cloudpath-logo
  • Products
  • Solutions
  • Case Studies
  • Company
  • Customer Login
  • Quick. Easy. Secure.™
  • Solutions Overview
  • WPA2 on Unmanaged Devices
  • WPA2 on Diverse Devices
  • Wired 802.1X
  • Bring Your Own Device (BYOD)
  • One-To-One Initiatives
  • WPA2 on Campus
  • Provisioning Android
  • Provisioning iPads, iPhones, iPod Touches
  • Provisioning Ubuntu
  • Provisioning Mac OS X
  • Extending EAP-TLS to Non-Domain Devices
  • Mobile Device Management (MDM)
  • The Myth of Captive Portal Authentication
  • Securing Guest Users
  • Securing Contractors
  • Securing Public Wifi
  • Pre-Shared Key (PSK) Management
  • Pre-Shared Key (PSK) Replacement
  • WPA2 With PEAP
  • WPA2 With TTLS
  • WPA2 With EAP-TLS
  • Extending TLS to Non-Domain Devices
    Request Demo      Request Info
    Extend EAP-TLS to Non-Domain Devices
    EAP-TLS, utilizing client certificates rather than passwords, is the most secure form of 802.1X authentication. It has been widely adopted in highly-managed environments using domain policies. XpressConnect allows you to extend your use of EAP-TLS beyond domain machines, bringing the speed and security of EAP-TLS to a wide array of managed and unmanaged device types.

    XpressConnect has the ability to interact with your Certificate Authority (CA) server to authenticate the user (and/or device) and retrieve a client certificate. Whether you use Microsoft CA or a home-grown CA, XpressConnect provides a drop-in vehicle for extending EAP-TLS to Windows, Mac, Ubuntu, iOS, and Android devices.

    During the client certificate generation process, the client's private key never leaves the device, maximizing the security of the certificate. During the issuing process, XpressConnect can provide extensive device and user-related information upon which the CA may decide to issue a certificate or deny the request. Once a certificate is issued, XpressConnect will automatically install it and configure the WPA2-Enterprise SSID to utilize it.

    As always, XpressConnect allows you to mix and match your configurations to match your policies. Whether EAP-TLS is deployed as the only access mechanism or as an option alongside PEAP or TTLS, XpressConnect will ensure the device is successfully connected to the secure wireless network in a simple and fool-proof manner.

    If you believe EAP-TLS is inherently difficult, request a demo and we will show you how simple EAP-TLS can be.
    Key Features for EAP-TLS Environments Include:
  • Support for most common laptop, phone, and tablet devices.
  • Support for Microsoft 2003 CA Server, Microsoft 2008 CA Server, as well as home-grown CA servers.
  • Enable advanced policies, including treating IT-issued devices differently than non-IT-issued devices.
  • Self-service or IT-driven options.
  • Provide predictable, fool-proof assistance during the initial on-ramping as well as any time that wireless does not behave as expected.

  • See For Yourself
    Contact us to request a demo, request additional information, or to discuss the benefits of WPA2 and 802.1X in general.

    Copyright © 2011 Cloudpath Networks Inc.
    Cloudpath and XpressConnect are trademarks of Cloudpath Networks, Inc.
    Windows is a registered trademark of Microsoft Corporation in the United States and other countries.
    Mac is a registered trademark of Apple Inc in the United States and other countries.
    Android is a registered trademark of Google Inc in the United States and other countries.
    Legal Notice  
    Follow @cloudpath_net
    Contact Us