• MikroTik.com
  • RouterBOARD
  • User Meeting
  • Training
  • User Manual
  • Support
  • Downloads
  • Videos
Register |   * Login | HOME

View unanswered posts | View active topics

WPA/WPA2 entreprise with EAP-PEAP autentications  Page 1 of 1
 [ 4 posts ]  Post new topic Reply to topic
  Print view Previous topic | Next topic 
Author Message
marclobelle
 Post subject: WPA/WPA2 entreprise with EAP-PEAP autentications
PostPosted: Fri Mar 16, 2012 12:10 am 
Offline
just joined

Joined: Tue Dec 20, 2011 11:40 am
Posts: 2
Karma: 0
Hello,
For a project in Benin I plan to buy tens to hundreds of mikrotik access points and routers of different type but this selection of Mikrotik is submit to a hard condition: users must be autheticated using EAP-PEAP and a radius server before accessing to the network.
For the access points, this means WPA/WPA2 entreprise with EAP-PEAP (this uses 802.1x) and for routers, this means that in order to receive an address from the DHCP server they must also be authenticated by EAP-PEAP. Both for the AP as for the router requirements, there are products that support it, say cisco APs, Zcom APs, Huawei leayer 3 switches etc. (that's what I use now)

I would prefer using mikrotik devices everywhere to get the same OS and the same user interface everywhere and this way ease the life of the operators and getting more devices for the money available. But this is only possible if the above requirements are satisfied.

So, 2 questions: 1. Is this supported by routerOS
2. If yes, how can it be configured? is it possible with the last version of the web interface, must one use command line. Could you gie me a clear escription, complete enough to be also usable by the operators.

Thank you in advance and best regards

Marc


Top
 Profile  
 
vik1988
 Post subject: Re: WPA/WPA2 entreprise with EAP-PEAP autentications
PostPosted: Fri Mar 16, 2012 6:57 am 
Offline
Member Candidate
Member Candidate

Joined: Sun Oct 25, 2009 2:18 pm
Posts: 200
Karma: 2

Location: India
Yes Mikrotik Supports EAP/Peap Authentication via Radius on Wireless.

And yes on DHCP too..
Attachment:
mt1.JPG
mt1.JPG [ 57.62 KiB | Viewed 1229 times ]
Attachment:
MT2.JPG
MT2.JPG [ 24.84 KiB | Viewed 1229 times ]
Attachment:
MT3.JPG
MT3.JPG [ 19.55 KiB | Viewed 1229 times ]

_________________
Vikas Kumar Gupta
If you Like my post then add KARMA
skype- kumarvikas_gupta


Top
 Profile  
 
marclobelle
 Post subject: Re: WPA/WPA2 entreprise with EAP-PEAP autentications
PostPosted: Sun Mar 18, 2012 9:36 pm 
Offline
just joined

Joined: Tue Dec 20, 2011 11:40 am
Posts: 2
Karma: 0
I tried as explained for wireless. there are minor differences in the eap wireless screen: I had to select passthrough in eapmethods, not in TLS mode. In tlsmode, I tried nocertificate and dont verify certificate. In both instances several requests are sent, but all time out, there are also many resends but no reply.

Are there other parameters that I should set (called id, domain, realm, src address?

I can ping the radius server i use (81.92.236.228) and the shared secret is correctly used. This radius server is correctly used with cisco and Zcomax APs Coputers connect using EAP-PEAP and EAPTTLS using these non mikrotik APs. I tried with eap-peap from a windows xp notebook.

Do you see what could be wrong ?

Marc


Top
 Profile  
 
vik1988
 Post subject: Re: WPA/WPA2 entreprise with EAP-PEAP autentications
PostPosted: Mon Mar 19, 2012 5:56 am 
Offline
Member Candidate
Member Candidate

Joined: Sun Oct 25, 2009 2:18 pm
Posts: 200
Karma: 2

Location: India
What is the mac-format you used as Username and password and what format is described in Radius Server does matters.

paste logs....

_________________
Vikas Kumar Gupta
If you Like my post then add KARMA
skype- kumarvikas_gupta


Top
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  Page 1 of 1
 [ 4 posts ] 

Board index » RouterOS » Wireless Networking

All times are UTC + 2 hours


Who is online

Users browsing this forum: gkrueger and 12 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB® Forum Software © phpBB Group
Karma functions powered by Karma MOD © 2007, 2009 m157y