<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Computer account issue in IMC/UAM for 802.1x authentication in IMC</title>
    <link>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6677353#M1697</link>
    <description>&lt;P&gt;THANKS Neil!!!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now I see clear. I have to add this one Computer Account and this one handles (over the MSCHAPv2 Server) all the machine auth requests in my NW... It's not necessary to import or sync the machine accounts from the MS AD Server as it is a must for "normal" User Accounts.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Interesting design :-|&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for the Screen Shots!!!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Andreas&lt;/P&gt;</description>
    <pubDate>Mon, 24 Nov 2014 21:30:54 GMT</pubDate>
    <dc:creator>Andreas Waldherr</dc:creator>
    <dc:date>2014-11-24T21:30:54Z</dc:date>
    <item>
      <title>Computer account issue in IMC/UAM for 802.1x authentication</title>
      <link>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6665172#M1647</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I want migrate a PCM+/IDM 4.2&amp;nbsp;by a IMC/UAM 7.0&amp;nbsp;but i have a problem for the computer authentication.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The user account is synchronized by the custumer active directory, and i use the eap-peap for the authentication, this is ok, it's work well, no problem.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But i do also authenticated the computer, but when i syncrhonize with the AD (cn=computer), i import the name of the computer same as a simple user.&lt;/P&gt;&lt;P&gt;And the machine authentication don't work, because &lt;SPAN class="hps"&gt;this&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;is seen as a&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;user&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;authentication&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;without&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;password&lt;/SPAN&gt;...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When i manuelly created a user account with the computer option check box, it's ok the machine authentication work well.&lt;/P&gt;&lt;P&gt;i can't create all computer account, because they are a lot of computer.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How i can do, when i import the computer name by the AD, for change the account type by computer account in IMC/UAM?&lt;/P&gt;&lt;P&gt;&lt;SPAN class="hps"&gt;I tried&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;to import a&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;file with the&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;batch&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;function&lt;/SPAN&gt;, but it's create user account, it's not possible to create computer account...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks a lot.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;PS: with the PCM+/IDM, i don't have the problem and i don't use EAP-TLS.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 05 Nov 2014 19:23:39 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6665172#M1647</guid>
      <dc:creator>spag</dc:creator>
      <dc:date>2014-11-05T19:23:39Z</dc:date>
    </item>
    <item>
      <title>Re: Computer account issue in IMC/UAM for 802.1x authentication</title>
      <link>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6665918#M1650</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I will ask a few experts and see what they recommend...stay tuned. :)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;LM&lt;/P&gt;</description>
      <pubDate>Thu, 06 Nov 2014 19:01:13 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6665918#M1650</guid>
      <dc:creator>Lynn-Marie</dc:creator>
      <dc:date>2014-11-06T19:01:13Z</dc:date>
    </item>
    <item>
      <title>Re: Computer account issue in IMC/UAM for 802.1x authentication</title>
      <link>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6665956#M1651</link>
      <description>&lt;P&gt;&lt;SPAN class="hps"&gt;Thank you&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;very much,&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;this&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;is very nice!&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;:-)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 06 Nov 2014 19:50:27 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6665956#M1651</guid>
      <dc:creator>spag</dc:creator>
      <dc:date>2014-11-06T19:50:27Z</dc:date>
    </item>
    <item>
      <title>Re: Computer account issue in IMC/UAM for 802.1x authentication</title>
      <link>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6666056#M1653</link>
