The city plans to back Wi-Fi identity with a cloud IdP through an AAA proxy. Which architecture statement remains true?
Select an answer to reveal the explanation.
Short Explanation
Cloud IdPs change where passwords live, not the fact that Wi-Fi still speaks EAP through RADIUS-style AAA. The proxy is a translator, not a free pass to open SSIDs. Staff still need proper Enterprise termination.
Full Explanation
Modern municipal WLANs may proxy or federate to cloud identity providers, but the air interface and controller edge still rely on 802.1X/EAP with AAA/RADIUS termination concepts. The IdP answers identity questions; it does not remove the need for secure EAP handling. Falling open or substituting captive portals for staff Enterprise access weakens the design.