cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Bookmark
|
Subscribe
|
500
Views
0
Helpful
1
Replies

Authentication process when roaming using PEAP ?

carl_townshend
Spotlight

Hi All

Can anyone tell me how the auth process works by default when roaming between access points using PEAP?

Does it reauth each time it goes to a new AP? or does the controller cache the authenticated session up until the session timeout?

What is session resumption used for? where is this set?

Also what is a good session timeout value in radius? we have ours set to one hour.

Many thanks

Carl

1 Reply 1

JPavonM
VIP
VIP

Hi Carl,

 

No it's not. Client doesn't need to the whole EAP process again. Only 4-way handshake is doen between client and AP

More information can be found here.

 

https://www.cisco.com/c/en/us/support/docs/wireless-mobility/wireless-lan-wlan/116493-technote-technology-00.html#anc12

 

Regardinfg the timers for session timeout, I use to configure corporate sessions timeout for 24 hours, but for BYOD and guest devices only 30 minutes for them to reauthenticate.

 

HTH
-Jesus

*** Always Rate Helpful Responses ***

Review Cisco Networking for a $25 gift card