![Cisco AIRONET CB21AG Скачать руководство пользователя страница 113](http://html.mh-extra.com/html/cisco/aironet-cb21ag/aironet-cb21ag_installation-and-configuration-manual_63432113.webp)
5-47
Cisco Aironet 802.11a/b/g Wireless LAN Client Adapters (CB21AG and PI21AG) Installation and Configuration Guide
OL-4211-03
Chapter 5 Configuring the Client Adapter
Setting Security Parameters
Step 3
Check the Use Machine Information For Domain Logon check box if you want the client to attempt
to log into a domain using machine authentication with user credentials rather than user authentication.
Doing so enables your computer to connect to the network prior to user logon. The default setting is
checked.
Note
If you do not check the Use Machine Information For Domain Logon check box, machine
authentication is not performed. Authentication does not occur until you log on.
Step 4
Choose the certificate authority from which the server certificate was downloaded in the Trusted Root
Certification Authorities drop-down box.
Step 5
Perform one of the following to specify the username and password that will be used for inner PEAP
tunnel authentication:
•
If you want your Windows username and password to also serve as your PEAP username and
password, check the Use Windows User Name and Password check box.
•
If you want to use a distinct username and password (which are registered with the RADIUS server)
to start the PEAP authentication process, follow these steps:
a.
Enter your PEAP username and password in the corresponding fields.
Note
Your Windows username is filled in automatically. Simply delete your Windows
username and enter your separate PEAP username.
b.
Re-enter your password in the Confirm Password field.
Step 6
If the Use Windows User Name and Password check box is unchecked and you want to implement added
security by further refining the network certificate that will be accepted and controlling the string used to set
up the outer PEAP tunnel, follow these steps:
a.
Click Advanced. The Configuration Settings window appears (see
Figure 5-16
).
Figure 5-16
Configuration Settings Window
b.
Leave the Specific Server or Domain field blank to allow the client to accept a certificate from any
server that supplies a certificate signed by the certificate authority listed in the Trusted Root
Certification Authorities drop-down box on the Define PEAP (EAP-MSCHAP V2) Configuration
window (this is the recommended option) or enter the domain name of the server from which the
client will accept a certificate.