03.11.2012 Views

Wireless LAN Security with 802.1x, EAP-TLS, and PEAP - Black Hat

Wireless LAN Security with 802.1x, EAP-TLS, and PEAP - Black Hat

Wireless LAN Security with 802.1x, EAP-TLS, and PEAP - Black Hat

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Association <strong>and</strong><br />

authentication<br />

The 802.11 association happens first<br />

Need to talk to the AP <strong>and</strong> get an IP address<br />

Open authentication—we don’t have the WEP<br />

key yet<br />

Access beyond AP prohibited until authN<br />

succeeds<br />

AP drops non-<strong>EAP</strong>OL traffic<br />

After key is sent in <strong>EAP</strong>OW-key, access<br />

beyond AP is allowed<br />

<strong>Security</strong> conversation between supplicant<br />

<strong>and</strong> authentication server<br />

<strong>Wireless</strong> NIC <strong>and</strong> AP are passthrough devices

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!