Figure 30 802.1X authentication procedure in EAP termination mode
In EAP termination mode, the network access device rather than the authentication server generates a
random MD5 challenge for password encryption (see Step 4). The network access device then sends the
MD5 challenge together with the username and encrypted password in a standard RADIUS packet to the
RADIUS server.
75