TLS Certificates from EAP Network Traffic
ID: 2b9278ba-bf06-5f00-840c-6983642206ad
STIX ID: report--2b9278ba-bf06-5f00-840c-6983642206ad
Feed Name: Black Hills Infosec Blog
A concise procedural guide for capturing and extracting X.509 certificates during 802.1X EAP (EAP-TLS/EAP-PEAP) authentication. It explains differences between EAP-PEAP and EAP-TLS, how certificates are exchanged via RADIUS and EAP, capturing traffic on wired taps or wireless monitor mode, using Wireshark to filter and reassemble certificate fragments, exporting certificate bytes (DER), and validating or converting them with OpenSSL.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
