User's Manual
http://www.L‐com.com
19
Profile configuration – 802.1x Tab
Settings on this Tab allow IEEE 802.1x protocol. All information can be obtained
from wireless network administrator. Appearance of this Tab depends on options
selected from EAP method and Tunnel Authentication lists.
z PEAP–Protect Extensible Authentication Protocol. PEAP transports secured
authentication data by using tunneling between PEAP clients and an
authentication server. PEAP can authenticate wireless LAN clients using only
server-side certificates, thus simplifying the implementation and
administration of secure wireless network.
z TLS/Smart Card –Transport Layer Security. Provides for certificate-based
and mutual authentication of the client and the network. It relies on client-side
and server-side certificates to perform authentication and can be used to
dynamically generate user-based and session-based WEP keys to secure
subsequent communications between the WLAN client and the AP.
z TTLS–Tunnel Transport Layer Security. This security method provides for
certificate-based, mutual authentication of the client and network through an
encrypted channel. Unlike EAP-TLS, EAP-TTLS, it requires only server-side
certificates.
z EAP-FAST–Flexible Authentication via secured Tunneling. It was developed
by Cisco. Instead of using a certificate, mutual authentication is achieved by
means of a PAC (Protected Access Credential) which can be managed
dynamically by the authentication server. The PAC can be provisioned
(distributed on time) to the client either manually or automatically. Manual
provisioning is delivered to the client via disk or secured network distribution
method. Automatic provisioning is an in-band, over the air, distribution. For
tunnel authentication, only support “Generic Toke Card” authentication now.
z MD5-Challenge–Message Digest Challenge. Challenge is an EAP
authentication type that provides base-level EAP support. It provides for only
one-way authentication, there is no mutual authentication of wireless client
and the network.