I have set up previously a wired authentication deployment between ClearPass and Juniper switches. Typically we use EAP-MD5 for the authentication method for the Juniper MAC-Radius requests.
I currently am setting up a deployment where the ClearPass server is FIPS enabled and EAP-MD5 is not compliant with FIPS and therefore not an option to allow for the MAC-Radius method.
We were able to upgrade the Juniper test switch and now we are able to configure the Juniper switch to use EAP-PEAP for the MAC-Radius. However the access tracker is still showing that the password does not match the username, I believe its due to the fact that the password with PEAP is encrypted.
Is there a way to set this up so that we can use the EAP-PEAP from the switch for MAC-Radius?