Configuring Active Directory

You must create an account for each user and each user group that will be connecting to the 802.1x network. You create these accounts using Active Directory. For more information about how to create user accounts in Active Directory, see the Windows 2000 Server Help.

To configure Active Directory

  1. On TESTSERVER, from Administrative Tools, open Active Directory Users and Computers.
  2. In the console tree, expand the Testdomain.local node, right-click Users, choose New, and then select User.
  3. In the New Object - User dialog box, type eaptls in the First name field as well as the User logon name: field, and then choose Next.
  4. Specify a password, confirm the password, choose Next, and then choose Finish.
  5. In the console tree, right-click Users, select New, and then select Group.
  6. Type EAP-TLS in the Group name field, and then set the Group scope to Global and Group type to Security.
  7. Choose OK.
  8. In the console tree, under the Users node, double-click eaptls, and then select the following options on the appropriate tab in the Properties dialog box:
    • On the Dial-in tab, choose Allow access.
    • On the Dial-in tab, choose No Callback.
    • On the Account tab, select the Store password using reversible encryption checkbox.
  9. Add the eaptls user to the EAP-TLS group.
  10. To verify that you have successfully added your user to the appropriate group, double-click EAP-TLS, and then choose the Members tab. The member you added appears in the member list.

See Also

How to Set Up an 802.1x Network and Connect to It with a CEPC

Last updated on Wednesday, April 13, 2005

© 2005 Microsoft Corporation. All rights reserved.