HPE6-A78 · Question #104
What is one difference between EAP-Tunneled Layer Security (EAP-TLS) and Protected EAP (PEAP)?
The correct answer is B. EAP-TLS requires the supplicant to authenticate with a certificate, but PEAP allows the supplicant. EAP-TLS (Extensible Authentication Protocol - Transport Layer Security) and PEAP (Protected EAP) are two EAP methods used for 802.1X authentication in wireless networks, such as those configured with WPA3-Enterprise on HPE Aruba Networking solutions. Both methods are commonly…
Question
What is one difference between EAP-Tunneled Layer Security (EAP-TLS) and Protected EAP (PEAP)?
Options
- AEAP-TLS begins with the establishment of a TLS tunnel, but PEAP does not use a TLS tunnel as
- BEAP-TLS requires the supplicant to authenticate with a certificate, but PEAP allows the supplicant
- CEAP-TLS creates a TLS tunnel for transmitting user credentials, while PEAP authenticates the
- DEAP-TLS creates a TLS tunnel for transmitting user credentials securely, while PEAP protects
How the community answered
(40 responses)- A3% (1)
- B95% (38)
- C3% (1)
Explanation
EAP-TLS (Extensible Authentication Protocol - Transport Layer Security) and PEAP (Protected EAP) are two EAP methods used for 802.1X authentication in wireless networks, such as those configured with WPA3-Enterprise on HPE Aruba Networking solutions. Both methods are commonly used with ClearPass Policy Manager (CPPM) for secure authentication. Requires both the supplicant (client) and the server (e.g., CPPM) to present a valid certificate during authentication. Establishes a TLS tunnel to secure the authentication process, but the primary authentication mechanism is the mutual certificate exchange. The client's certificate is used to authenticate the client, and the server's certificate authenticates the server. Requires only the server to present a certificate to authenticate itself to the client. Establishes a TLS tunnel to secure the authentication process, within which the client authenticates using a secondary method, typically a username and password (e.g., via MS-CHAPv2 or EAP-GTC).
Topics
Community Discussion
No community discussion yet for this question.