3 Cisco 1231 AP's running 12.4, Microsoft IAS server, Windows 2003 Server, self signed certificate, Cisco Aironet Cards and Windows XP/Vista Clients.
After everything was configured I could not get the wireless to work. I looked into many potential causes and had a Cisco and Microsoft Call going with no luck. I also had the configuration mirror Microsoft and Cisco documents to the letter and had ruled out all solutions I could find online. I was recieving several errors in my event logs related to IAS:
- Event 2, Reason-Code=8, Reason=the specified user account does not exist.
- Reason-Code = 16, Reason = Authentication was not successful because an unknown user name or incorrect password was used.
- Reason-Code = 260, Reason = The message or signature supplied for verification has been altered
I accidently discovered what I believe the problem to be after trying to install a hotfix. The hotfix failed with this error:
The Service Pack 2 \i386\update\update.inf file is not correct.
Which led me here: http://support.microsoft.com/kb/946938
Which then led me to this KB from Microsoft stating the fact that this change is unsupportable and will cause system instability: http://support.microsoft.com/kb/933700
"Microsoft does not support changing the location of the Program Files folder by modifying theProgramFilesDir registry value. If you change the location of the Program Files folder, you may experience problems with some Microsoft programs or with some software updates."
As far as I can tell the issue was caused due to the registry change or potential corruption of installed windows components/hotfixes after such change.
I reinstalled IAS on another server, mirrored the configuration and updated the cert on clients and AP configs. My wireless clients began working immediatly with no further issues.
This issue was rather difficult to pin point so I hope it saves someone else some headaches.