eap-4 Page:16
1  2  3  4  5  6  7  8  9  10  11  12  13  14  15  16  17 

Tunneled Methods Generic Model
Terminology
Tunnel endpoint is authentication ”agent”
Authentication protocol endpoint is authentication ”server”
”Front-end” authenticator is end of access link to be authenticated
Agent and Server may be co-located
Client
Authentication
Agent
Authentication
Server
Stage 1: Tunnel Method
Server authenticated for
secure tunnel establishment
Stage 2: Client Authentication Method
Performs Client/User Authentication
secure tunnel
Front-end
authenticator
Ciphered Link
Tunnel Keys
PPT Version