Configuration Overview

This section provides an overview of the steps required to configure Microsoft IAS for WPA-PEAP.

To configure Microsoft IAS for WPA-PEAP, perform the following:

  1. Perform a Windows update to ensure that you have all the latest Windows service packs.
  2. Download and install a Microsoft update for your IAS server if you are configuring your wireless network for WPA-PEAP and plan to enable Federal Information Processing Standard (FIPS) 140-2 support for Vocera B2000 badges.

    This update adds support for additional AES cipher suites in the Schannel.dll module. For more information, refer to http://support.microsoft.com/kb/948963.

  3. Promote the server to be a Domain Controller using the DOS command dcpromo.
  4. Install Microsoft Certificate Server. WPA-PEAP can only be used with certificates.
  5. Install a self-signed certificate (optional).
  6. Install IAS on your Windows server.
  7. Create a Wireless Users security group in Active Directory.
  8. Create a Wireless Access policy in IAS.
  9. Add your Access Points as RADIUS clients in IAS.
  10. Configure your badge for WPA-PEAP.
  11. Configuring a Cisco Wireless LAN Controller (WLC) for WPA-PEAP and IAS.