, b) establish a BYOD SSID to be share between the two companies and guests, connected to the shared DMZ network, c) establish two additional separate SSIDs - one for each company’s staff, each authenticating against the appropriate AD-environment (incidentally, one is a straight Windows Server 2008 R2 environment with a TMG 2010 firewall and the other uses Windows Essential Business Server, so based on Window Server 2008).
Is that even possible with a single WLC?We are on 3 floors and about 60 people total. I am thinking that we can make do with 5 or 6 APs. Without having looked into it much, the 2500 controller looks good. Agree?
View 2 Replies
View Related
Mar 4, 2010
I have a WLC 2106 and 1242AG.it's a hotspot configuration.So in WLC, under controller tab, i have set my ap-manager ip, my management ip, my virtual ip (1.1.1.1) and my hotspot network range ip.I set also a DHCP range for the hotspot network.
In Wlans tab, i set my hotspot wlan, with no layer 2 security and for layer 3, i set none for layer 3 security and i use web policy authentication.I use local authentication and i created under security menu, under AAA tab, 3 local net users.
From pc number 1, i get ip from dhcp, and i have authentication web page, authentication is ok and i can surf on web.From pc number2, when user 1 from pc 1 is connected, i get ip from dhcp but i have not the authentication web page, i have not DNS resolution.when i try https:1.1.1.1/login.html, i have no answer.
And when user 1 is de-authenticated, the user 2 can surf on web.So only one user can surf at the same time. not good for a Hotspot.
View 12 Replies
View Related
May 8, 2007
I am an IT professional that is installing my first extended range wireless AP in my companies warehouse. I am very excited!
Now I have set up many a linksys and repeater wireless networks, so when I was looking into the Aironet 1240AG I thought ?No Problem!?
And at first, it is not!
I have the AP and antenna set up here in my office before I take it out and mount it in the warehouse. And I can get connected to it, no security for now, no filters, I just want to connect and make it work.
I stay connected for maybe 3 minutes, I can get to the internet, I can ping all my servers. Full connectivity. But then for no reason the connection fails and I cannot reconnect.
The error I get in the log is
Interface Dot11Radio0, Deauthenticating Station 0006.2510.bbe3 Reason: Previous authentication no longer valid
So strange! So I have reset the AP to factory defaults and then set the SSID, and I can connect, again for a second, then nothing.
I have tried with multiple wireless cards, even laptops. Thinking maybe the problem was on the computer side.
View 12 Replies
View Related
Aug 12, 2011
how to set WLC 5508 to allow single create web authentication user account to get connected in a same time. i found that i can use the same username and password combo to be login in 2 machine in the same time.
View 4 Replies
View Related
Jul 7, 2011
E2000 has the guest account feature. Not sure if all guests shares the same login credentials. I would like to have guests account use seperate logins. Is this feature available? Another thing, I read the manual and it is indicated that only up to 10 maximum guest acccounts is allowed. I am looking for more than 10 - kinda like a hotspot software.
I've been looking everywhere. I've seen hotspot system, ddwrt, chillspot, etc. But it's complicated as firmware needed to be flashed.
View 1 Replies
View Related
Aug 2, 2011
I've set up a Cisco Aironet 1301 AP to be used for a guest network. I've got several other of the Aironet 1140-series around the business but none of them are in reach of this one at the moment.
The problem I have is that clients that try to connect to the AP are either not able to connect at all or lose their connection after some seconds. The config is more or less copied from the other APs with the same guest VLAN.
View 2 Replies
View Related
Sep 13, 2012
I have 3 Aironet 1260's with the same SSID and set with Open Authentication with MAC Authentication. Can I designate one of the 1260's as the MAC Authentication Server? I have all 3 now working with MAC Address Authenticated ty Local List Only and have to put the new MAC address in all 3.
View 3 Replies
View Related
Jun 12, 2011
I have CISCO Aironet access point C1130 , but not able to connect by users, I can see below logs from access point.
