Go Back   Velocity Reviews > Newsgroups > Wireless Networking
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply

Wireless Networking - Reauthentication of Wireless User does not get prompt

 
Thread Tools Search this Thread
Old 05-23-2006, 04:13 PM   #1
Default Reauthentication of Wireless User does not get prompt


Hi Sir,

I set up a Radius server to authenticate wireless users via 802.1x. The EAP
protocol deployed is Microsoft PEAP as most of the clients OS is XP. The
users might be sharing the same laptops. When a user select the wireless
network to connect to, he was prompted a window for him to enter the
Username, Password and Domain field. After successful authentication, he was
able to access the network resources.

However, the user is not prompted the Username, Password and Domain after he
has done so the first time. I understand that XP cached the user credentials
in the registry. But my customer would like the window prompt to appear when
the following scenario happens to reauthenticate

a) Session timeout
b) Idle timeout to reauthenticate the current wireless user as the user
might leave his workspace for a short period of time and someone might have
use his credential to access the network illegitimately
c) When he shuts down the PC and the laptop is passed to another user but
the previous user credential is used rather than the second user credentioal
is used.

How can I disable the automatic cached user credentials? Is there a way to
prompt the user after a period of time for him to enter Username, Password
and Domain field again? Is the option available in the XP client? I search
through the AP configuration options but found none.

Please advise. Thank you
Delon


=?Utf-8?B?RGVsb24=?=
  Reply With Quote
Old 05-26-2006, 03:32 AM   #2
Dave Mitton
 
Posts: n/a
Default Re: Reauthentication of Wireless User does not get prompt
Delon <> wrote:

>Hi Sir,
>
>I set up a Radius server to authenticate wireless users via 802.1x. The EAP
>protocol deployed is Microsoft PEAP as most of the clients OS is XP. The
>users might be sharing the same laptops. When a user select the wireless
>network to connect to, he was prompted a window for him to enter the
>Username, Password and Domain field. After successful authentication, he was
>able to access the network resources.
>
>However, the user is not prompted the Username, Password and Domain after he
>has done so the first time. I understand that XP cached the user credentials
>in the registry. But my customer would like the window prompt to appear when
>the following scenario happens to reauthenticate
>
>a) Session timeout


>b) Idle timeout to reauthenticate the current wireless user as the user
>might leave his workspace for a short period of time and someone might have
>use his credential to access the network illegitimately


Screen saver lock?

>c) When he shuts down the PC and the laptop is passed to another user but
>the previous user credential is used rather than the second user credentioal
>is used.
>
>How can I disable the automatic cached user credentials? Is there a way to
>prompt the user after a period of time for him to enter Username, Password
>and Domain field again? Is the option available in the XP client? I search
>through the AP configuration options but found none.
>
>Please advise. Thank you
>Delon


I know what is happening. Windows caches the User information from a
successfull EAP connection in the registry. And it WZC re-uses it when
setting a new connection to the same SSID. KB823731 described this relative to
PEAP, but it really applies to all EAP protocols. I couldn't find the article
when I just looked.

If you can work how to get a program to run for your events, what you want to do
is find the key in HKCU\Software\Microsoft\EAPOL\UserEapInfo\{deviceG UID}\n
where n starts at 1. Find the key containing your user and delete it. Or just
delete them all.

Of course WZC caches the information in memory, so deleting the key isn't always
sufficent.

Dave.


Dave Mitton
  Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
Notebook + dial up modem + wireless router = wireless network ? fujikoma_2008 Hardware 1 02-21-2008 04:02 PM
Setting up a Network -- Wired or Wireless? shopzero.net DVD Video 1 07-24-2006 07:18 PM
Re: adding wireless to a wired network AG A+ Certification 3 01-14-2005 08:52 AM
Re: adding wireless to a wired network Remo A+ Certification 0 01-07-2005 06:31 PM
Re: wireless internet problem PJS A+ Certification 0 03-07-2004 10:44 PM




SEO by vBSEO 3.3.2 ©2009, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46