<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Adding Support for 802.1x to WinPE</title><link>http://blogs.technet.com/b/deploymentguys/archive/2010/03/02/adding-support-for-802-1x-to-winpe.aspx</link><description>Adding 802.1x functionality to WinPE has been a hot topic for a while now. And, given the amount of traffic and comments that my earlier post generated when I linked to the newly released updates for WinPE that add this long awaited support, it seems</description><dc:language>en-US</dc:language><generator>Telligent Evolution Platform Developer Build (Build: 5.6.50428.7875)</generator><item><title>re: Adding Support for 802.1x to WinPE</title><link>http://blogs.technet.com/b/deploymentguys/archive/2010/03/02/adding-support-for-802-1x-to-winpe.aspx#3463665</link><pubDate>Mon, 07 Nov 2011 14:01:09 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3463665</guid><dc:creator>Patters</dc:creator><description>&lt;p&gt;I have made a build for Windows PE 3.1 (incorporating dot3svc) with wlansvc and dependencies, including the registry entries to enable netsh.exe&amp;#39;s wlan context. While I can get the wlan to work with WPA networks, I can&amp;#39;t seem to get it working using WPA2-Enterprise 802.1x, despite following the guide posted above. I think the problem seems to be that the netsh.exe support for this only allows you to bind the XML EAP auth profile to a Local Area Connection and not a Wireless Network one. Is there a way to do this that I maybe can&amp;#39;t see, or is it not currently possible? It may seem like a weird ask, but with MacBook Airs becoming more prevalent (no ethernet), it would be nice to unattend their Bootcamp Windows installs without messing about with USB ethernet dongles.&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3463665" width="1" height="1"&gt;</description></item><item><title>re: Adding Support for 802.1x to WinPE</title><link>http://blogs.technet.com/b/deploymentguys/archive/2010/03/02/adding-support-for-802-1x-to-winpe.aspx#3333836</link><pubDate>Wed, 26 May 2010 14:01:03 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3333836</guid><dc:creator>DanielOxley</dc:creator><description>&lt;p&gt;@Jeremias Jansson &lt;/p&gt;
&lt;p&gt;This is a scenario that is not contemplated in the published guide. &amp;nbsp;I&amp;#39;ve never had to work it out so as yet I have no answer for you. &amp;nbsp;However, I can&amp;#39;t immediately think of a way that it would be possible.&lt;/p&gt;
&lt;p&gt;Daniel&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3333836" width="1" height="1"&gt;</description></item><item><title>re: Adding Support for 802.1x to WinPE</title><link>http://blogs.technet.com/b/deploymentguys/archive/2010/03/02/adding-support-for-802-1x-to-winpe.aspx#3333702</link><pubDate>Wed, 26 May 2010 08:48:44 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3333702</guid><dc:creator>Jeremias Jansson</dc:creator><description>&lt;p&gt;Yes, the real issue is how to PXEboot in a 802.1X environment, any thoughts around that? I guess you had to deal with that in your real world customer cases?&lt;/p&gt;
&lt;p&gt;Thank you for a great guide by the way!&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3333702" width="1" height="1"&gt;</description></item><item><title>re: Adding Support for 802.1x to WinPE</title><link>http://blogs.technet.com/b/deploymentguys/archive/2010/03/02/adding-support-for-802-1x-to-winpe.aspx#3328915</link><pubDate>Wed, 28 Apr 2010 14:06:35 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3328915</guid><dc:creator>Najam</dc:creator><description>&lt;p&gt;The real issue with 802.1x environment is getting IP address while booting via network. When you hit F12 and select boot via network, it tries to find IP address, if it couldn't, how it can see my PXE/WDS server?&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3328915" width="1" height="1"&gt;</description></item><item><title>re: Adding Support for 802.1x to WinPE</title><link>http://blogs.technet.com/b/deploymentguys/archive/2010/03/02/adding-support-for-802-1x-to-winpe.aspx#3325592</link><pubDate>Fri, 16 Apr 2010 13:49:40 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3325592</guid><dc:creator>qb</dc:creator><description>&lt;p&gt;For zero touch deployments User/password information can be gathered from collection variables. &lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3325592" width="1" height="1"&gt;</description></item><item><title>re: Adding Support for 802.1x to WinPE</title><link>http://blogs.technet.com/b/deploymentguys/archive/2010/03/02/adding-support-for-802-1x-to-winpe.aspx#3320532</link><pubDate>Mon, 22 Mar 2010 17:28:58 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3320532</guid><dc:creator>DanielOxley</dc:creator><description>&lt;p&gt;@Chris,&lt;/p&gt;
