Huawei Certified ICT Associate – SD-WAN (HCIA-SD-WAN) — Question 25
Which of the following statements about EAP relay and EAP termination are false? (Choose all that apply.)
Answer options
- A. In EAP termination mode, an access device encapsulates EAP packets sent by an 802.1X client into RADIUS packets, without processing the data in the EAP packets.
- B. In EAP relay mode, an access device extracts information from EAP packets, encapsulates the information into RADIUS packets, and sends the RADIUS packets to an authentication server.
- C. In EAP termination mode, an access device extracts client authentication information from the EAP packets sent by a client and encapsulates the information using the standard RADIUS protocol. The access device supports only the EAP MD5-Challenge authentication method.
- D. The EAP termination mode simplifies the processing on an access device and supports various authentication methods. However, this mode requires an authentication server to support EAP and have high processing capability.
Correct answer: A, B
Explanation
Statements A and B are false because, in EAP termination mode, the access device does process the data in the EAP packets, and EAP relay mode does not encapsulate the information; it simply forwards EAP packets. Statements C and D correctly describe the features and requirements of EAP termination mode.