首先指出了传统的基于口令的挑战应答机制在无线网络认证中的缺点,在此基础上引出了EAP-TTLS协议,分析了EAP-TTLS协议的网络架构及其认证流程,主要对其隧道认证、密码组建协商,密钥材料交换和密钥体系架构进行了深入研究。最后通过对EAP与EAP-TTLS比较,依据EAP-TTLS的优点,结合WiMAX网络的特点,提出了EAP-TTLS协议在WiMAX网络中应用,并对其可行性作了详细分析。
This paper first points out the flaws of traditional password-based challenge-response mechanism in wireless network authentication,and then proposes the EAP-TTLS protocol.The network architectural model and the authentication procedure of the EAP-TTLS protocol are analyzed,with focus on the tunneled authentication,ciphersuit negotiation,key material exchange and the key hierarchy.Finally,the comparison of EAP and EAP-TTLS is done,and based on EAP-TTLS's advantage and WiMAX network's characteristic,the application of EAP-TTLS in the WiMAX network is suggested,and the feasibility is also analyzed in detail.