PEAP
Protected Extensible Authentication Protocol
An EAP method that wraps authentication inside a TLS tunnel.
Protected Extensible Authentication Protocol is an EAP method that establishes a TLS tunnel using a server certificate and then carries the user authentication exchange inside that encrypted channel. It is widely used to secure enterprise wireless authentication with 802.1X, protecting credentials that weaker EAP methods would expose. A key deployment pitfall is failing to validate the server certificate on clients, which enables rogue access point and evil twin attacks that harvest credentials. Unlike EAP-TLS, PEAP does not require client certificates, easing rollout.
Looking PEAP up is step one. Getting tested on it is step two.
A free account opens all 4 Domain 1 objectives, 271 exam-style questions with a lesson and a lab on each, a placement check that skips what you already know, and a dated plan. No card.
Not affiliated with or endorsed by CompTIA.
