I have a problem with NPS authentication for 802.1x PEAP-MS-CHAPV2 (Only machine authentication)
We have 3 sites (SiteA, SiteB, SiteC) in a domain environment
When a PC join domain, the computer object has created in SiteA DC.
When a joined PC has tried to connect to wireless SSID (802.1x PEAP-MS-CHAPV2 machine authentication)
The NPS server has not installed DC role, just member server.
the NPS log said ldap connection has made to SiteB DC and said specific computer object is not found.
So I checked all DCs in 3 sites, the computer object is not replicated yet from SiteA.
Is there a way to set NPS server always connect to specific SiteA DC first for authentication?
I added IP subnet of NPS server into AD siteA but ldap connection is not matter.
Also I saw a article for set all DCs into a Remote RADIUS server group. And set priority 1 of siteA DC.
Is that possible? The DC has only DC role (no NPS role).