PSK Authentication | EMQX Docs (2024)

Pre-Shared Key (PSK) authentication is a method of authentication that relies on a pre-shared key for identity verification. Using the PSK authentication method, both the client and EMQX must pre-share the same key before establishing a secured connection. The pre-shared key is then used to encrypt and decrypt data in establishing the TLS connection between the client and EMQX and in subsequent communications. With the PSK authentication enabled, the client and EMQX can authenticate each other and establish a secure connection without the need for certificates or certificate authorities.

This page introduces how to enable PSK authentication in EMQX.

  1. Create a file data/psk_file.txt in any directory, containing the identity and secret value of the pre-shared key.

    TIP

    The secret value can be any string, but its length must correspond to the selected cipher. For example, if the cipher is TLS_PSK_WITH_AES_128_CBC_SHA, the secret must be 128 bits long.

    bash

    # One data per line, in the format of PSKIdentity:SharedSecretemqx_c:BA0DB2A3448345A3A13A91C2ADA44778emqx_a:A6FC9EDF62864125AAE7658BEAE6170C
  2. Add the psk_authentication configuration group in the emqx.conf configuration file.

    bash

    psk_authentication { enable = true init_file = "data/psk_file.txt"}
  3. Configure the SSL listener in the emqx.conf configuration file. Modify the listeners.ssl.default group by adding the following options.

    • ssl_options.versions: Remove tlsv1.3 support, since tlsv1.3 version configuration suppresses PSK ciphers.
    • ssl_options.ciphers: Configure to use PSK cipher suits.

    TIP

    If the RSA-PSK cipher suites are used, the RSA certificate is still required, see RFC4279 for details.

    bash

    listeners.ssl.default { acceptors = 4 bind = 8883 ssl_options { ciphers = ["RSA-PSK-AES256-GCM-SHA384","RSA-PSK-AES256-CBC-SHA384","RSA-PSK-AES128-GCM-SHA256","RSA-PSK-AES128-CBC-SHA256","RSA-PSK-AES256-CBC-SHA","RSA-PSK-AES128-CBC-SHA"] versions = ["tlsv1.2", "tlsv1.1", "tlsv1"] }}
PSK Authentication | EMQX Docs (2024)

FAQs

What is the PSK authentication method? ›

In the context of WPA (Wi-Fi Protected Access), PSK stands for Pre-Shared Key. It is a security mechanism used in WPA to establish a secure connection between a wireless client (such as a laptop, smartphone, or other Wi-Fi-enabled device) and a Wi-Fi access point.

What does PSK mean cyber security? ›

In cryptography, a pre-shared key (PSK) is a shared secret which was previously shared between the two parties using some secure channel before it needs to be used.

How do I disable authentication in EMQX? ›

You can quickly enable or disable the authentication configuration by toggling the Enable switch. Each entry in the authenticator list can be reordered by dragging with the mouse or by adjusting the sequence in the Actions column.

Is PSK the same as password? ›

Note: The WEP key or WPA/WPA2 preshared key/passphrase is not the same as the password for the access point. The password lets you access the access point settings. The WEP key or WPA/WPA2 preshared key/passphrase allows printers and computers to join your wireless network.

Where do I find PSK settings? ›

Go to the Wireless or Wireless Settings menu, then click on Security. Select WPA2-PSK from the encryption options. If unavailable, update your router's firmware as needed.

Is PSK security good? ›

The role of WPA2-PSK in wireless network security

Despite its vulnerabilities, it remains a commonly used and reliable method to secure wireless networks.

How does the PSK work? ›

Phase-shift keying (PSK) is a digital modulation process which conveys data by changing (modulating) the phase of a constant frequency carrier wave. The modulation is accomplished by varying the sine and cosine inputs at a precise time. It is widely used for wireless LANs, RFID and Bluetooth communication.

What is the difference between PSK and RSA authentication? ›

Full handshake for RSA PSK. by the server if both match. Therefore, RSA PSK uses the pre-shared key and server certificate for mutual authentication while RSA with mutual authentication uses both server and client certificates.

How do I remove authentication? ›

Delete a 2FA account token on Android

Tap and hold the desired authenticator account, and then select Remove. A notification window will be displayed advising your account will be deleted in 48 hours. Tap OK to continue.

Who uses Emqx? ›

Who uses EMQX? 10 companies reportedly use EMQX in their tech stacks, including SENSYN CORE and Apps, Haptik, and Qubitro.

