User's Manual
–
44
–
Chapter4
|
WirelessSettings
RadioSettings
■
Auto:TKIP+CCMP(AES)
—Theencryptionmethodusedbythe
clientisdiscoveredbytheaccesspoint.
■
Key—WPAisusedtoencryptdatatransmittedbetweenwireless
clientsandtheVAP.WPAusesstaticsharedkeys(fixed‐length
hexadecimaloralphanumericstrings)thataremanuallydistributedto
allclientsthatwanttousethenetwork.
Stringlengthmustbe8to63ASCIIcharacters(lettersandnumbers).
Nospecialcharactersareallowed.
■
WPA2‐PSK:ClientsusingWPA2withaPre‐sharedKeyareacceptedfor
authentication.
WPAwasintroducedasaninterimsolutionforthevulnerabilityofWEP
pendingtheratificationoftheIEEE802.11iwirelesssecuritystandard.In
effect,th eWPAsecu rity featuresareasubsetofthe802.11istandard.WPA2
includesthenowratified802.11istandard,butalsooffersbackward
compatibilitywithWPA.Therefore,WPA2includesthesame802.1XandPSK
modesofoperationandsupportforTKIPencryption.
Referto WPA‐PSKforadescriptionofencryptionmethodsandthekey.
■
WPA‐EAP—WPAemploysa combinationofseveraltechnologies to
provideanenhancedsecuritysolutionfor802.11wirelessnetworks.A
RADIUSse rverisusedforauthentication,andcanalsobeusedfor
accounting.
Referto WPA‐PSKforadescriptionofencryptionmethods.
RADIUSSettings
ARADIUSservermustbespecifiedfortheaccesspointtoimplementIEEE
802.1X network access controland Wi‐Fi ProtectedAccess(WPA) wireless
security.
Inaddition,youcanconfigureaRADIUSAccountingservertoreceiveuser‐
session accounting informationfrom the access point. RADIUSAccounting
canbeusedtoprovidevaluableinformationonuseractivityinthe
network.
This guideassumes thatyouhave alreadyconfigured RADIUSserver(s) tosupport
the access point. Configuration of RADIUS server software is beyond the scope of
thisguide,refertothedocumentationprovidedwiththeRADIUSserversoftware.
■
RadiusAuthServer
—SpecifiestheIPaddressorhostnameofthe
RADIUSauthenticationserver.
■
RadiusAuthPort—TheUDPportnumberusedbytheRADIUSserver
forauthenticationmessages.(Range:1024‐65535;Default:1812)