Mitel Forums - The Unofficial Source

Mitel Forums => Aastra - MiVoice Office 400 and MiVoice MX-One => Topic started by: JanG. on March 29, 2022, 07:55:40 AM

Title: 802.1x Authentication for 69xx SIP Phones
Post by: JanG. on March 29, 2022, 07:55:40 AM
Hi @All

I've been trying for days to configure the 802.1x authentication with EAP-TLS for the sip phones, but unfortunately it doesn't work.

I get only the message "802.1x Failed".

In the mac.cfg file from one phone i add the following lines.

eap type: 2
identity: Mitel SIP Phone
802.1x root and intermediate certificates: chain.pem
802.1x local certificate: cert.pem
802.1x private key: privkey.key

The certificate files a stored on the A470 server in the same directory where the mac.cfg is located.

Does anyone have a working 802.1x configuration with eap-tls and can help me?

Best regards

Jan
Title: Re: 802.1x Authentication for 69xx SIP Phones
Post by: ThomasG on July 20, 2022, 10:15:36 AM
Hi,
We dont use mac.cfg instead we use config files.
802.1x root and intermediate certificates: http://172.172.172.72/cert/rootintermidiate2022.pem
802.1x local certificate: http://172.172.172.72/cert/local.pem
802.1x private key: http://172.172.172.72/cert/pk.key
802.1x trusted certificates: http://172.172.172.72/cert/root.pem
pc port passthru enabled : 1

Can you see in the logfiles if it reads the mac.cfg and can find the certificates?
Do you need to have the right parameters in your network as RAW or DHCP options?
We also have the trusted root certificate.