Authenticating Wireless Clients Flashcards
What is the purpose of open authentication
to validate device is a valid 802.11 device by authenticating its hardware.
Does open authentication require credentials
No
What are the 2 modes of authentication supported by WPA
WPA personal - pre shared key is used to authenticate clients/APs/WLC
WPA enterprise - EAP is used to authenticate clients/APs/WLC
In WPA personal mode which of the following devices need to be configured with the PSK
1. Client
2. AP
3. WLC
All
What is EAP
Extensible authentication Protocol defines a set of authentication methods that can be used to authenticate wireless devices.
In a wireless set up EAP will occur between the client and the authentication server.
What does 802.1x do
Limits a wireless clients access to a network until the user has successfully authenticated.
In 802.1x / EAP what is the definition of the following roles:
Supplicant
Authentication Server
Authenticator
Supplicant - device requiring authentication.
Authentication Server - The server that processes the authentication (RADIUS or TACACS)
Authenticator - device between supplicant and authentication server typically a AP.
Following the authentication what is EAPOL
EAP over LAN is used to exchange the encryption keys in a 4-way handshake.
After the EAPOL is complete and the PMK and GMK keys are exchanged what happens
The 802.1x is unblocked and the client can access the network.
What is WEB AUTH
When the user is presented with content to read and interact with this could be a AUP, request credentials or display info
What can be configured in the WLC under the config > security page
Radius server
Web AUTH