fast auth time with EAP_TLS?

Andrea G Forte andreaf at cs.columbia.edu
Wed Feb 8 17:26:05 CET 2006


Dear all,

I have setup a RADIUS server (freeradius of course) with an 
authenticator (hostapd 0.4.7) and a supplicant (wpa_supplicant 0.4.7). 
Both the last two use hostap-driver 0.4.7.
I am using EAP-TLS (client and server certificates generated by the 
CA.all script included in freeradius) with RSN (CCMP). I am not sure if 
something is wrong in the authentication process. The problem is that it 
is taking too little time for the authentication process to complete. In 
the attached file you can see one authentication process captured using 
kismet and then parsed with Ethereal. As you cane see the time from 
Assoc. resp to the first encrypted data packet is only 222 msec. About a 
year ago it was of the order of one second (and all the literature says 
so). Has WPA2 improved the authentication time so much? Am I doing 
something wrong in setting up EAP-TLS?
Your help is very much appreciated.

Thank you,
Andrea

-------------- next part --------------
An embedded and charset-unspecified text was scrubbed...
Name: auth_time.txt
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20060208/13ebbc6c/attachment.txt>


More information about the Freeradius-Users mailing list