WAPI Overview (3/4)
The Highlight of WAPI
• Although it depends on the three entities, it is independent to AAA architecture;
• Supports the mutual authentication between station (ASUE)  and the WLAN devices (AE);
• The public-key certificate is an important part of the construction of WAPI system.  The identity of ASUE and AE can be uniquely  identified by the certificate;
• During the authentication phase, both WLAN device (AE) and station (ASUE) would send their certificates to the ASE. The ASE verify the legality of both certificates and would send the result of verification to the station and WLAN devices.
The  Behavior of AE is NOT pass-through