      <description>&lt;P&gt;I had this very same problem, so curious to hear another answer/opinion on this&amp;nbsp;- I was on the phone with HP as we tried to work through this but couldn't get them to sycnhronize and authenticate by LDAP.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Here's what I tried&lt;/STRONG&gt;:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Need to set up an ldap synch for hosts. Which means you need a filter condition like this:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;(&amp;amp;(objectclass=computer)(dNSHostName=*)(accountExpires&amp;gt;=now))&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;because workstations look different in LDAP. Then I created a policy using eap-peap/mschapv2. Because hosts come across as host/&amp;lt;hostname.domain.net&amp;gt; or whatever your domain is - and yes the slash is the other way from domain\user, so unclear as whether the prefix filters work properly - and you need a suffix in a service to use the policy.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For whatever reason the above, which looks like it should work, did not authenticate. In PCM its all MS NPS, so it reads AD fine for users and workstations. But in LDAP the credentials work differently for hosts. Maybe I got the certificate type wrong.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;I could only get the imc computer user&amp;nbsp;to&amp;nbsp;work&lt;/STRONG&gt;.&amp;nbsp;I really just&amp;nbsp;need to make sure the trusted machines do authenticate, so it can connect users to domain controllers. And I can remote into them. You may &amp;nbsp;have additional requirements.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But sounds like you already tried this:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Set up the&amp;nbsp;computer account. Create a PEAP service for it, point to an EAP-PEAP policy.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Then configure the virtual computer&amp;nbsp;in IMC&amp;nbsp;&lt;SPAN&gt;User&amp;gt;User Access Policy &amp;gt;Service Parameters&amp;gt; System Settings&amp;gt;Domain Controller-Assisted PEAP Authentication.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The workstations show up in online users as Account Name: computer, Login Name: &amp;lt;hostname&amp;gt;, Username: computer, so you can at least see them as separate line items and track them. But not as separate "accounts"&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;And only one domain is supported...&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 06 Nov 2014 23:55:51 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6666056#M1653</guid>
      <dc:creator>NeilR</dc:creator>
      <dc:date>2014-11-06T23:55:51Z</dc:date>
    </item>
    <item>
      <title>Re: Computer account issue in IMC/UAM for 802.1x authentication</title>
      <link>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6666420#M1655</link>
      <description>&lt;P&gt;&lt;SPAN class="hps"&gt;This&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;is exactly what&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;I tried&lt;/SPAN&gt;, but the computer can't to be authenticate....&lt;/P&gt;</description>
      <pubDate>Fri, 07 Nov 2014 13:03:07 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6666420#M1655</guid>
      <dc:creator>spag</dc:creator>
      <dc:date>2014-11-07T13:03:07Z</dc:date>
    </item>
    <item>
      <title>Re: Computer account issue in IMC/UAM for 802.1x authentication</title>
      <link>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6666582#M1657</link>
      <description>&lt;P&gt;I have these&amp;nbsp;settings for adapater 802.1x:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Auth method: Microsoft EAP (PEAP) &amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;gt; Settings: Validate server certifiacte checked - Trusted root cert auth checked - your windows domain checked (would not work without this set - with&amp;nbsp;PCM I left validate cert unchecked and it worked ok)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;gt; Auth method secured password EAP mschapv2 &amp;gt; configure use my windows credentials is checked, enable fast reconnect checked&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Advanced settings &amp;gt; Specify auth mode &amp;gt; user or computer authentication&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Also maybe you missed&amp;nbsp;this step:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="http://hpimc:8080/imc/plat/common/navigationTo.xhtml?url/usr/index.jsf" target="_blank"&gt;&lt;SPAN class="imc_ui_centerHeaderLink"&gt;User&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN class="imc_ui_centerHeaderNavSeparator"&gt;&amp;gt;&lt;/SPAN&gt;&lt;A href="http://hpimc:8080/imc/plat/common/navigationTo.xhtml?url=/acm/indextab.jsf" target="_blank"&gt;&lt;SPAN class="imc_ui_centerHeaderLink"&gt;User Access Policy&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN class="imc_ui_centerHeaderNavSeparator"&gt;&amp;gt;&lt;/SPAN&gt;&lt;A href="http://hpimc:8080/imc/plat/common/navigationTo.xhtml?url=/acm/systemconfig/introduction.xhtml" target="_blank"&gt;&lt;SPAN class="imc_ui_centerHeaderLink"&gt;Service Parameters&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN class="imc_ui_centerHeaderNavSeparator"&gt;&amp;gt;&lt;/SPAN&gt;&lt;SPAN class="imc_ui_centerHeaderLastNav"&gt;Certificate &amp;gt; Root Certificate &amp;gt; import EAP root certificate your domain root certificate - I think the virtual computer needs this as well as validate above to match&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="imc_ui_centerHeaderLastNav"&gt;If screen shots would help let me know and I'll upload...