User's Manual
–
44
–
Chapter4
|
WirelessSettings
RadioSettings
■
Auto:TKIP+CCMP(AES)
—Theencryptionmethodusedbythe
clientisdiscoveredbytheaccesspoint.
■
Key—WPAisusedtoencryptdatatransmittedbetweenwireless
clientsandtheVAP.WPAusesstaticsharedkeys(fixed‐length
hexadecimaloralphanumericstrings)thataremanuallydistributedto
allclientsthatwanttousethenetwork.
Stringlengthmustbe8to63ASCIIcharacters(lettersandnumbers).
Nospecialcharactersareallowed.
■
WPA2‐PSK:ClientsusingWPA2withaPre‐sharedKeyareacceptedfor
authentication.
WPAwasintroducedasaninterimsolutionforthevulnerabilityofWEP
pendingtheratificationoftheIEEE802.11iwirelesssecuritystandard.In
effect,th eWPAsecurityfeaturesareasubsetofthe802.11istandard.WPA2
includesthenowratified802.11istandard,butalsooffersbackward
compatibilitywithWPA.Therefore,WPA2includesthesame802.1XandPSK
modesofoperationandsupportforTKIPencryption.
Referto WPA‐PSKforadescriptionofencryptionmethodsandthekey.
■
WPA‐EAP— WPAemploysa combinationofseveraltechnologiesto
provideanenhancedsecuritysolutionfor802.11wirelessnetworks.A
RADIUSse rverisusedforauthentication,andcanalsobeusedfor
accounting.
Referto WPA‐PSKforadescriptionofencryptionmethods.
RADIUSSettings
ARADIUSservermustbespecifiedfortheaccesspointtoimplementIEEE
802.1X network access control and Wi‐Fi ProtectedAccess (WPA)wireless
security.
Inaddition,youcanconfigureaRADIUSAccountingservertoreceiveuser‐
session accountinginformation from the access point. RADIUSAccounting
canbeusedtoprovidevaluableinformationonuseractivityinthe
network.
This guideassumes thatyouhave alreadyconfigured RADIUSserver(s) tosupport
the access point. Configuration of RADIUS serversoftware is beyond the scope of
thisguide,refertothedocumentationprovidedwiththeRADIUSserversoftware.
■
RadiusAuthServer
—SpecifiestheIPaddressorhostnameofthe
RADIUSauthenticationserver.
■
RadiusAuthPort— TheUDPportnumberusedbytheRADIUSserver
forauthenticationmessages.(Range:1024‐65535;Default:1812)