Title :
Strong mutual authentication in a user-friendly way in EAP-TLS
Author :
Latze, Carolin ; Ultes-Nitsche, Ulrich ; Baumgartner, Florian
Author_Institution :
Univ. of Fribourg, Fribourg
Abstract :
EAP-TLS is one of the best authentication schemes in wireless networks. To make it one of the most secure ones, a client has to authenticate itself using certificates, which allow to authenticate client and server mutually. But as certificates are widespread in a business environment but only less used by private users, mutual authentication in EAP-TLS for public hot-spots is not suitable. Therefore several solutions emerged, which on the one hand disclaim EAP completely, or on the other hand establish secure server authenticated EAP-TLS tunnels and use other EAP protocols inside this tunnel to authenticate the client. However, apart from reducing the level of security, these solutions usually do not provide automated login procedures and/or are not suitable for small devices. We propose a way to make EAP-TLS with mutual authentication more comfortable even for private users. To do so, we propose to use Trusted Platform Modules with their integrated certificate infrastructure. This leads to an authentication scheme, which can be used on full computers as well as on embedded devices. Furthermore, it will provide the possibility for automated login and real anonymity support.
Keywords :
client-server systems; message authentication; radio networks; telecommunication security; transport protocols; EAP-TLS; automated login procedures; business environment; client-server system; embedded device; extensible authentication protocol-transport layer security; integrated certificate infrastructure; mutual authentication; secure server; wireless network; Authentication; Communication system security; Embedded computing; Informatics; Intelligent networks; Network servers; Technological innovation; Wireless application protocol; Wireless networks;
Conference_Titel :
Software, Telecommunications and Computer Networks, 2007. SoftCOM 2007. 15th International Conference on
Conference_Location :
Split-Dubrovnik
Print_ISBN :
978-953-6114-93-1
Electronic_ISBN :
978-953-6114-95-5
DOI :
10.1109/SOFTCOM.2007.4446137