Forum

  • By (Deleted User)

    Hi dianewalker,

    That is a good question. Casey is right on point...

    For the record the EAP flavor we have implemented is EAP-PEAP.

    Essentially, EAP-PEAP is the more simplier of the two to set-up, as you only may need a certificate on the server side.

    EAP-TLS requires certificates on both server and client. It is more robustly secure.

    A PKI infrastructure is required and can be quite costly.

    The military uses EAP-TLS type authentication with smartcards.

    If you have all Cisco gear you can also try EAP-FAST. It works on "certificate-less" credentials called PACs. We were about to use it and still may in some cases, as it matures into Microsoft's server/client support.

    http://www.cisco.com/en/US/products/hw/wireless/ps430/products_qanda_item09186a00802030dc.shtml

Page 1 of 1
  • 1