Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

802.1x allows for the client to validate the authentication server by way of X.509 certificates, although this normally does require manual configuration since there is no global namespace to tie an ESSID to like there is for domain names in normal TLS. Mutual asymmetric key auth is available through EAP-TLS as well, but I could see that being a rare feature on cameras.


Actually, why there is not? Company should be able to just get cert for wifi.company.com and then be allowed to just call its network wifi.company.com...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: