Security Considerations - 3Com 3CRWE876075 User Manual

Wireless 8760 dual-radio 11a/b/g poe access point
Hide thumbs Also See for 3CRWE876075:
Table of Contents

Advertisement

C
4: S
C
HAPTER
YSTEM
ONFIGURATION
Security
Mechanism
WPA over 802.1X
Mode
WPA PSK Mode
WPA2 with
802.1X
WPA2 PSK Mode
NOTE: You must enable data encryption through the web in order to enable all
types of encryption (WEP, TKIP, or AES) in the access point.
The access point can simultaneously support clients using various different
security mechanisms. The configuration for these security combinations are
outlined in the following table. Note that MAC address authentication can be
configured independently to work with all security mechanisms and is indicated
separately in the table. Required RADIUS server support is also listed.
Table 6 Security Considerations
No encryption and no
authentication
Static WEP only (with
or without shared
key authentication)
Client Support
Requires WPA-enabled system
and network card driver
(native support provided in
Windows XP)
Requires WPA-enabled system
and network card driver
(native support provided in
Windows XP)
Requires WPA-enabled system
and network card driver (native
support provided in Windows
XP)
Requires WPA-enabled system
and network card driver (native
support provided in Windows
XP)
Client Security
Combination
Authentication: Open System
Encryption: Disable
802.1x: Disable
Enter 1 to 4 WEP keys
Select a WEP transmit key for the interface
Authentication: Shared Key or Open System
Encryption: Enable
802.1x: Disable
Implementation Considerations
• Provides robust security in WPA-only mode
(i.e., WPA clients only)
• Offers support for legacy WEP clients, but with
increased security risk (i.e., WEP authentication
keys disabled)
• Requires configured RADIUS server
• 802.1X EAP type may require management of
digital certificates for clients and server
• Provides good security in small networks
• Requires manual management of pre-shared key
• Provides the strongest security in WPA2-only
mode
• Provides robust security in mixed mode for WPA
and WPA2 clients
• Offers fast roaming for time-sensitive client
applications
• Requires configured RADIUS server
• 802.1X EAP type may require management of
digital certificates for clients and server
• Clients may require hardware upgrade to be
WPA2 compliant
• Provides robust security in small networks
• Requires manual management of pre-shared key
• Clients may require hardware upgrade to be
WPA2 compliant
Configuration Summary
a
4-50
MAC
RADIUS
b
Server
Authentication
Local, RADIUS, or
Yes
c
Disabled
Local, RADIUS, or
Yes
c
Disabled

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents