User Manual

Network authentication and the Data Encryption now include the CCX security
options: Open, Shared for 802.11 Authentication and none, WEP, CKIP for Data
encryption.
6. Click Next.
7. Select Open in the Network Authentication options.
8. Select CKIP as the Data encryption.
9. Click the 802.1x Enabled checkbox to enable the 802.1x security option.
10. Select LEAP as the 802.1x Authentication Type.
11. Click the Configure button to open the LEAP Setting dialog. Enter the user name
and password of the user account created on the authentication server. The user
name and password do not have to be the same as name and password of your
current Windows user login.
12. Click on the "Enable Rogue AP Detection" if the network is setup to account for
rogue APs. This setting should also be made if only the "Network-EAP" checkbox
is selected in the AP configuration settings (applies to all Cisco APs).
13. Click Close to save the settings.
14. Select the Networks page and click the Connect button to connect to the
appropriate CCX enabled AP using the CCX Profile.
CCX Access Point and Client Configurations
The access point provides settings to select different authentication types depending on
the WLAN environment. The client sends an Authentication algorithm field during the
802.11 authentication handshake that takes place between the client and the AP during
connection establishment. The Authentication algorithm values recognized by a CCX
enabled AP is different for the different authentication types. For instance "Network-EAP"
which denotes LEAP has a value of 0x80 while "Open" which is the 802.11 specified
Open authentication and "Required EAP" which requires an EAP handshake exchange
have values of 0x0.
Network-EAP only
AP: For CCX enabled networks using LEAP authentication only the authentication type is
set with "Network-EAP" checkbox selected, and "Open" and "Required EAP" boxes
unchecked. The AP is then configured to allow LEAP clients ONLY to authenticate and
connect. In this case, the AP expects the 802.11 authentication algorithm to be set to
0x80 (LEAP), and rejects clients that attempt authentication with an Authentication
algorithm value 0x0.