QuestionQ23

WLAN

A network administrator needs to configure an 802.1 X supplicant for a wireless network that includes:

  1. AES encryption
  2. EAP-MSCHAPv2-based user and machine authentication
  3. Server-certificate validation in Microsoft Windows 10

The network administrator creates a WLAN profile and selects the change connection settings option. The administrator then changes the security type to Microsoft: Protected EAP (PEAP) and enables user and machine authentication under Additional Settings.

What must the network administrator do next to complete the task?

Explanation

PEAP with EAP-MSCHAPv2 uses a server certificate to authenticate the RADIUS/NPS server to the client. Windows provides the PEAP option to verify the server’s identity by validating that certificate, which satisfies the required server-certificate validation. Smart Card or other certificate selects EAP-TLS instead of EAP-MSCHAPv2.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!