WESM zl Management and Configuration Guide WT.01.28 and greater
4-56
Wireless Local Area Networks (WLANs)
Configuring a WLAN
Figure 4-35. Advanced Options for WPA/WPA2
b. If you want, check the Broadcast Key Rotation box.
Because all stations must use the same broadcast key, this key is clearly
more vulnerable to hackers than the per-session keys. Periodically changing
the broadcast key helps to protect your WLAN.
By default, the Wireless Edge Services zl Module does not rotate the
broadcast key. However, if you enable the feature, the default rotation period
is every 7,200 seconds (two hours).
In the Update broadcast keys every field, you can enter any value from
60 seconds (one minute) through 86,400 seconds (one day). The shorter the
rotation period, the more secure, but also the more overhead added by the
key redistribution.
c. You can also enable fast roaming features (to speed roaming with 802.1X).
A station might roam back and forth between several RPs. Ideally, such
roaming is hidden from the wireless user, who need not know when he or
she connects to a new RP, but only that the wireless connection remains
good.
Fast roaming speeds authentication to a new RP, which can be the most time-
consuming phase of the roam, so it only applies to WLANs that use 802.1X
authentication.