cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
367
Views
0
Helpful
1
Replies

Authentication process when roaming using PEAP ?

carl_townshend
Spotlight
Spotlight

Hi All

Can anyone tell me how the auth process works by default when roaming between access points using PEAP?

Does it reauth each time it goes to a new AP? or does the controller cache the authenticated session up until the session timeout?

What is session resumption used for? where is this set?

Also what is a good session timeout value in radius? we have ours set to one hour.

Many thanks

Carl

1 Reply 1

JPavonM
VIP
VIP

Hi Carl,

 

No it's not. Client doesn't need to the whole EAP process again. Only 4-way handshake is doen between client and AP

More information can be found here.

 

https://www.cisco.com/c/en/us/support/docs/wireless-mobility/wireless-lan-wlan/116493-technote-technology-00.html#anc12

 

Regardinfg the timers for session timeout, I use to configure corporate sessions timeout for 24 hours, but for BYOD and guest devices only 30 minutes for them to reauthenticate.

 

HTH
-Jesus

*** Always Rate Helpful Responses ***

Review Cisco Networking for a $25 gift card