Sunday 13 April 2008

802.1x, Encryption and Authentication - 802.1x and EAP

802.1x was originally designed for port based authentication on switches, but has been adapted to enable authentication of wireless clients/WAPs.


+ RADIUS protocol with server can be used to authenticate users, this includes Cisco ACS server
+ Authentication is mutual between the client (supplicant) and server
+ 802.1x can be used with multiple encryption methods such as EAS/WPA/TKIP/WEP
+ Without user intervention 802.1x provides dynamic keys after authentication
+ One time passwords can be used to encrypt plaintext passwords
+ 802.1x supports roaming
+ User management is centralised (better management)

No comments: