yesterday
Hi everyone,
I would like to ask if anyone has experienced a similar issue while working with ExtremeControl.
Our customer has the following environment:
The authentication workflow is the following:
Client
│
│ Connects to SSID (802.1X)
▼
Wireless AP
│
▼
WLC
│
▼
ExtremeControl (ACE)
│
│ RADIUS Authentication
▼
Active Directory
│
│ User authenticated
▼
ExtremeControl returns VLAN
│
▼
Endpoint receives VLAN and network access
At the customer's request, they modified the user's Active Directory account.
In:
Active Directory Users and Computers
→ User Properties
→ Account
→ Log On To...
Instead of allowing the user to log on to all computers, they restricted the account to only one specific computer.
After applying this change, the user is no longer able to authenticate through the 802.1X wireless SSID.
Any insights or best practices would be greatly appreciated.
5 hours ago
I appreciate the detailed troubleshooting steps. Problems involving AD policies and 802.1X can be difficult to diagnose, so it's great to have a clear explanation of what was happening. Paylocity