OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: RE: IEEE 802.1x & dynamic vlan assignment

linux.yahoogmail.com
Date: Wed Aug 31 2005 - 01:19:45 CDT


I have already create and change this 2 registry entries:
AuthMode = 1
SupplicantMode = 3

I need to have both computer + user authentificatoin. It work fine when the user account already exist on the PC running Microsoft 802.1x client. The CISCO receive the 802.1x request and the ACS reply with the VLAN NAME, good.

BUT the computer doesn't send any EAPOL Start if the user account never loggon before on the computer !

That's my problem :-(

Is there a solution?
Can we force a computer only 802.1x request if the user account doesn't yet exist locally.

Can we force the computer to send new user 802.1x request even if the profil is not yet created locally?

Thanks for your help!

---------------------------------------------------------------------------
---------------------------------------------------------------------------