Which EAP method requires a digital certificate on the server and a password on the client as part of its authentication?

Study for the CompTIA SecurityX Test. Equip yourself with comprehensive flashcards and multiple choice questions that include hints and explanations. Gear up for your certification exam!

Multiple Choice

Which EAP method requires a digital certificate on the server and a password on the client as part of its authentication?

Explanation:
This method relies on a secure TLS tunnel that is created when the server presents a certificate, proving its identity. Once that encrypted tunnel is in place, the client can authenticate using a password inside the tunnel. The key point is that the server’s certificate protects the initial handshake and the credentials as they travel, while the client doesn’t need to present its own certificate. This combination—server-side certificate to establish the secure channel and password-based inner authentication on the client—fits the described scenario. Therefore, the method described is EAP-TTLS.

This method relies on a secure TLS tunnel that is created when the server presents a certificate, proving its identity. Once that encrypted tunnel is in place, the client can authenticate using a password inside the tunnel. The key point is that the server’s certificate protects the initial handshake and the credentials as they travel, while the client doesn’t need to present its own certificate. This combination—server-side certificate to establish the secure channel and password-based inner authentication on the client—fits the described scenario. Therefore, the method described is EAP-TTLS.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy