Go Back   Wireless and Wifi Forums > News > Newsgroups > alt.internet.wireless
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 11-23-2006, 02:52 PM
liolemaire@gmail.com
Guest
 
Posts: n/a
Default eap-tls without active directory

hello,
i have a client who provides wireless access to separate entities in
the same building.
Right now he's using LEAP and ACS database. Now he would like to move
toward eap-tls because it's the most secured.

Usually, I install eap-tls within a active directory and distribute
machine certificate via global policy. Now the problem is that his
laptops are not in a Active directory domain because they come from
unrelated entities.

My idea was to use a fictionnal active directory just for the database
purpose, and download machine certificate manually via the web. (the
client gets his hand on each laptop to configure LEAP)

Does anybody have a bright idea to deploy certificates without active
directory; I think that no matter what, we need a database and a CA.

Thank your for your suggestions.


Reply With Quote
  #2 (permalink)  
Old 11-23-2006, 05:42 PM
Peter Boosten
Guest
 
Posts: n/a
Default Re: eap-tls without active directory

In alt.internet.wireless liolemaire@gmail.com wrote:
>
> Does anybody have a bright idea to deploy certificates without active
> directory; I think that no matter what, we need a database and a CA.
>


A simple box with linux and freeradius.

Peter

--
http://www.boosten.org

Mail: peter at boosten dot org

Reply With Quote
  #3 (permalink)  
Old 11-26-2006, 07:26 AM
nuzz
Guest
 
Posts: n/a
Default Re: eap-tls without active directory

You could use Zeroshell available at http://www.zeroshell.net/eng/ which is
a small linux distribution available as live cd or compact flash image for
embedded devices. This Linux is easy to use because is web administrable. It
includes a certification authority to distribute x509 certificate and radius
server to authenticate wireless client using 802.1x (eap-tls, peap and
eap-ttls). I am testing it and appears to be very stable and useful. The
best feature I think is the captive portal for hotspots web login.
bye

<liolemaire@gmail.com> wrote in message
news:1164297143.553814.265210@j72g2000cwa.googlegr oups.com...
> hello,
> i have a client who provides wireless access to separate entities in
> the same building.
> Right now he's using LEAP and ACS database. Now he would like to move
> toward eap-tls because it's the most secured.
>
> Usually, I install eap-tls within a active directory and distribute
> machine certificate via global policy. Now the problem is that his
> laptops are not in a Active directory domain because they come from
> unrelated entities.
>
> My idea was to use a fictionnal active directory just for the database
> purpose, and download machine certificate manually via the web. (the
> client gets his hand on each laptop to configure LEAP)
>
> Does anybody have a bright idea to deploy certificates without active
> directory; I think that no matter what, we need a database and a CA.
>
> Thank your for your suggestions.
>




Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Growing Web Directory Quaid alt.internet.wireless 0 01-26-2007 07:42 PM
Active Repeater in the mountains getwilde alt.internet.wireless 11 11-15-2006 10:46 PM
802.1x machine authentication without directory michael.owen comp.security.misc 5 10-31-2006 10:35 AM
MS Active Directory Vs LDAP Rhino 007 comp.security.misc 4 10-10-2006 05:07 AM
AD-2k3 & SSO in Mac Rich Environment SunWatch@gmail.com comp.security.misc 7 08-18-2005 12:28 PM


All times are GMT. The time now is 09:48 PM.


Powered by vBulletin® Version 3.7.1
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45