WESM zl Management and Configuration Guide WT.01.03 and greater

1-46
Introduction
ProCurve Wireless Edge Services zl Module
You can load these certificates to the module from an FTP server, a TFTP
server, or the local disk of the management station.
Before creating a certificate or certificate request, the Wireless Edge Services
zl Module must generate a public/private key pair. The module can create Rivest-
Shamir-Adleman (RSA) keys of between 1024 and 2048 bytes. Each certificate
can use a unique key pair, or multiple certificates can share a key pair.
The Wireless Edge Services zl Module uses certificates for several purposes:
HTTPS access—The module’s server certificate authenticates the mod-
ule to your Web browser.
RADIUS authentication services
—802.1X authentication with EAP
requires mutual authentication. In other words, the module’s internal
RADIUS server must send a server certificate and authenticate to
supplicants.
Autokey authentication for secure Network Time Protocol
(NTP)The module sends its certificate to the secure NTP server to
authenticate itself and generate keys to secure NTP exchanges.
Because the Wireless Edge Services zl Module can store multiple trustpoints,
you can select different certificates for different functions.
Traffic Management and QoS
In the past, users often treated wireless connections as a supplement to other
network connections. Now, users demand more and more from wireless
connections, increasing congestion and decreasing QoS.
Compounding the problem, users have begun to demand the same applications
to which they have become accustomed on Ethernet connections. As multime-
dia applications become more common in wireless networks, maintaining a
high QoS for such time-sensitive, bandwidth-intensive traffic becomes a prior-
ity. Voice-over-WLAN (VoWLAN) wireless phones further complicate the situ-
ation with yet another type of traffic that requires special handling.
A wireless network, which uses the shared medium of radio signals, functions
differently from a switched Ethernet network. On a wireless network, colli-
sions can occur, bandwidth can be reduced, and latency can be high. A
wireless QoS solution must address these issues.