
Chapter 6
privacy is maintained by hardware-based symmetrical encryption using dynamic keys derived
by the TTLS process. This approach offers strong security during authentication while accom-
modating existing end-user working methods (user ID/password), thus prolonging the useful
life of legacy non-EAP AAA servers.
Protected Extensible Authentication Protocol (PEAP): Protected Extensible Authentication
Protocol is similar to TTLS. Similar to TTLS, PEAP is a tunneled EAP method. As with
TTLS, a symmetric encryption tunnel is established using a server certificate over which the
client authentication process is securely conducted. PEAP supports EAP