Eap Authentication; Eap Characteristics - AMX NXD-1000Vi Operation/Reference Manual

10" modero wall/flush mount touch panel with intercom
Hide thumbs Also See for NXD-1000Vi:
Table of Contents

Advertisement

Appendix D - Wireless Technology

EAP Authentication

EAP (Extensible Authentication Protocol) is an Enterprise authentication protocol that can be used in both a
wired and wireless network environment. EAP requires the use of an 802.1x Authentication Server, also
known as a Radius server. Although there are currently over 40 different EAP methods defined, the current
internal Modero 802.11g wireless card and accompanying firmware only support the following EAP methods
(listed from simplest to most complex):


The following use certificates:



EAP requires the use of an 802.1x authentication server (also known as a Radius server). Sophisticated Access
Points (such as Cisco) can use a built-in Radius server. The most common RADIUS servers used in wireless
networks today are:






EAP Characteristics

The following table outlines the differences among the various EAP Methods from most secure (at the top) to
the least secure (at the bottom of the list):
EAP Method Characteristics
Method:
EAP-TLS
EAP-TTLS
EAP-PEAP • Certificates
EAP-LEAP • Certificates
EAP-FAST • Certificates
208
EAP-LEAP (Cisco Light EAP)
EAP-FAST (Cisco Flexible Authentication via Secure Tunneling, a.k.a. LEAPv2)
EAP-PEAP (Protected EAP)
EAP-TTLS (Tunneled Transport Layer Security)
EAP-TLS (Transport Layer Security)
Microsoft Sever 2003
Juniper Odyssey (once called Funk Odyssey)
Meetinghouse AEGIS Server
DeviceScape RADIUS Server
Cisco Secure ACS
Credential Type:
Authentication:
• Certificates
• Certificate is based on a 2-way
• Certificates
• Client authentication is done via
• Fixed Passwords
• Server authentication is done via
• One-time passwords
(tokens)
• Client authentication is done via
• Fixed Passwords
• Server authentication is done via
• One-time passwords
(tokens)
• Authentication is based on
• Fixed Passwords
• One-time passwords
(tokens)
• N/A
• Fixed Passwords
• One-time passwords
(tokens)
NXD-1000Vi 10" Modero® Wall/Flush Mount Touch Panel with Intercom
authentication
password and certificates
certificates
password and certificates
certificates
MS-CHAP and MS-CHAPv2
authentication protocols
Pros:
Cons:
• Highest Security
• Difficult to deploy
• High Security
• Moderately
difficult to deploy
• High Security
• Moderately
difficult to deploy
• Easy deployment • Susceptible to
dictionary attacks
• N/A
• N/A

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents