| Article: |
A Technical Comparison of TTLS and PEAP | |
| Subject: | No Two Factor Authentication in TTLS | |
| Date: | 2002-11-29 10:45:29 | |
| From: | pauldodd | |
|
It's refreshing to see a technically accurate description of WLAN Security instead of the usual hype and misinformation.
|
||
Showing messages 1 through 2 of 2.
-
No Two Factor Authentication in TTLS
2003-07-07 09:05:01 anonymous2 [View]
-
Two Factor Authentication in TTLS with RSA SecurID
2002-12-10 16:34:13 Matthew Gast |
[View]
> Of the three authentication methods discussed,
> only EAP-TLS and PEAP currently support two
> factor authentication. So for sites that have a
> policy that requires two factor authentication
> for remote access, there is one less choice.
TTLS supports tunneling using token cards such as SecurID or Secure Computing's SafeWord. You can pass a username and a token code to the two-factor authentication server.
As an example, RSA has certified the use of Funk's Odyssey TTLS client with the ACE Server and SecurID. (See RSA's page for details, as well as the Implementation Guide with the details.)



>> buyers and implementers.
TTLS was the first to market with two factor solution (EAP-TTLS(PAP/Token Card)nearly a year and a half ago Peap is only now beginning to catch up.
Keep in mind that TTLS also supports EAP methods as the secondary authentcation, so you can do TTLS(EAP-Generic Token Card) as well