cancel
Showing results for 
Search instead for 
Did you mean: 

EAP Authentication of AP 3XX 4XX 5XX connected to XCA XCC

EAP Authentication of AP 3XX 4XX 5XX connected to XCA XCC

PeterK
Contributor III

Hi,

currently it’s not possible to push a 802.1X Config to APs from XCA / XCC as it works on identifi for years.

Is it possible to do a EAP-PEAP or EAP-TLS Config (maybe via cli/ssh/scp) on Wing 7 APs, when running centalized mode?

1 ACCEPTED SOLUTION

Miguel-Angel_RO
Valued Contributor II

Hi Peter,

I used this CLI code to enable the 802.1X PEAP per AP.

Playing with excel you can generate a lot of configs easily based on a list of serials.

As a reminder the 802.1x config in Identify is to be done per AP, so I always did that via CLI to configure it and certainly on big installations (1000+ APs).

As Tomasz mention it, it is a part of a bigger CLI config where I also fix the channels and the output power.

  • ##########
  • ap
  • 18xxy-1xxxx00000
  • 802_1x
  • peap username_used P@5sW0rD
  • exit
  • apply
  • exit
  • 18xxy-1xxxx00000
  • ...
  • ##########

 

View solution in original post

10 REPLIES 10

Ronald_Dvorak
Honored Contributor

Sorry but I gave up on WiNG.

If someone tells me that I’d need the CLI to config a WLAN installation then something is wrong with the product IMHO.

 

ECA is also not for me - as you’ve mentioned it should replace Identify but but there are sooo many features missing.

 

I think we’d all agree that CloudIQ is the future and the rest is…..

 

-Ron

PeterK
Contributor III

missing word:

So, I dont’t know if and maybe how it was possible that I could try this on a Wing 7 AP in centralized mode.

 

@Ronald Dvorak 

do you have a idea?

PeterK
Contributor III

Hi Tomasz,

right.

I’ve never done this via CLI / Filetransfer on native identifi APs. I always used the controllers web gui for EAP config on the native identifi APs.

So, I dont’t if and maybe how it was possible that I could try this on a Wing 7 AP in centralized mode.

Tomasz
Valued Contributor II

Hi Peter,

 

As far as I understand, “WiNG 7” APs ie. 3xx/4xx/5xx are dual-mode APs. In distributed mode (when they find WiNG controller or VC or XCA/XCC at which they belong to a distributed site*) they are booting with WiNG software. In centralized mode (when they find XCA/XCC at which they belong to a centralized site), they are booting IdentiFi software. This will determine what you can achieve through CLI of an AP itself.

* - there was something happening with Distributed Site support on XCA/XCC 4.76.01/4.76.02:

6506a31f74f84192bc0db31d073cdade_b1eb61c1-209a-4331-bcc8-d60cb17e65f7.png


Hope that helps,

Tomasz

PeterK
Contributor III

Hi Santosh,

I never tried distributed mode of XCA.

I will not run XCA / XCC as radius/nac.

I’m having a NAC / Extreme Control for authentication.

I will authenticate the APs via EAP and not only via MAC.

Extreme announces XCA / XCC as follow up product for identifi. But currently it’s unusable in enterprise enviroments because a lot function are still missing, which were available on identifi since years.

GTM-P2G8KFN