Jun 13 17:50:10.686: RADIUS: no sg in radius-timers: ctx 0x10653F8 sg 0x0000
Jun 13 17:50:10.686: RADIUS: Retransmit to (20.33.100.11:1645,1646) for id 1645/247
Jun 13 17:50:15.678: RADIUS: no sg in radius-timers: ctx 0x10653F8 sg 0x0000
Jun 13 17:50:15.678: RADIUS: Retransmit to (20.33.100.11:1645,1646) for id 1645/247
[Code] .....
View 0 Replies
View Related
Jun 3, 2012
I have a Cisco Aironet 1140 with ENABLED broadcasting SSID, encryption is WPA2(personal). Ubuntu 12.04 and Windows 7 are authenticated, but MACBooks never be authenticated. Any specific configuration for MAC books?
View 6 Replies
View Related
Feb 3, 2013
On an AIRONET 600 AP (officeExtend) with the remote LAN interface is configured to use 802.1x authentication:If a Cisco IP Phone is connected, 801.x authentication challenges for credentials. The AP does not seem to have a way to detect that this is an IP Phone and to skip the challenge (as Cisco switches/routers would do) Is there any way around this? Can the remote LAN interface be configured to skip authentication for IP Phone and only authenticate PCs etc..?
View 5 Replies
View Related
Apr 5, 2011
We are changing our old Pix 515e this weekend and for brand new ASA 5510.With this new installation, I would like to implement the Radius authentication for remote vpn user. Changing the firewall of the company has many impact and for the first phase the user will keep authenticating locally but I need that in phase 2, they will be authenticated via a radius server.Is there a way to configure both authentication for remote vpn user?
All user will be authenticated locally except the member of the IT Department who will be authenticated by the radius server for testing.I have remote vpn users around the world so I do not want these users to be blocked by the testing of the radius authentication. What I want is that users in group1 will be authenticated locally on the ASA and users in group2 will be authenticated by the radius. When testing will be done, all users will be transfer to the radius authentication gradually.
View 1 Replies
View Related
Jun 1, 2011
On our guest wireless, at times when a user shuts down their laptop and powers back up they are not asked to re-authenticate.The only security is a login and password then the user is tunneled to our 440 in our DMZ then out the internet pipe.My question is if the user shuts the laptop off then starts it back up shouldn't they be prompted for the user login and password?
View 2 Replies
View Related
Jan 17, 2012
I would like to configure RADIUS authentication and authorization in ASA 8.2 (ADSM 6.2) by configuring Cisco anyconnect VPN client connection profile.So the end result would be user enters his username, password and a token in any connect client, then the RADIUS server validates this information and sends the user attributes to ASA upon successful authentication.I would be grateful if i can get the step by step procedure to achieve this:The below is what iam trying to do:
1) Create an AAA server group.
2) Add the AAA server to this group (here its RADIUS).
3) create an LDAP-cisco ASA group mapping (for authorization)
3) Add a group policy and create IP pool. (We can add two types of group policies, one is internal and external. Not sure which one to select here).
4) create a any connect vpn client connection profile. Here we specify the created server group name, IP pool and group policy.(While creating a connection profile, it asks us to select an interface. As of now i have only one interface which is "inside". Not sure what the interface "outside" means).
View 5 Replies
View Related
Nov 12, 2012
I want to have a local user in ACS that is permitted to login to routers. I have TACACS with AD already working but cannot get a local user to work. I used to do this in ACS 4.x.I created a user in the internal identity store.I tried configuring a policy to allow this users TACACS authentication multiple ways to no avail. I cannot find a config example doc and cannot figure it out from the user guide as the documention is sorely lacking.
View 5 Replies
View Related
Sep 1, 2011
I am trying to setup up a rule to allow wireless access only to users in my AD when they use computers from my AD.I have Machine authentication working on it's own (computer boots up and connects to wireless - confrimed by ACS logs) I have User authentication working But when I try to creat the floowing rule:it does not work.
Access Policy
Access Service:
Default Network Access Identity Store:
AD1
Authorization Profiles:
DenyAccess
Exception Authorization Profiles:
Active Directory Domain:
[code]....
Everything seem to fine until it gets to the last rule.
View 1 Replies
View Related