Results 1 to 4 of 4

Thread: How to Use PEAP for wireless authentication

  1. #1
    Join Date
    Jul 2009
    Posts
    140

    How to Use PEAP for wireless authentication

    Hello,
    I have setup a small network.where we I am using PEAP in a Microsoft-centric environment for authentication method for my wireless LAN. so i want to know is which steps or need secure my deployment? Any one know about this? Any suggestion?

  2. #2
    Join Date
    Feb 2008
    Posts
    2,635

    Re: How to Use PEAP for wireless authentication

    PEAP is a common authentication option for wireless networks, and is widely adopted by Microsoft-centric organizations due to native client support in Windows XP and unused Vista.Disable EAP types on the RADIUS server.If your organization uses PEAP as single authentication mechanism, ensure that PEAP is the only authorized EAP type. Use a trusted certificate to the RADIUS server authentication.The must be configured with a digital certificate that is signed by a certification authority (CA), using a private or a public CA.

  3. #3
    Join Date
    Jan 2006
    Posts
    3,792

    Re: How to Use PEAP for wireless authentication

    PEAP can be a choice of strong authentication for network environments, wireless local area if organizations follow a few steps to ensure the integrity of the deployment. Securing Wireless LANs with PEAP and Passwords is a companion guide to another Microsoft Solution Accelerator for WLANs: Securing Wireless LANs with Certificate Services, which is designed for larger organizations. This accelerator is much simpler and easier to deploy, and is designed for small and medium organizations. The main technological difference between the two accelerators is that it uses public key certificates to authenticate users and computers to the WLAN while the names of other users and uses of the word authentication.Validate server certificate on all clients.All PEAP clients must validate the server certificate for authentication. Non-certificate validation server compromises the integrity of the PEAP exchange.

  4. #4
    Join Date
    Apr 2008
    Posts
    3,339

    Re: How to Use PEAP for wireless authentication

    The Protected Extensible Authentication Protocol (PEAP) uses the RADIUS protocol and is easily integrated with Microsoft Active Directory using Microsoft Internet Authentication Service to validate the user or machine identification. This allows the authentication process between the wireless client and server authentication, typically a RADIUS server to be fully encrypted. It also uses the signed certificate validation server that allows the client to verify the identity of the remote server before sending credentials, reducing the risk of diversion of usernames and passwords.Windows XP PEAP supplicant will accept any trusted digital certificate for authentication, allowing an attacker to impersonate the legitimate RADIUS server if the signing authority was also approved. To alleviate this problem, configure the PEAP supplicant to identify authorized RADIUS servers by selecting "Connect to these servers" options ". Provide the name of the RADIUS server that matches the name found on the server certificate.

Similar Threads

  1. Replies: 4
    Last Post: 11-02-2012, 12:44 PM
  2. Replies: 6
    Last Post: 29-09-2010, 11:57 PM
  3. PEAP user authentication failed - need help
    By zvone2000@gmail.com in forum Windows Server Help
    Replies: 4
    Last Post: 20-06-2009, 12:18 PM
  4. "wireless authentication failed because of a timeout"
    By prafullanayana in forum Windows Vista Network
    Replies: 3
    Last Post: 20-01-2009, 07:49 PM
  5. Vista Wireless with PEAP/MSCHAPV2
    By Nadeem in forum Windows Vista Network
    Replies: 2
    Last Post: 31-03-2007, 04:15 AM

Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Page generated in 1,727,172,488.22658 seconds with 17 queries