Answer the question
In order to leave comments, you need to log in
How to force authorization of clients via PSK in a Wi-Fi network where there are both PSK and EAP?
Actually share the links to the instructions for macos and Windows, for some reason, if the system sees the included radius and interprise, it asks for a login and a pass, how to force it to log in using wpa-personal/wpa2-personal? I did not find it in Windows or on iPhones from employees. In wine 7, it seems like you can create a network profile manually, but it does not connect, although the settings seem to be all the same as on the router. In Linux, there seems to be no problem, there is simply no radius, but in wicd, for example, you can select all the parameters and what encryption to use and what authorization method. As a temporary solution, I made one virtual ap only with PSK, the second one only with a radius, but I would like the point to be one.
Answer the question
In order to leave comments, you need to log in
If my memory serves me, then the client makes authorization based on the data of the access point. If the access point is set to wpa2-enterprise , then clients will use it and the protocols that were specified on it. If the client does not understand this protocol (we have stopped supporting the old standards), then he is not an authorization.
It doesn't matter what you have. Whether you have a radius server deployed locally or not, what matters is what settings are made on the access points.
> In Linux, there seems to be no problem, there is simply no radius
> for macOS and Windows, for some reason, if the system sees the included radius and the enterprise, it asks for login and pass
In linux, os x and windows, you can separately install the radius server. If we are talking about the server, but it cannot affect the client settings for the access point.
> As a temporary solution, I made one virtual ap only with PSK, the second one only with a radius, but I would like the point to be one.
I don’t know about Cisco and other serious enterprise solutions, but with mikrotik you make two, three, ..., ten, ..., + n, ssid for 1 access point and share your settings for each network. Otherwise, how.
PS If I were you, I would leave only enterprise.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question