This thread has been locked.

If you have a related question, please click the "Ask a related question" button in the top right corner. The newly created question will be automatically linked to this question.

CC3235MODSF: Enterprise WiFi EAP-TLS connection support.

Part Number: CC3235MODSF

Hello.

I was working on bringing up Enterprise WiFi connection with TLS1.2 based authentication according customers requirements and meet some issues. I started chasing it and found a bunch of topics on e2e forum, which resolve claims, that CC3235MODSF does not support EAP-TLS with TLS1.2, only TLS1.0. Here is a list of topics I found: 

So, it looks like I do not have any opportunity to meet customer requirements. Do not even mentioning WPA3 with Enterprise WiFi. 

And this leads to following additional questions:

  • Does all TLS-related EAP methods (EAP-TLS, EAP-TTLS-xxx, PEAP-TLS) support only TLS1.0? 
  • Does other EAP methods (PEAP) have support-issue surprises like this? Just in case of requirements can be changed to fit selected hardware. 
  • Does TI have CC3235-like chips that support EAP-TLS with TLS1.2? Just in case it will be made a decision to change hardware.

Thanks, 

Aliaksandr

  • The CC32xx NWP can't support EAP with TLS 1.2 (unless you will use supplicant on the host through the transceiver interface).

    This limitation applies to all methods.

    Currently only transceiver devices such as WL18xx or CC3301 can support this through an external supplicant. As said above the transceiver mode can be supported by the CC32xx but it will require much more memory on the host (this mode will requires using supplicant as well as n/w and TLS stack on the host) and may not be feasible for all applications/configurations.

    TI doesn't offer such solution.

  • Thanks a lot for clarification!