User's Manual

44
Chapter4
|
WirelessSettings
RadioSettings
Auto:TKIP+CCMP(AES)
Theencryptionmethodusedbythe
clientisdiscoveredbytheaccesspoint.
KeyWPAisusedtoencryptdatatransmittedbetweenwireless
clientsandtheVAP.WPAusesstaticsharedkeys(fixedlength
hexadecimaloralphanumericstrings)thataremanuallydistributedto
allclientsthatwanttousethenetwork.
Stringlengthmustbe8to63ASCIIcharacters(lettersandnumbers).
Nospecialcharactersareallowed.
WPA2PSK:ClientsusingWPA2withaPresharedKeyareacceptedfor
authentication.
WPAwasintroducedasaninterimsolutionforthevulnerabilityofWEP
pendingtheratificationoftheIEEE802.11iwirelesssecuritystandard.In
effect,th eWPAsecu rity featuresareasubsetofthe802.11istandard.WPA2
includesthenowratified802.11istandard,butalsooffersbackward
compatibilitywithWPA.Therefore,WPA2includesthesame802.1XandPSK
modesofoperationandsupportforTKIPencryption.
Referto WPAPSKforadescriptionofencryptionmethodsandthekey.
WPAEAPWPAemploysa combinationofseveraltechnologies to
provideanenhancedsecuritysolutionfor802.11wirelessnetworks.A
RADIUSse rverisusedforauthentication,andcanalsobeusedfor
accounting.
Referto WPAPSKforadescriptionofencryptionmethods.
RADIUSSettings
ARADIUSservermustbespecifiedfortheaccesspointtoimplementIEEE
802.1X network access controland WiFi ProtectedAccess(WPA) wireless
security.
Inaddition,youcanconfigureaRADIUSAccountingservertoreceiveuser
session accounting informationfrom the access point. RADIUSAccounting
canbeusedtoprovidevaluableinformationonuseractivityinthe
network.
This guideassumes thatyouhave alreadyconfigured RADIUSserver(s) tosupport
the access point. Configuration of RADIUS server software is beyond the scope of
thisguide,refertothedocumentationprovidedwiththeRADIUSserversoftware.
RadiusAuthServer
SpecifiestheIPaddressorhostnameofthe
RADIUSauthenticationserver.
RadiusAuthPortTheUDPportnumberusedbytheRADIUSserver
forauthenticationmessages.(Range:102465535;Default:1812)