<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Windows radius with certificate config in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/windows-radius-with-certificate-config/m-p/308933#M80115</link>
    <description>&lt;P&gt;Hi there,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am testing Radius configuration for our admin accounts using windows NPS over PEAP-MSCHAPv2. I have our local CA cert in the cert profile and configured all the required params like vendor specifi attributes,etc. When I run a test authentication profile and add my domain creds I get the message &lt;FONT color="#3366FF"&gt;&lt;STRONG&gt;''Response for user: "&amp;lt;user name&amp;gt;" from RADIUS server: "unable to get local issuer certificate; unknown CA" Authentication failed against RADIUS server at &amp;lt;server IP&amp;gt;:1812 for user "&amp;lt;user name&amp;gt;&lt;/STRONG&gt;&lt;FONT color="#000000"&gt;.&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#3366FF"&gt;&lt;FONT color="#000000"&gt;Has anyone else seen this?&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 31 Jan 2020 17:58:26 GMT</pubDate>
    <dc:creator>Jamesy</dc:creator>
    <dc:date>2020-01-31T17:58:26Z</dc:date>
    <item>
      <title>Windows radius with certificate config</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/windows-radius-with-certificate-config/m-p/308933#M80115</link>
      <description>&lt;P&gt;Hi there,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am testing Radius configuration for our admin accounts using windows NPS over PEAP-MSCHAPv2. I have our local CA cert in the cert profile and configured all the required params like vendor specifi attributes,etc. When I run a test authentication profile and add my domain creds I get the message &lt;FONT color="#3366FF"&gt;&lt;STRONG&gt;''Response for user: "&amp;lt;user name&amp;gt;" from RADIUS server: "unable to get local issuer certificate; unknown CA" Authentication failed against RADIUS server at &amp;lt;server IP&amp;gt;:1812 for user "&amp;lt;user name&amp;gt;&lt;/STRONG&gt;&lt;FONT color="#000000"&gt;.&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#3366FF"&gt;&lt;FONT color="#000000"&gt;Has anyone else seen this?&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 31 Jan 2020 17:58:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/windows-radius-with-certificate-config/m-p/308933#M80115</guid>
      <dc:creator>Jamesy</dc:creator>
      <dc:date>2020-01-31T17:58:26Z</dc:date>
    </item>
    <item>
      <title>Re: Windows radius with certificate config</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/windows-radius-with-certificate-config/m-p/320668#M82108</link>
      <description>&lt;P&gt;I don't know if you've found the fix since you posted the question, but I figured my issue out. I had to not only import the Root CA and all Intermediate CA certs for my cert on my FreeRADIUS box in the certificates store on the PAN, but also had to add them to the Certificate Profile used for the RADIUS server profile. So the cert profile for the RADIUS server profile now has the cert for the client, AND all the CAs (Root and Intermediate) for the FreeRADIUS server.&lt;/P&gt;</description>
      <pubDate>Fri, 03 Apr 2020 23:26:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/windows-radius-with-certificate-config/m-p/320668#M82108</guid>
      <dc:creator>Steve.Brill</dc:creator>
      <dc:date>2020-04-03T23:26:26Z</dc:date>
    </item>
    <item>
      <title>Re: Windows radius with certificate config</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/windows-radius-with-certificate-config/m-p/324359#M82809</link>
      <description>&lt;P&gt;I'm seeing this issue but haven't been able to get it licked. I have the certificate installed on the NPS as well as the PAN but am still getting the same error.&lt;/P&gt;</description>
      <pubDate>Wed, 22 Apr 2020 18:54:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/windows-radius-with-certificate-config/m-p/324359#M82809</guid>
      <dc:creator>JoshuaSanders</dc:creator>
      <dc:date>2020-04-22T18:54:50Z</dc:date>
    </item>
  </channel>
</rss>

