HP ProCurve 700wl Series - Secure Access Configuration Guide for Wireless Clients (April 2005) Part One: Browser-Based Logons
e. Click on the Client (juser) to get Client details. Click the View User
Rights button to validate that the user is authenticated correctly.
Figure 1.7 –Client Details Page
Configuring Scenario 2: Browser-based Logon using LDAP Authentication
Scenario 2 consists of a wireless, WPA-PSK, Windows XP client authenticating to an LDAP
database. In this example, we will configure the ACS to authenticate users against Windows
Active Directory (which is an LDAP database) and interpret group affiliation returned by the
server as the user’s Identity Profile. The steps required are:
• On the Enterprise Server, create a user account in Active Directory and associate it
with a group.
• On the ACS, define an LDAP Authentication Service and add it to the System
Authentication Policy.
• On the ACS, configure the Authenticated Access Policy to allow clients to use Real IP
addresses (via DHCP).
• On the AP 420, configure WPA-PSK wireless parameters.
• Connect Windows XP Client, logon using browser-based logon and verify
authentication.
1) On the Enterprise Server, create a user account in Active Directory and
associate it with a group.
Note: In this example, the Enterprise Server is configured as a Domain Controller
named “samcorp.com”.
© Copyright 2005 Hewlett-Packard Company, LP. 14