&lt;p&gt;I am not sure why you are seeing that error when trying to access the document(s). &amp;nbsp;I have just tried from several computers and they all can download the documents fine from the links I placed in the blog post.&lt;/p&gt;
&lt;p&gt;Daniel&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3320532" width="1" height="1"&gt;</description></item><item><title>re: Adding Support for 802.1x to WinPE</title><link>http://blogs.technet.com/b/deploymentguys/archive/2010/03/02/adding-support-for-802-1x-to-winpe.aspx#3320508</link><pubDate>Mon, 22 Mar 2010 15:30:53 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3320508</guid><dc:creator>Chris Hills</dc:creator><description>&lt;p&gt;I hope that the xml errors on skydrive gets fixed someday so that I can access it.&lt;/p&gt;
&lt;p&gt;XML Parsing Error: not well-formed&lt;/p&gt;
&lt;p&gt;Location: &lt;a rel="nofollow" target="_new" href="http://cid-7be6feba9e7c999c.skydrive.live.com/self.aspx/DeploymentGuys/Windows%207%20Deployment%20Procedures%20in%20802%201X%20Wired%20Networks.pdf"&gt;http://cid-7be6feba9e7c999c.skydrive.live.com/self.aspx/DeploymentGuys/Windows%207%20Deployment%20Procedures%20in%20802%201X%20Wired%20Networks.pdf&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Line Number 120, Column 20:&lt;/p&gt;
&lt;p&gt;for (var i = 0; i &amp;lt; selfPageData.items.length; i++)&lt;/p&gt;
&lt;p&gt;-------------------^&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3320508" width="1" height="1"&gt;</description></item><item><title>re: Adding Support for 802.1x to WinPE</title><link>http://blogs.technet.com/b/deploymentguys/archive/2010/03/02/adding-support-for-802-1x-to-winpe.aspx#3318340</link><pubDate>Thu, 11 Mar 2010 07:03:52 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3318340</guid><dc:creator>David Marín</dc:creator><description>&lt;p&gt;FoW,&lt;/p&gt;
&lt;p&gt;1) The user account that you use for the 802.1X authentication does not have to be able to access any domain resources. If it has to belong to a group or not depends on the Radius configuration. For instance there are places in which depending on the group it belongs to, will be asigned a different VLAN. So you have to check the requirements of that account with the Radius configuration.&lt;/p&gt;
&lt;p&gt;2) In WinPE I am afraid that you will never be prompted for the credentials if you do not use the xml file or if you leave the credentials blank in that file. So it is a good idea in Lite Touch Deployments to show an HTA to prompt for credentials and generate the correct xml file or replace the values in an existent one. In Zero Touch Deployments it is not a good idea because you break the automation of Zero Touch.&lt;/p&gt;
&lt;p&gt;Good luck with your testing.&lt;/p&gt;
&lt;p&gt;Regards,&lt;/p&gt;
&lt;p&gt;David Marin&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3318340" width="1" height="1"&gt;</description></item><item><title>re: Adding Support for 802.1x to WinPE</title><link>http://blogs.technet.com/b/deploymentguys/archive/2010/03/02/adding-support-for-802-1x-to-winpe.aspx#3316830</link><pubDate>Thu, 04 Mar 2010 14:27:09 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3316830</guid><dc:creator>FearOfWeapons</dc:creator><description>&lt;p&gt;David/Dan,&lt;/p&gt;
&lt;p&gt;intresting post - I am still wading through it and have not yet tested the steps however...&lt;/p&gt;
&lt;p&gt;1) I assume that the valid domain account does not actullay need access to any domain resources? Does it need to be a member of any groups? Could it just be removed from the User Group and this would lessen the risk if it were comprimised.&lt;/p&gt;
&lt;p&gt;2) I assume that if you leave the password out of the XML file you do not get prompted for the value? In that case could you create, for a lite touch build, an HTA to prompt you for the required values and then create and import the required file?&lt;/p&gt;
&lt;p&gt;There are other accounts used by ZTI/SCCM deployments - can one of these be hooked for use, so long as its a domain account of course and the credentials are on the boot media? &lt;/p&gt;
&lt;p&gt;cheers,&lt;/p&gt;
&lt;p&gt;FoW.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3316830" width="1" height="1"&gt;</description></item><item><title>re: Adding Support for 802.1x to WinPE</title><link>http://blogs.technet.com/b/deploymentguys/archive/2010/03/02/adding-support-for-802-1x-to-winpe.aspx#3316343</link><pubDate>Tue, 02 Mar 2010 17:16:44 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3316343</guid><dc:creator>Andrés Villalobos</dc:creator><description>&lt;p&gt;Buenas Daniel,&lt;/p&gt;
&lt;p&gt;gracias por la aportaci&amp;#243;n, :)&lt;/p&gt;
&lt;p&gt;Andr&amp;#233;s Villalobos &lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3316343" width="1" height="1"&gt;</description></item></channel></rss>