EAP
EAP
Extensible Authentication Protocol
-Framework with four variations: PEAP, EAP-TLS, EAP-TTLS,
PEAP
PEAP
Protected Extensible Authentication Protocol
-Encapsulated EAP in TLS tunnel
-Certificate on server only
EAP-TLS
EAP-TLS EAP Transport Layer Security -One of most secure EAP standards -Widely implemented -Sometimes used with 802.1x -Certificated on 802.1x server and clients
EAP-TTLS
EAP-TTLS EAP Tunneled Transport Layer Security -Sometimes used with 802.1x -Allows uses of older authentication methods like PAP in TLS tunnel -Certificate on 802.1x server only
EAP-FAST
EAP-FAST
EAP Flexible Authentication via Secure Tunneling
-Cisco replacement for LEAP
-Optional Certificates
LEAP
LEAP Lightweight EAP -Cisco -No certificate -EAP-FAST replaces