&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 07 Nov 2014 17:25:03 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6666582#M1657</guid>
      <dc:creator>NeilR</dc:creator>
      <dc:date>2014-11-07T17:25:03Z</dc:date>
    </item>
    <item>
      <title>Re: Computer account issue in IMC/UAM for 802.1x authentication</title>
      <link>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6669532#M1666</link>
      <description>&lt;P&gt;&lt;SPAN class="hps"&gt;NeilR&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;thank you&lt;/SPAN&gt;&lt;SPAN&gt;,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;SPAN class="hps"&gt;My goal is&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;to make no&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;change&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;in&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;configuration&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;of computers.&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;But I see&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;that it is not&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;possible to make&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;authentication&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;machine without&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;certificate.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN class="hps"&gt;Can you&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;send me the&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;screen shots&lt;/SPAN&gt;&lt;SPAN&gt;, configuration&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;with&lt;/SPAN&gt; &lt;SPAN class="hps"&gt;certificate authentication &lt;SPAN class="hps"&gt;machine&lt;/SPAN&gt;?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="hps"&gt;Thank you&lt;/SPAN&gt;&lt;SPAN&gt;.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;PS: I don't&lt;/SPAN&gt;&amp;nbsp;missed this step: &lt;A rel="nofollow" href="http://hpimc:8080/imc/plat/common/navigationTo.xhtml?url/usr/index.jsf" target="_blank"&gt;&lt;SPAN class="imc_ui_centerHeaderLink"&gt;User&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN class="imc_ui_centerHeaderNavSeparator"&gt;&amp;gt;&lt;/SPAN&gt;&lt;A rel="nofollow" href="http://hpimc:8080/imc/plat/common/navigationTo.xhtml?url=/acm/indextab.jsf" target="_blank"&gt;&lt;SPAN class="imc_ui_centerHeaderLink"&gt;User Access Policy&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN class="imc_ui_centerHeaderNavSeparator"&gt;&amp;gt;&lt;/SPAN&gt;&lt;A rel="nofollow" href="http://hpimc:8080/imc/plat/common/navigationTo.xhtml?url=/acm/systemconfig/introduction.xhtml" target="_blank"&gt;&lt;SPAN class="imc_ui_centerHeaderLink"&gt;Service Parameters&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN class="imc_ui_centerHeaderNavSeparator"&gt;&amp;gt;&lt;/SPAN&gt;&lt;SPAN class="imc_ui_centerHeaderLastNav"&gt;Certificate &amp;gt; Root Certificate &amp;gt; import EAP root certificate your domain root certificate - I think the virtual computer needs this as well as validate above to match.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="imc_ui_centerHeaderLastNav"&gt;PS: The Auth method secured password EAP mschapv2&amp;nbsp;for AD's&amp;nbsp;user account, works well.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Nov 2014 09:21:55 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6669532#M1666</guid>
      <dc:creator>spag</dc:creator>
      <dc:date>2014-11-12T09:21:55Z</dc:date>
    </item>
    <item>
      <title>Re: Computer account issue in IMC/UAM for 802.1x authentication</title>
      <link>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6669986#M1667</link>
      <description>&lt;P&gt;I agree with goal to minimize configuration change on computers. My goal also.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But you will need to make 802.1x settings active.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;These changes can easily be set, and enforced, by a Windows Policy Object in the Active Directory, set by OU&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Users can be prohibted from changes if desired.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The attached PDF shows the client adapter setup, UAM user configuration, UAM service and policy configurations, and access details for user and computer, and telnet session to switch.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am using Procurve 2910 series switches with recent firmware.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Update: Added screen shots of AD CA - I think they are pretty generic&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2014 20:55:27 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6669986#M1667</guid>
