Cisco Cisco 5520 Wireless Controller Technical Manual

Page of 95
NPS, Wireless LAN Controllers, and Wireless
Networks Configuration Example
Document ID: 115988
Contributed by Nick Tate, Cisco TAC Engineer.
Apr 02, 2013
Contents
Introduction
Prerequisites
     Requirements
     Components Used
     Conventions
PEAP Overview
     PEAP Phase One: TLS−Encrypted Channel
     PEAP Phase Two: EAP−Authenticated Communication
Configure
     Network Diagram
     Configurations
        Configure the Microsoft Windows 2008 Server
        Configure the Wireless LAN Controller and LAPs
        Configure the Wireless Clients for PEAP−MS−CHAP v2 Authentication
Verify
Troubleshoot
Related Information
Introduction
This document provides a sample configuration for the Protected Extensible Authentication Protocol (PEAP)
with Microsoft Challenge Handshake Authentication Protocol (MS−CHAP) version 2 authentication in a
Cisco Unified Wireless network with the Microsoft Network Policy Server (NPS) as the RADIUS server.
Prerequisites
Requirements
Ensure that you are familiar with these procedures before you attempt this configuration:
Knowledge of basic Windows 2008 installation
• 
Knowledge of Cisco controller installation
• 
Ensure that these requirements have been met before you attempt this configuration:
Install the Microsoft Windows Server 2008 operating system on each of the servers in the test lab.
• 
Update all service packs.
• 
Install the controllers and lightweight access points (LAPs).
• 
Configure the latest software updates.
•