This document discusses the security of Wi-Fi enterprise networks. It describes the Wi-Fi protocol which uses authentication and encryption methods. It analyzes vulnerabilities in some common authentication protocols like EAP-FAST and PEAP that allow brute-force cracking of passwords. The document demonstrates how an attacker can intercept user credentials with a fake access point and RADIUS server to crack captured PEAP passwords. It also notes that EAP-TLS is more secure since it uses certificates instead of passwords.