pl help: EAP-TTLS configuration

Unanswered Question
Mar 7th, 2007
User Badges:

hi,

if any one had implemented EAP-TTLS as secuirty between clients and wireless devices, then pl help me in configring. And what are the security devices required


Regards

Srihari

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 4.3 (3 ratings)
Loading.
sbarasiscom Wed, 07/11/2007 - 07:29
User Badges:

I did this but deos not work,

Does any one have further documents,


Thanks

Premdeep Banga Wed, 07/11/2007 - 17:00
User Badges:
  • Gold, 750 points or more

Do you want to configure EAP-TLS or EAP-TTLS?


Both are different.


If EAP-TLS, then what is the radius server, and have you configured client certificates on clients?


What is the error logs do you get on Authentication server?


That will give you right direction.


Regards,

Prem

srihari_rgda Wed, 07/11/2007 - 22:19
User Badges:

Thanks for giving a response,


I want to configure EAP-TTLS, and i have radius server as Cisco ACS. If you have any procedural document for configuring EAP-TTLS, could you please share.


Regards

Srihari

Premdeep Banga Thu, 07/12/2007 - 04:34
User Badges:
  • Gold, 750 points or more

That?s what I suspected.


Unfortunately Cisco ACS doesnot support EAP-TTLS


These are the protocol supported,

http://www.cisco.com/univercd/cc/td/doc/product/access/acs_soft/csacs4nt/acs41/user/overvw.htm#wp849719


-EAP-MD5

-EAP-TLS

-LEAP

-PEAP

-EAP-FAST


Also check,

http://www.cisco.com/univercd/cc/td/doc/product/access/acs_soft/csacs4nt/acs41/user/overvw.htm#wp857274


http://en.wikipedia.org/wiki/Extensible_Authentication_Protocol


What I can suggest you is go for protocol similar to EAP-TTLS i.e. PEAP


PEAP Configuration:

http://www.cisco.com/en/US/products/sw/secursw/ps2086/products_configuration_example09186a0080545a29.shtml


Regards,

Prem

srihari_rgda Thu, 07/12/2007 - 04:53
User Badges:

Dear Prem,


We had allready implemented PEAP but we have a new requirement that we have to install EAP-TTLS.


what is hte next alternative for this solution and EAP -TTLS is more secured then EAP-TLS (PEAP).


Regards

srihari


Actions

This Discussion

 

 

Trending Topics - Security & Network