How do I get rid of Authenticator? ›

Go to Azure Active Directory > Security > MFA. Under MFA settings, select Additional cloud-based MFA settings. Under service settings, select Microsoft Authenticator app. Change the setting to Disabled.

Is PSK the same as WPA2? ›

What is WPA2 - PSK ? WPA stands for "Wi-Fi Protected Access", and PSK is short for "Pre-Shared Key." There are two versions of WPA: WPA and WPA2. WPA2 is the latest generation of Wi-Fi security which comes in combination with other encryption methods like PSK [TKIP or AES] which is also called WPA2 Personal.

How do I find my WPA-PSK key? ›

In your router's settings, look for a "security" or "wireless security" tab. Open this tab, and the WPA key should be displayed.

How does a PSK work? ›

A pre-shared key (PSK) is a super-long series of seemingly random letters and numbers generated when a device joins a network through a Wi-Fi access point (AP). The process begins when a user logs into the network using the SSID (name of the network) and password (sometimes called a passphrase).

Is pre-shared key the Wi-Fi password? ›

A pre-shared key is basically just a shared secret or password that is used to authenticate an individual attempting to join a wireless network (no username or identification or than the key is required).

Top Articles
The Pros and Cons of Green Bonds
| Rocket Mortgage
Walgreens Boots Alliance, Inc. (WBA) Stock Price, News, Quote & History - Yahoo Finance
Www.craigslist Virginia
What to Do For Dog Upset Stomach
Identifont Upload
Practical Magic 123Movies
La connexion à Mon Compte
Rochester Ny Missed Connections
Vocabulario A Level 2 Pp 36 40 Answers Key
[2024] How to watch Sound of Freedom on Hulu
Tripadvisor Near Me
Oppenheimer Showtimes Near Cinemark Denton
Trini Sandwich Crossword Clue
Summer Rae Boyfriend Love Island – Just Speak News
Stihl Km 131 R Parts Diagram
Sivir Urf Runes
Ostateillustrated Com Message Boards
Niche Crime Rate
라이키 유출
Shasta County Most Wanted 2022
Pay Boot Barn Credit Card
Erica Banks Net Worth | Boyfriend
Pjs Obits
Quest: Broken Home | Sal's Realm of RuneScape
Universal Stone Llc - Slab Warehouse & Fabrication
College Basketball Picks: NCAAB Picks Against The Spread | Pickswise
Coomeet Premium Mod Apk For Pc
Play It Again Sports Norman Photos
Watch Your Lie in April English Sub/Dub online Free on HiAnime.to
Vivaciousveteran
Deshuesadero El Pulpo
Parkeren Emmen | Reserveren vanaf €9,25 per dag | Q-Park
Account Now Login In
Coindraw App
Black Panther 2 Showtimes Near Epic Theatres Of Palm Coast
Scott Surratt Salary
Jazz Total Detox Reviews 2022
Neteller Kasiinod
Abga Gestation Calculator
A Grade Ahead Reviews the Book vs. The Movie: Cloudy with a Chance of Meatballs - A Grade Ahead Blog
Caderno 2 Aulas Medicina - Matemática
Plead Irksomely Crossword
5 Tips To Throw A Fun Halloween Party For Adults
Energy Management and Control System Expert (f/m/d) for Battery Storage Systems | StudySmarter - Talents
Sour OG is a chill recreational strain -- just have healthy snacks nearby (cannabis review)
Wzzm Weather Forecast
Mawal Gameroom Download
Psalm 46 New International Version
Turning Obsidian into My Perfect Writing App – The Sweet Setup
Cataz.net Android Movies Apk
Latest Posts
Article information

Author: Greg O'Connell

Last Updated:

Views: 6213

Rating: 4.1 / 5 (42 voted)

Reviews: 89% of readers found this page helpful

Author information

Name: Greg O'Connell

Birthday: 1992-01-10

Address: Suite 517 2436 Jefferey Pass, Shanitaside, UT 27519

Phone: +2614651609714

Job: Education Developer

Hobby: Cooking, Gambling, Pottery, Shooting, Baseball, Singing, Snowboarding

Introduction: My name is Greg O'Connell, I am a delightful, colorful, talented, kind, lively, modern, tender person who loves writing and wants to share my knowledge and understanding with you.