What is more secure: EAP-PEAP, EAP-TLS or EAP-TTLS?

Adam Bishop Adam.Bishop at jisc.ac.uk
Mon Aug 20 12:44:28 CEST 2018


On 20 Aug 2018, at 04:37, Elias Pereira <empbilly at gmail.com> wrote:
> Starting from a scenario with 3 servers, where all 3 methods are properly
> configured, what would be the safest method?

Your question is a little too vague - all three methods can be equally secure over the wire. They're all TLS-based and all support client certs.

It's the details of the configuration that differentiate them - so how are you planning on configuring your clients?

Adam Bishop

  gpg: E75B 1F92 6407 DFDF 9F1C  BF10 C993 2504 6609 D460

jisc.ac.uk

Jisc is a registered charity (number 1149740) and a company limited by guarantee which is registered in England under Company No. 5747339, VAT No. GB 197 0632 86. Jisc’s registered office is: One Castlepark, Tower Hill, Bristol, BS2 0JA. T 0203 697 5800.

Jisc Services Limited is a wholly owned Jisc subsidiary and a company limited by guarantee which is registered in England under company number 2881024, VAT number GB 197 0632 86. The registered office is: One Castle Park, Tower Hill, Bristol BS2 0JA. T 0203 697 5800.  




More information about the Freeradius-Users mailing list