A server certificate verification method in a terminal during. Extensible
Authentication Protocol authentication for Internet access is provided,
the method including (a) receiving a server certificate from a wireless
LAN authentication server, and transmitting a server certificate
verification request message of the server certificate to a wireless LAN
authentication server via a wireless LAN access server; (b) transmitting
by the wireless LAN authentication server an On-line Certificate Status
Protocol request message to an On-line Certificate Status Protocol server
to verify the server certificate; (c) receiving a result of the server
certificate verification performed by the OCSP server using an Extensible
Authentication Protocol packet from the wireless LAN authentication
server; and (d) determining whether the result of the server certificate
verification is valid.