Competing Standards

Keep in mind that EAP types are often proposed and supported by different vendors. For example, LEAP is backed by Cisco, PEAP is backed by Microsoft, Cisco, and RSA, while TTLS is backed by Funk Software and Certicom. MD5 and TLS, however, are both widely supported. When choosing an EAP method, it is important to consider who is the vendor behind the technology (Table 6.1).

As we have often seen in other areas of computing, market factors often drive the acceptance of technology standards.

Table 6.1. Common EAP methods.
MethodTypical ImplementaionAuthentication DirectionWEP Key Generated?Deployment DifficultyWireless Security
MD5Challenge-based passwordOne-way authenticationNoEasyPoor
TLSCertificate-based two-way authentication ...

Get How Secure Is Your Wireless Network? Safeguarding Your Wi-Fi LAN now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.