Use Let’s Encrypt Certificates with FreeRADIUS

Let’s Encrypt is a certificate authority that generates TLS certificates automatically, and for free. It’s been great for web server administrators because it allows them to automate the process of requesting, receiving, installing, and renewing TLS certificates, taking the administrative overhead out of setting up a secure website. And did I mention it’s free and supported by allContinue reading “Use Let’s Encrypt Certificates with FreeRADIUS”

Hardening TLS for WLAN 802.1X Authentication

This post outlines some configuration changes which can enhance the security of 802.1X EAP methods PEAP and EAP-TTLS, which use a temporary layer 2 TLS tunnel to protect a less secure inner authentication method. While EAP-TLS doesn’t create a full TLS tunnel, it does use a TLS handshake to provide keying material for the four-way handshake. It needs strong TLSContinue reading “Hardening TLS for WLAN 802.1X Authentication”