EAP-TLS Certificates for Wireless on Android

Hello Sims

It is not possible to use the same SSID for both eap-peap support and eap-tls. You must use two separate SSIDs. However, Cisco ISE does have the capability of creating authentication policy rules. These are organised in if and then statements. When you configure an SSID, you can configure an authentication policy with all of the allowed protocols. If a device does not support this, or fails to connect using one specific setup, it can go on to the next available protocol configuration in the list until the list is exhausted. This however cannot be configured to explicitly connect one user using one method and another using a different method. This is especially useful in BYOD environments. You can find out more about this here within the Authentication Policies section.

I hope this has been helpful!

Laz