Security Policy Instance - Symbol WS5000 Series System Reference Manual

Hide thumbs Also See for WS5000 Series:
Table of Contents

Advertisement

8-186
WS5000 Series Switch System Reference Guide

8.42 Security Policy Instance

A Security Policy instance declares the types of encryption and authentication that can be used to create
secure login and data communication on the WLAN.
The type of encryption that can be set are as follows:
• Open – No encryption; any unsecured Mobile Unit is allowed to associate with the system unless the
adoption list specifically excludes it.
• KeyGuard encryption for TKIP (Temporal Key Integrity Protocol) – This mode is only supported by Symbol
mobile devices. KeyGuard requires a 128-bit WEP key.
• Wired Equivalent Privacy (WEP) – WEP comes in a choice of 40- or 128-bit encryption, and lets you
define and choose from four different keys.
• WPA/TKIP – Wi-Fi Protected Access with Temporal Key Integrity Protocol
• WPA2 AES
In addition, the type of authentication methodologies used are as follows:
• None – If encryption is set to open, then there's no authentication.
• Pre-Shared Key (PSK) – In PSK, the same key is used for authentication and encryption.
• Kerberos – Uses a Kerberos server for mobile unit authentication. You can specify an external server or
use the switch's on-board server. To use the on-board server, you must first configure the switch to be a
Kerberos Master (see
set master on page
• 802.1x EAP – Authentication is performed by an external Remote Authentication Dial-In User Service
(Radius) server. The Radius server must be accessible to the switch.
A single Security Policy can accept more than one method (of each), thus providing wider support for MUs that
use expect different security methods. However, the Security Policy is only as strong as its weakest method.
Table 8.46
summarizes the commands within this context. Common commands between multiple contexts are
described in further detail in the
Table 8.46 Security Policy Instance Context Command Summary
Command
.. or end
Terminate a current session and moves up a context, hierarchically.
exit
Terminate a current session and returns to the "root" prompt.
? or help
Get the command information.
logout or bye
Close this session.
clear
Clear the screen.
emergencymode
Enable or disable Emergency mode.
set
Sets an attribute of the Security policy instance.
show
Display the attributes of this Security policy instance.
8-166). Kerberos only supports KeyGuard and WEP encryption.
Common Commands
section.
Description
Ref.
page 8-5
page 8-5
page 8-6
page 8-6
page 8-7
page 8-7
page 8-187
page 8-191

Advertisement

Table of Contents
loading

Table of Contents