Jump to content

Recommended Posts

Posted
We are rolling out Windows 10 this summer and are slowly building things in the background and testing. We seem to be having an issue where our Win10 wireless clients will not connect. All we get is ‘action needed’ If I right click and click connect everything connects and works fine. We do not have this issue with our Win 7 clients. Seems like it’s not auto connecting. I am about to check the logs but wondering if anyone else has seen similar?
  • 2 weeks later...
Posted

Hi Mark,

Just wondering if you had any luck with working this out? We are having the same issue but we are running server 2016 for our NPS.

 

Thanks

Posted
Hi Mark,

Just wondering if you had any luck with working this out? We are having the same issue but we are running server 2016 for our NPS.

 

Thanks

 

 

We have a feeling its something to do with this Do you use lightspeed by any chance?

Posted
Thanks for the reply. Our problem only started when we moved to Win 10 1709. We have been running on 1703 now for the last 5 months without a problem. Im testing with 1709 and laptops will not machine authenticate. It connects for a second but then disconnects. When you try to connect to the network at the login screen it says that the username and password are wrong.
Posted
Thanks for the reply. Our problem only started when we moved to Win 10 1709. We have been running on 1703 now for the last 5 months without a problem. Im testing with 1709 and laptops will not machine authenticate. It connects for a second but then disconnects. When you try to connect to the network at the login screen it says that the username and password are wrong.
Have you checked the logs on the nps server?
Posted

We have 1709 clients working just fine on our RADIUS network without any changes. We use Ubiquiti UniFi APs with Windows NPS.

 

Are you sure the machines have pulled their policies correctly, and are trusting your various RADIUS certificates? When you try to connect with a username and password are you specifying DOMAIN\username?

Posted
We have 1709 clients working just fine on our RADIUS network without any changes. We use Ubiquiti UniFi APs with Windows NPS.

 

Are you sure the machines have pulled their policies correctly, and are trusting your various RADIUS certificates? When you try to connect with a username and password are you specifying DOMAIN\username?

 

 

Hmmmm, the machine has all certificates. When i try to connect at login screen, no matter what username and password combination i try, they are incorrect.

 

When i check the NPS server, the logs say the machine authentication is a Audit Success but doesnt stay connected, when i click connect NPS says it was an Audit Failure.

Posted

This is a screenshot of our NPS policy.NPS policy.jpg (Server 2012 R2)

 

We use old legacy Cisco wireless with 2 LAN controllers on site. We updated them and all the AP's but no joy. Everything works fine for our Windows 7 clients.

 

I do feel its something to do with lightspeed with the links I attached before.

Posted
Does this seem more like a firewall issue? We are seeing the same thing with 1709, but we have a DELL SonicWall for our firewall. Didn't see any of these issues in 1703, though. I have had engineers from Microsoft Premier Support working on this for the better part of 3 weeks now with no solution in sight.
Posted

I have been doing some digging, FYI screenshot NPS Audit.JPG and as you can see our laptop connected as expected for a split second and then back to as described.

 

I am speaking to Lightspeed as I cant add msftconnecttest.com to our global allowed list. I am hoping that sorts it.

  • 2 months later...
Posted
Just in case anyone is wondering how to remedy this situation, i fixed it by using the following.

 

The following three steps is what I did to achieve the above:

1) Set the following key in the registry (as the OP did):

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters\Internet > EnableActiveProbing

set to: 0

Note: It is unclear to me if this key is specifically for Vista, or if it also applies to Win7 - but I set it in any event.

2) Edited GPO (gpedit.msc for a local machine or gpmc.msc if AD domain wide):

Computer Configuration > Administrative Templates > System > Internet Communication Management > Turn off Windows Network Connectivity Status Indicator active tests

set to: ENABLE

3) Edited a second GPO:

Computer Configuration > Policies > Administrative Templates > Network Connections > Do Not show the “local access only” network icon”

set to: ENABLE

 

I only really needed to do step one to get the machines connecting before login.

 

 

Thanks, we'll give this a bash.

Posted
Just in case anyone is wondering how to remedy this situation, i fixed it by using the following.

 

The following three steps is what I did to achieve the above:

1) Set the following key in the registry (as the OP did):

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters\Internet > EnableActiveProbing

set to: 0

Note: It is unclear to me if this key is specifically for Vista, or if it also applies to Win7 - but I set it in any event.

2) Edited GPO (gpedit.msc for a local machine or gpmc.msc if AD domain wide):

Computer Configuration > Administrative Templates > System > Internet Communication Management > Turn off Windows Network Connectivity Status Indicator active tests

set to: ENABLE

3) Edited a second GPO:

Computer Configuration > Policies > Administrative Templates > Network Connections > Do Not show the “local access only” network icon”

set to: ENABLE

 

I only really needed to do step one to get the machines connecting before login.

 

Excellent!!! I have just created a new SCCM task sequence for 1709 and one of the steps was to slip that reg change in and its now working! I didn't bother with the other 2 steps. I cannot thank you enough pal as i was genuinely having one of those "how the f**k am i going to solve this" moments and you have just saved me from a shed load of pain and grief.

  • Thanks 1
  • 2 months later...

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...