Dmitry Shmidt | 8d520ff | 2011-05-09 14:06:53 -0700 | [diff] [blame] | 1 | Interoperability testing of hostapd's IEEE 802.1X/EAPOL authentication |
| 2 | |
| 3 | Test matrix |
| 4 | |
| 5 | +) tested successfully |
| 6 | F) failed |
| 7 | -) peer did not support |
| 8 | ?) not tested |
| 9 | |
| 10 | XSupplicant --------------------------------. |
| 11 | Intel PROSet ---------------------------. | |
| 12 | Windows XP -------------------------. | | |
| 13 | Mac OS X 10.4 ------------------. | | | |
| 14 | Nokia S60 ------------------. | | | | |
| 15 | wpa_supplicant ---------. | | | | | |
| 16 | | | | | | | |
| 17 | |
| 18 | EAP-MD5 + - ? ? - |
| 19 | EAP-GTC + - ? - - |
| 20 | EAP-MSCHAPv2 + - ? - - |
| 21 | EAP-TLS + + +1 + + |
| 22 | EAP-PEAPv0/MSCHAPv2 + + + + + + |
| 23 | EAP-PEAPv0/GTC + + + - + |
| 24 | EAP-PEAPv0/MD5 + - + - - |
| 25 | EAP-PEAPv0/TLS + F - + + |
| 26 | EAP-PEAPv0/SIM + + - - - |
| 27 | EAP-PEAPv0/AKA + + - - - |
| 28 | EAP-PEAPv0/PSK + - - - - |
| 29 | EAP-PEAPv0/PAX + - - - - |
| 30 | EAP-PEAPv0/SAKE + - - - - |
| 31 | EAP-PEAPv0/GPSK + - - - - |
| 32 | EAP-PEAPv1/MSCHAPv2 + + + - + + |
| 33 | EAP-PEAPv1/GTC + + + - + |
| 34 | EAP-PEAPv1/MD5 + - + - - |
| 35 | EAP-PEAPv1/TLS + F - - + |
| 36 | EAP-PEAPv1/SIM + + - - - |
| 37 | EAP-PEAPv1/AKA + + - - - |
| 38 | EAP-PEAPv1/PSK + - - - - |
| 39 | EAP-PEAPv1/PAX + - - - - |
| 40 | EAP-PEAPv1/SAKE + - - - - |
| 41 | EAP-PEAPv1/GPSK + - - - - |
| 42 | EAP-TTLS/CHAP + - + - + + |
| 43 | EAP-TTLS/MSCHAP + - + - + + |
| 44 | EAP-TTLS/MSCHAPv2 + + + - + + |
| 45 | EAP-TTLS/PAP + - + - + + |
| 46 | EAP-TTLS/EAP-MD5 + - - - - + |
| 47 | EAP-TTLS/EAP-GTC + + - - - |
| 48 | EAP-TTLS/EAP-MSCHAPv2 + + - - - |
| 49 | EAP-TTLS/EAP-TLS + F - - - |
| 50 | EAP-TTLS/EAP-SIM + + - - - |
| 51 | EAP-TTLS/EAP-AKA + + - - - |
| 52 | EAP-TTLS + TNC + - - - - |
| 53 | EAP-SIM + + - - + |
| 54 | EAP-AKA + + - - - |
| 55 | EAP-PAX + - - - - |
| 56 | EAP-SAKE + - - - - |
| 57 | EAP-GPSK + - - - - |
| 58 | EAP-FAST/MSCHAPv2(prov) + - F - F |
| 59 | EAP-FAST/GTC(auth) + - + - + |
| 60 | EAP-FAST/MSCHAPv2(aprov)+ - F - F |
| 61 | EAP-FAST/GTC(aprov) + - F - F |
| 62 | EAP-FAST/MD5(aprov) + - - - - |
| 63 | EAP-FAST/TLS(aprov) + - - - - |
| 64 | EAP-FAST/SIM(aprov) + - - - - |
| 65 | EAP-FAST/AKA(aprov) + - - - - |
| 66 | EAP-FAST/MSCHAPv2(auth) + - + - + |
| 67 | EAP-FAST/MD5(auth) + - + - - |
| 68 | EAP-FAST/TLS(auth) + - - - - |
| 69 | EAP-FAST/SIM(auth) + - - - - |
| 70 | EAP-FAST/AKA(auth) + - - - - |
| 71 | EAP-FAST + TNC + - - - - |
| 72 | EAP-IKEv2 + - - - - |
| 73 | EAP-TNC + - - - - |
| 74 | |
| 75 | 1) EAP-TLS itself worked, but peer certificate validation failed at |
| 76 | least when using the internal TLS server (peer included incorrect |
| 77 | certificates in the chain?) |