Configuring 802.1X Eap Authentication - Motorola WS2000 - Wireless Switch - Network Management Device System Reference Manual

Wireless switch
Hide thumbs Also See for WS2000 - Wireless Switch - Network Management Device:
Table of Contents

Advertisement

5-8 WS2000 Wireless Switch System Reference Guide
The authentication method sets a challenge-response procedure for validating user credentials such as
username, password, and sometimes, secret-key information. The WS 2000 Wireless Switch provides two
methods for authenticating users:
two methods. If WLAN security is not an issue, the administrator can decide not to enable authentication
(No
Authentication), because authentication protocols create overhead for the switch's processor.

5.3.2 Configuring 802.1x EAP Authentication

The IEEE 802.1x is an authentication standard that ties EAP to both wired and wireless LAN applications.
EAP provides effective authentication with or without IEEE 802.1x Wired Equivalent Privacy (WEP)
encryption, or with no encryption at all. EAP supports multiple authentication measures. It requires that the
site have an authentication (Remote Dial-In User Service, or RADIUS) server on the wired side of the Access
Port. All other packet types are blocked until the authentication server verifies the client's identity. To set up
802.1x EAP authentication:
1. On the
Network Configuration
select the
802.1x EAP
802.1x EAP Configuration
2. Click the
802.1x EAP Configuration
3. The administrator is required to specify the
this type of authentication to work. Providing the IP address of a secondary server is optional. The
secondary server acts as a failover server if the switch cannot successfully contact the primary server.
4. Specify the port on which the primary RADIUS server is listening in the
specify the port of a secondary (failover) server. Older RADIUS servers listen on ports 1645 and 1646.
Newer servers listen on ports 1812 and 1813. Port 1645 or 1812 is used for authentication. Port 1646 or
1813 is used for accounting. The ISP or a network administrator can confirm the appropriate primary and
secondary port numbers.
802.1x EAP
and Kerberos. The administrator can select between these
-->
Wireless
--> <WLAN Name> --> <WLAN Name>
radio button to enable the 802.1x Extensible Authentication Protocol (EAP). The
button is enabled.
button to display a sub-screen for specific authentication settings.
RADIUS Server Address
Security
screen,
of a primary RADIUS server for
RADIUS Port
field. Optionally,

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents