Using EAP-TLS Security

To use EAP-TLS security In the Atheros Client Utility, access the Security tab in the Profile Management window.

  1. On the Security tab, choose the WPA radio button. 
    OR: On the Security tab, choose the 802.1x radio button. 
  2. Choose EAP-TLS from the drop-down menu.

Enabling EAP-TLS security:

To use EAP-TLS security, the machine must already have the EAP-TLS certificates downloaded onto it. Check with the IT manager.

  1. If EAP-TLS is supported, choose EAP-TLS from the drop-down menu on the right, then click the Configure button.
  2. Click Configure. The Define Certificate window appears.
  3. Check the Use Machine Information for Domain Login check box if you want the client to attempt to log into a domain using machine authentication with a machine certificate and machine credentials rather than user authentication. Doing so enables your computer to connect to the network prior to user logon. The default setting is unchecked.

    Note: If you do not check the Use Machine Information for Domain Logon check box, machine authentication is not performed. Authentication does not occur until you log on.
  4. Check the Validate Server Identity check box to force the system to authenticate the identity of the server as an added level of security.
  5. If you checked the Use Machine Information For Domain Logon check box in the previous step, the Always Do User Authentication check box at the bottom of the window becomes active. Perform one of the following:
  6. Choose your server certificate in the Select a Certificate drop-down list.
  7. Choose the certificate authority from which the server certificate was downloaded in the Trusted Root Certification Authorities drop-down list.
  8. Perform one of the following:
  9. If the Login Name is filled in automatically, enter your username in this format: username@domain.
  10. Click OK to save your changes and return to the Profile Management (Security) window.
  11. Click OK.
  12. Activate the profile.