PC Review


Reply
Thread Tools Rate Thread

802.1x authentication

 
 
Michael Roberts
Guest
Posts: n/a
 
      4th Aug 2005
I have a major problem with Windows XP and 802.1x. We have 802.1x using
EAP-PEAP setup on our network, and the actual authentication works great.

Here's the problem:
A workstation boots up, it is connected to a unauthenticated port, which
is fine. It could be a problem if I wanted to push SMS updates in the
middle of the night, but that is not the major issue. The major
problem is that when the user logs into the machine, the machine begins
loading, which can include mapping drives, launching network
applications, fetching information from remote systems... At this point
the 802.1x authentication still has not occurred. So everything
mentioned above fails. Drive mappings get a red 'X', applications
complain the network is not available, etc. By the time the
authentication occurs, a number of applications need to be restarted
that failed.

This is a major annoyance. Would it not make sense to perform the
802.1x authentication immediately after the user types their login
credentials? Granted, this would only work for an environment where the
user's login credentials are the same as their required 802.1x credentials.

Any ideas?????? Is MS listening on this group????

-mike
 
Reply With Quote
 
 
 
 
Kurt
Guest
Posts: n/a
 
      5th Aug 2005

Are the workstations connected to a Cisco (or other slow-startup) switch? If
so, try turning on portfast for the ports and see if that speeds up your
authentication.

....kurt

"Michael Roberts" <(E-Mail Removed)> wrote in message
news:jhoIe.64$(E-Mail Removed)...
>I have a major problem with Windows XP and 802.1x. We have 802.1x using
>EAP-PEAP setup on our network, and the actual authentication works great.
>
> Here's the problem:
> A workstation boots up, it is connected to a unauthenticated port, which
> is fine. It could be a problem if I wanted to push SMS updates in the
> middle of the night, but that is not the major issue. The major problem
> is that when the user logs into the machine, the machine begins loading,
> which can include mapping drives, launching network applications, fetching
> information from remote systems... At this point the 802.1x
> authentication still has not occurred. So everything mentioned above
> fails. Drive mappings get a red 'X', applications complain the network is
> not available, etc. By the time the authentication occurs, a number of
> applications need to be restarted that failed.
>
> This is a major annoyance. Would it not make sense to perform the 802.1x
> authentication immediately after the user types their login credentials?
> Granted, this would only work for an environment where the user's login
> credentials are the same as their required 802.1x credentials.
>
> Any ideas?????? Is MS listening on this group????
>
> -mike



 
Reply With Quote
 
Michael Roberts
Guest
Posts: n/a
 
      5th Aug 2005
Excellent suggestion Kurt, but no we do not use Cisco. We are a Nortel
shop. All end user ports have spanning tree set to fast learning
though, which I believe the equivalent of your suggestion. Just trying
to keep the thread alive....

-mike

Kurt wrote:
> Are the workstations connected to a Cisco (or other slow-startup) switch? If
> so, try turning on portfast for the ports and see if that speeds up your
> authentication.
>
> ...kurt
>
> "Michael Roberts" <(E-Mail Removed)> wrote in message
> news:jhoIe.64$(E-Mail Removed)...
>
>>I have a major problem with Windows XP and 802.1x. We have 802.1x using
>>EAP-PEAP setup on our network, and the actual authentication works great.
>>
>>Here's the problem:
>>A workstation boots up, it is connected to a unauthenticated port, which
>>is fine. It could be a problem if I wanted to push SMS updates in the
>>middle of the night, but that is not the major issue. The major problem
>>is that when the user logs into the machine, the machine begins loading,
>>which can include mapping drives, launching network applications, fetching
>>information from remote systems... At this point the 802.1x
>>authentication still has not occurred. So everything mentioned above
>>fails. Drive mappings get a red 'X', applications complain the network is
>>not available, etc. By the time the authentication occurs, a number of
>>applications need to be restarted that failed.
>>
>>This is a major annoyance. Would it not make sense to perform the 802.1x
>>authentication immediately after the user types their login credentials?
>>Granted, this would only work for an environment where the user's login
>>credentials are the same as their required 802.1x credentials.
>>
>>Any ideas?????? Is MS listening on this group????
>>
>>-mike

>
>
>

 
Reply With Quote
 
 
 
Reply

Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
SSL Server authentication, SSL client authentication, SSL connection and SSL session Johnny Windows XP Basics 3 14th Aug 2006 09:47 PM
Forms Authentication displays basic authentication dialogue window Brett Porter Microsoft ASP .NET 5 3rd Feb 2004 07:06 PM
Basic Authentication v. Integrated Windows Authentication w/ Delegation Mark Microsoft ASP .NET 0 20th Jan 2004 03:13 PM
Forms Authentication, external authentication server, & rerouting to orig. req. URL Andrew Connell Microsoft ASP .NET 1 21st Oct 2003 06:41 PM
401 Authentication fail calling Web Service over SSL from PocketPC with Basic Authentication. John Hynes Microsoft Dot NET Compact Framework 0 19th Sep 2003 02:49 PM


Features
 

Advertising
 

Newsgroups
 


All times are GMT +1. The time now is 03:32 PM.