A network administrator is implementing Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) for corporate wireless client authentication. Which of the following components are required to successfully establish mutual authentication using EAP-TLS? (Select TWO)
- A valid digital certificate installed on the RADIUS serverCevap
- A valid client digital certificate installed on each endpoint deviceCevap
- CA static pre-shared key (PSK) configured on all client devices
- DA TACACS+ server configured to handle wireless supplicant credentials
Cevap
EAP-TLS mutual authentication requires both a valid server digital certificate on the RADIUS server and a valid client digital certificate on each connecting device.
EAP-TLS (Extensible Authentication Protocol-Transport Layer Security) is a highly secure 802.1X authentication method that mandates mutual authentication. The authentication server (RADIUS) must present a valid X.509 certificate to verify its identity to the client, and the wireless endpoint device must also present a valid client certificate to verify its identity to the server.
Adım Adım Çözüm
Anahtar Kavram
EAP-TLS Mutual Authentication Certificate Requirements