      <dc:creator>NeilR</dc:creator>
      <dc:date>2014-11-13T20:55:27Z</dc:date>
    </item>
    <item>
      <title>Re: Computer account issue in IMC/UAM for 802.1x authentication</title>
      <link>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6671304#M1676</link>
      <description>&lt;P&gt;Thanks a lot NeilR.&lt;/P&gt;</description>
      <pubDate>Fri, 14 Nov 2014 10:20:45 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6671304#M1676</guid>
      <dc:creator>spag</dc:creator>
      <dc:date>2014-11-14T10:20:45Z</dc:date>
    </item>
    <item>
      <title>Re: Computer account issue in IMC/UAM for 802.1x authentication</title>
      <link>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6676731#M1694</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;SPAN&gt;&lt;A target="_blank" href="https://community.hpe.com/t5/user/viewprofilepage/user-id/549529"&gt;Neil&lt;/A&gt;&lt;/SPAN&gt;&lt;SPAN&gt;!&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks for your Infos!!!&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Can you please send us the LDAP Server and LDAP Sync Policy Setup Info’s. I wonder because the machine account in your example was named just "Computer" for the User Name, ID Number and Account Name... So you have a lot of Computer Users in your User List? I mean the Accounts looks all the same?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I used UAM 7.1 and the machine user looks very different in our case... Does not work right now either. Struggle with the MSCHAPv2 Certificate verification against the MS AD. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I heard that only EAP-TLS-AuthN (with Client Certs) is supported and works and wonder how this can work for you?&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks a lot!&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Andreas&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 23 Nov 2014 14:03:35 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6676731#M1694</guid>
      <dc:creator>Andreas Waldherr</dc:creator>
      <dc:date>2014-11-23T14:03:35Z</dc:date>
    </item>
    <item>
      <title>Re: Computer account issue in IMC/UAM for 802.1x authentication</title>
      <link>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6676756#M1695</link>
      <description>&lt;P&gt;Glad to help. I have posted 2 docs one with LDAP setup and one with computer account setup.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Computer account is a built in user, so one username handles all computer, with separate login names. A screen shot in computer account doc shows this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;LDAP synchs only users not computers. The &amp;nbsp;virtual&amp;nbsp;computer proxies authentication I beleive to AD.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;All examples in HP documents show only certificate option - maybe they prefer us to use them ;)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But if the network adapater configuration is I describe eralier with both user and computer authentication set, then pick EAP-PEAP not TLS and this will work.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope all this helps&lt;/P&gt;</description>
      <pubDate>Sun, 23 Nov 2014 19:36:17 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6676756#M1695</guid>
      <dc:creator>NeilR</dc:creator>
      <dc:date>2014-11-23T19:36:17Z</dc:date>
    </item>
    <item>
      <title>Re: Computer account issue in IMC/UAM for 802.1x authentication</title>
      <link>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6677353#M1697</link>
      <description>&lt;P&gt;THANKS Neil!!!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now I see clear. I have to add this one Computer Account and this one handles (over the MSCHAPv2 Server) all the machine auth requests in my NW... It's not necessary to import or sync the machine accounts from the MS AD Server as it is a must for "normal" User Accounts.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Interesting design :-|&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for the Screen Shots!!!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Andreas&lt;/P&gt;</description>
      <pubDate>Mon, 24 Nov 2014 21:30:54 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/computer-account-issue-in-imc-uam-for-802-1x-authentication/m-p/6677353#M1697</guid>
      <dc:creator>Andreas Waldherr</dc:creator>
      <dc:date>2014-11-24T21:30:54Z</dc:date>
    </item>
  </channel>
</rss>

