Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Wireless Security » Obtaining settings from XP to move to Macintosh
Search Topic:
Uniqs:
239
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
solectek mp550-E wireless router and bridge »
« Can One SSID Be More Secure Than Another?  
AuthorAll Replies

tlmurray

join:2003-03-22
Roswell, GA
·AT&T DSL Service

Obtaining settings from XP to move to Macintosh

I have a corporate WinXP laptop with wireless. The bottom line is extract the necessary settings, certficate(s), etc., and replicate them on my Mac -- corporate won't support Macs. The Security forum may be the wrong place to start, so if there is a better one, let me know.

They use IBM Access Connections to manage their WLAN. The SSID field in the manager is blank, but I know the name. On the Mac if I try to log in to that SSID I am presented with a password challenge; it's my understanding that they use certificates to provide the log-in for Windows.

The first challenge, I suppose, is to find the certificate. The certificate store is chock full -- anyone know how to find the right one?

docrice

join:2008-03-31
Fremont, CA

Getting the right cert(s) is one thing, but you also need to know the exact 802.1X method being used here. If it's just a server-side certificate involved, then it's probably EAP-TTLS (MS-CHAPv2 as the inner-method or PAP?) or PEAP as those tend to be pretty common. On the other hand, you seem to infer that XP machines don't require a password while Macs do. That implies EAP-TLS as the default method, while EAP-TTLS or PEAP using a client password can also be negotiated.

In any case, OS X's 802.1X support seems to support all the common flavors. I haven't played with IBM / Lenovo ThinkVantage Access Connections in a while, but I suspect that the certificate(s) exist in Window's certificate manager store (Start -> Run -> certmgr.msc). There should a client certificate in the Personal Store (if they use user certs) and the server cert is most likely in the Trusted Root Certification Authorities store as these are commonly pushed out through Group Policy for all Active Directory members.. Look for a common name that ends with the domain suffix of your corporate network (corp.mycompany.com).
-
Forums » Up and Running » Security » Wireless Securitysolectek mp550-E wireless router and bridge »
« Can One SSID Be More Secure Than Another?  


Thursday, 21-Aug 08:28:16 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 9 years online! © 1999-2008 dslreports.com.
page compression OFF
Most commented news this week
· [99] Was FiOS a Good Idea?
· [77] Landscaping, Courtesy of AT&T?
· [76] ISPs Whine About Network Neutrality 'Paranoia'
· [69] FCC Finally Issues Comcast Throttling Order
· [56] Google Launches White Space Broadband Website
· [56] Craig Moffett: Network Upgrades Are For Ninnies
· [52] Qwest, Unions Strike Deal
· [52] Did Apple iPhone Fix Make Problems Worse?
· [49] Olympics Didn't Cause The Exaflood
· [49] AT&T Cooking Up New VoIP Product
Most people now reading
· How I Stole Someone's Identity [Security]
· Criss Angel revealed. [56k lookout! (broadband heavy)]
· Extjs grid combo box. [Webmasters and Developers]
· [Speed] Comcast to throttle individual users; all protocols [Comcast HSI]
· Anyone know how to capture NBCOlympics.com video streams [General Questions]
· Acronis True Image Home 2009 Beta Testing! [Software]
· Microsoft Enlists Jerry Seinfeld in Ad War Against Apple [All things Macintosh]
· How do you file things on your computer? [General Questions]
· Is something missing? (Stove question) [Home Repair & Improvement]
· Symantec to Acquire PC Tools [Security]