Federico Failla
Enhancing 802.1X authentication using digital identity systems and EAP.
Rel. Diana Gratiela Berbecaru. Politecnico di Torino, Corso di laurea magistrale in Ingegneria Informatica (Computer Engineering), 2025
|
|
PDF (Tesi_di_laurea)
- Tesi
Accesso limitato a: Solo utenti staff fino al 24 Ottobre 2028 (data di embargo). Licenza: Creative Commons Attribution Non-commercial No Derivatives. Download (12MB) |
Abstract
This thesis presents the design, implementation, and evaluation of EAP-SPID, a novel authentication method that integrates the Italian digital identity system SPID into the IEEE 802.1X framework. The key aim of this work is to overcome the weaknesses of traditional network access control by leveraging federated identity management so that users can authenticate with their federated credentials in enterprise and public network environments. The proposed solution extends the Extensible Authentication Protocol (EAP) by introducing EAP-SPID, which exploits SPID’s SAML-based infrastructure, but at the same time operates under the requirements of 802.1X and the EAP framework to maintain compatibility with existing 802.1X deployments.
A prototype was developed, consisting of a custom implementation in hostapd and wpa_supplicant, together with a dedicated Service Provider backend deployed on a public AWS EC2 instance
Tipo di pubblicazione
URI
![]() |
Modifica (riservato agli operatori) |
