Cloudpath can detect the status of server certificate validation within the configuration.
Supported settings include:
Disabled - Default. When selected, the server certificate is not validated.
Enabled - When selected, server certificate validation is performed.
Cloudpath is able to auto remediate this setting. By default, Windows XP will enable this for a new SSID.
Server certificate validation is intended to ensure that the client attempts to authenticate only to known authentication servers. Without validation, there is a concern that the client will attempt to authenticate to a rogue authentication server and the server will then have a hash of the user's password, allowing them to launch an offline dictionary attack.
Copyright 2006-2017 Ruckus Wireless Inc.
Use of this website signifies your agreement to the Terms & Conditions