User's Manual
Chapter 3 — Configuring the CK60 Computer
CK60 Series Handheld Computer User’s Manual 79
TTLS (EAP-Tunneled TLS)
This protocol provides authentication like EAP-TLS (see page 75) but does
not require certificates for every user. Instead, authentication servers are
issued certificates. User authentication is done using a password or other
credentials that are transported in a securely encrypted “tunnel” established
using server certificates.
EAP-TTLS works by creating a secure, encrypted tunnel through which
you present your credentials to the authentication server. Thus, inside EAP-
TTLS there is another inner authentication protocol that you must configure
via Additional TTLS Settings.
Use “TTLS” to configure the use of EAP-TTLS as an authentication proto-
col, and select “Open,” “WPA,” “WPA2,” or “Network EAP” as an associa-
tion mode.
To Enable TTLS with an Open Association (default configuration)
1 Set 8021x Security as “TTLS.”
2 Set Association to “Open.”
3 Skip Encryption as it is automatically set to “WEP.” See page 65 for
information about WEP encryption.
4 Enter your unique user name and password to use this protocol. Select
Prompt for password to have the user enter this password each time to
access the protocol, or leave Use following password as selected to auto-
matically use the protocol without entering a password.
5 Tap Get Certificates to obtain or import server certificates. See page 84
for more information.
6 Tap Additional Settings to assign an inner TTLS authentication and an
inner EAP, and set options for server certificate validation and trust. See
page 83 for more information.