802.1x Authentication for non-domain machines

G

Guest

Guest
Archived from groups: microsoft.public.win2000.security (More info?)

Is it possible to assign non-domain machines a certificate to authenticate
to a wireless network?
 
G

Guest

Guest
Archived from groups: microsoft.public.win2000.security (More info?)

The computer itself can not authenticate to the domain if it does not have a
computer account in Active Directory via EAP-TLS. If you use PEAP there is
no computer authentication - only user configuration at the client end but
all computers would need to trust the certificate on the IAS server. A non
domain computer can request a certificate from a domain CA via Web
Enrollment and is often done for ipsec offline certificate requests. There
is also a Microsoft wireless newsgroup where you may want to post. ---
Steve


"Carlos A. Morillo" <carlos.morillo@myrealbox.com> wrote in message
news:O69TDnsPFHA.248@TK2MSFTNGP15.phx.gbl...
> Is it possible to assign non-domain machines a certificate to authenticate
> to a wireless network?
>