Enabling Dynamic Wep In A Wpa Network - Nortel 2300 Series Configuration Manual

Wlan security switch
Hide thumbs Also See for 2300 Series:
Table of Contents

Advertisement

Enabling Dynamic WEP in a WPA Network

The following example shows how to configure WSS Software to provide authentication and encryption for 801.X
dynamic WEP clients, and for 801.X WPA clients using TKIP. This example assumes that pass-through authentication
is used for all users. The commands are the same as those in
of a command to enable a WEP cipher suite. The WEP cipher suite allows authentication and encryption for both WPA
and non-WPA clients that want to authenticate using dynamic WEP.
1
Create an authentication rule that sends all 802.1X users of SSID mycorp in the EXAMPLE domain to the
server group shorebirds for authentication. Type the following command:
23x0# set authentication dot1x ssid thiscorp EXAMPLE\* pass-through shorebirds
2
Create a service profile named wpa-wep for the SSID. Type the following command:
23x0# set service-profile wpa-wep
success: change accepted.
3
Set the SSID in the service profile to thiscorp. Type the following command:
23x0# set service-profile wpa-wep ssid-name thiscorp
success: change accepted.
4
Enable WPA in service profile wpa-wep. Type the following command:
23x0# set service-profile wpa-wep wpa-ie enable
success: change accepted.
5
Enable the WEP40 cipher suite in service profile wpa-wep. Type the following command:
23x0# set service-profile wpa-wep cipher-wep40 enable
success: change accepted.
TKIP is already enabled by default when WPA is enabled.
6
Display the service profile wpa-wep to verify the changes. Type the following command:
23x0# show service-profile wpa-wep
ssid-name:
beacon:
WEP Key 1 value:
WEP Key 3 value:
WEP Unicast Index:
Long Preamble:
WPA enabled:
ciphers: cipher-tkip, cipher-wep40
authentication: 802.1X
TKIP countermeasures time: 60000ms
7
Map service profile wpa-wep to radio profile rp2. Type the following commands:
23x0# set radio-profile rp2 service-profile wpa-wep
success: change accepted.
8
Apply radio profile rp2 to radio 1 on port 5 and to radios 1 and 2 on port 11, enable the radios, and verify
the configuration changes. Type the following commands:
23x0# set ap 5,11 radio 1 radio-profile rp2 mode enable
"Enabling WPA with TKIP" on page
mycorp
ssid-type:
yes
auth-fallthru: last-resort
<none>
WEP Key 2 value:
<none>
WEP Key 4 value:
1
WEP Multicast Index:
YES
Shared Key Auth:
Nortel WLAN Security Switch 2300 Series Configuration Guide
Configuring User Encryption 215
213, with the addition
crypto
<none>
<none>
1
NO

Advertisement

Table of Contents
loading

Table of Contents