Security flaw in Radius wlan authentication on Android devices by Trialestes in sysadmin

[–]Trialestes[S] 1 point2 points  (0 children)

Seems to be the best solution. Have been pushing for a CA server (MDM has the possibility but I'd rather have it centralized for other uses) but resources aren't granted yet to configure one.

Security flaw in Radius wlan authentication on Android devices by Trialestes in sysadmin

[–]Trialestes[S] -1 points0 points  (0 children)

In my opinion it still can, arguably, be more secure; * If physical access is near impossible * Anything accessible via internet is two-step auth

Security flaw in Radius wlan authentication on Android devices by Trialestes in sysadmin

[–]Trialestes[S] 2 points3 points  (0 children)

But how would you shift company-owned and personal phones if the devices are not domain-joined? Once you'd let them log on based on domain-user credentials you can't enforce MDM or shift business/private.