<p>On Windows 7 you can configure pre-login authentication (wireless connection properties -> Advanced settings) both for computer and user. On XP (with native windows client), I don't think that it is possible to do that.</p>
<p> </p>
<p>On Fri, 9 Sep 2011 09:00:32 -0500, "Scott Hughes" <scott@renshawauto.net> wrote:</p>
<blockquote style="padding-left: 5px; border-left: #1010ff 2px solid; margin-left: 5px; width: 100%;"><!-- html ignored --><!-- head ignored --><!-- meta ignored --><!-- meta ignored --><!-- < /* Font Definitions */ @font-face {font-family:Calibri; panose-1:2 15 5 2 2 2 4 3 2 4;} /* Style Definitions */ p.MsoNormal, li.MsoNormal, div.MsoNormal {margin:0in; margin-bottom:.0001pt; font-size:11.0pt; font-family:"Calibri","sans-serif";} a:link, span.MsoHyperlink {mso-style-priority:99; color:blue; text-decoration:underline;} a:visited, span.MsoHyperlinkFollowed {mso-style-priority:99; color:purple; text-decoration:underline;} p.MsoListParagraph, li.MsoListParagraph, div.MsoListParagraph {mso-style-priority:34; margin-top:0in; margin-right:0in; margin-bottom:0in; margin-left:.5in; margin-bottom:.0001pt; font-size:11.0pt; font-family:"Calibri","sans-serif";} span.EmailStyle17 {mso-style-type:personal-compose; font-family:"Calibri","sans-serif"; color:windowtext;} .MsoChpDefault {mso-style-type:export-only; font-family:"Calibri","sans-serif";} @page WordSection1 {size:8.5in 11.0in; margin:1.0in 1.0in 1.0in 1.0in;} div.WordSection1 {page:WordSection1;} /* List Definitions */ @list l0 {mso-list-id:1199513229; mso-list-type:hybrid; mso-list-template-ids:-2011117094 67698705 67698713 67698715 67698703 67698713 67698715 67698703 67698713 67698715;} @list l0:level1 {mso-level-text:"%1\)"; mso-level-tab-stop:none; mso-level-number-position:left; text-indent:-.25in;} @list l0:level2 {mso-level-number-format:alpha-lower; mso-level-tab-stop:none; mso-level-number-position:left; text-indent:-.25in;} @list l0:level3 {mso-level-number-format:roman-lower; mso-level-tab-stop:none; mso-level-number-position:right; text-indent:-9.0pt;} @list l0:level4 {mso-level-tab-stop:none; mso-level-number-position:left; text-indent:-.25in;} @list l0:level5 {mso-level-number-format:alpha-lower; mso-level-tab-stop:none; mso-level-number-position:left; text-indent:-.25in;} @list l0:level6 {mso-level-number-format:roman-lower; mso-level-tab-stop:none; mso-level-number-position:right; text-indent:-9.0pt;} @list l0:level7 {mso-level-tab-stop:none; mso-level-number-position:left; text-indent:-.25in;} @list l0:level8 {mso-level-number-format:alpha-lower; mso-level-tab-stop:none; mso-level-number-position:left; text-indent:-.25in;} @list l0:level9 {mso-level-number-format:roman-lower; mso-level-tab-stop:none; mso-level-number-position:right; text-indent:-9.0pt;} ol {margin-bottom:0in;} ul {margin-bottom:0in;} --> <!-- xml ignored --><!-- o ignored --><!-- endif ignored --><!-- xml ignored --><!-- o ignored --><!-- o ignored --><!-- endif ignored -->
<div class="WordSection1">
<p class="MsoNormal">Hello all,<!-- o ignored --></p>
<p class="MsoNormal"><!-- o ignored --> </p>
<p class="MsoNormal">I have been using FreeRadius for several years now and am stuck trying to make our Windows based wireless system authenticate PRIOR to user login.<!-- o ignored --></p>
<p class="MsoNormal"><!-- o ignored --> </p>
<p class="MsoNormal">I have searched the FreeRadius and Deploying FreeRadius sites as well as Google, but no luck. Here is a brief over-view of my FreeRadius setup:<!-- o ignored --></p>
<p class="MsoNormal"><!-- o ignored --> </p>
<p class="MsoListParagraph" style="text-indent: -.25in; mso-list: l0 level1 lfo1;"><!-- if ignored --><span style="mso-list: Ignore;">1)<span style="font: 7.0pt ;"> </span></span><!-- endif ignored -->Clients: Windows XP & Windows 7 (Professional in both cases – NO VISTA!)<!-- o ignored --></p>
<p class="MsoListParagraph" style="text-indent: -.25in; mso-list: l0 level1 lfo1;"><!-- if ignored --><span style="mso-list: Ignore;">2)<span style="font: 7.0pt ;"> </span></span><!-- endif ignored -->Currently running FreeRadius version 2.0.5<!-- o ignored --></p>
<p class="MsoListParagraph" style="text-indent: -.25in; mso-list: l0 level1 lfo1;"><!-- if ignored --><span style="mso-list: Ignore;">3)<span style="font: 7.0pt ;"> </span></span><!-- endif ignored -->Currently authenticating users via TLS/PEAP with computer name/username<!-- o ignored --></p>
<p class="MsoNormal"><!-- o ignored --> </p>
<p class="MsoNormal">I’m not sure what else (if anything) you might need. I am also looking at changing the FreeRadius setup to authenticate against our Windows 2008r2 Active Directory servers. We have one main location and two remote sites. Currently we have only one FreeRadius server at the main site. If the VPN connection between the main site and either / both of the remote sites goes down, the remote sites can’t authenticate. My thought was to have three FreeRadius servers that would authenticate to the local copy of the AD. Having said all of this, I do not want to get to many things going at one time. I much prefer to tackle on issue at a time.<!-- o ignored --></p>
<p class="MsoNormal"><!-- o ignored --> </p>
<p class="MsoNormal">Thanks in advance for any insight you may have on either/both of these issues.<!-- o ignored --></p>
<p class="MsoNormal"><!-- o ignored --> </p>
<p class="MsoNormal">Scott<!-- o ignored --></p>
<p class="MsoNormal"><!-- o ignored --> </p>
</div>
</blockquote>
<p> </p>