Forum Discussion
Devices not connecting to WPA2 Enterprise (EAP-TLS) wireless network automatically
- Dec 06, 2018
I believe that there is an engineering issue with certificate authentication and the WiFi profiles on iOS (an organisation that I work with has an open product support call).
It looks like the configuration profile is only accepted by iOS devices if the root cert is the issuing CA for the SCEP certificate. In an enterprise with tiered CA's and a mix of certificate trust relationships then that just doesn't work.
Get a support call logged and add your name to the list of customers with this issue.
I believe that there is an engineering issue with certificate authentication and the WiFi profiles on iOS (an organisation that I work with has an open product support call).
It looks like the configuration profile is only accepted by iOS devices if the root cert is the issuing CA for the SCEP certificate. In an enterprise with tiered CA's and a mix of certificate trust relationships then that just doesn't work.
Get a support call logged and add your name to the list of customers with this issue.
Thanks Andrew.
I've been banging my head against the wall with this issue for a couple weeks.
I've opened a case with Microsoft so hopefully, they shed some light on the issue soon.
Do you know whether there are any public comms on the issue? Do you know whether it's primarily an Intune issue, iOS or a bit of both?
- Andrew MatthewsDec 06, 2018Iron Contributor
There is no public comms because Microsoft support are treating it as an edge case.
The issue appears to be partially Intune and partially iOS. An identical configuration profile works on Android because Android does not appear to care about certificate trust!
- SRoachDec 06, 2018Brass Contributor
Thanks Andrew,
I thought as much. My next step was to deploy to Android devices when I'm back on site to see whether I encountered the same issue.
Let's see what Microsoft support comes back with.