Figure 38 Eap Authentication - ZyXEL Communications P-330W - V1.90 User Manual

802.11g secure wireless internet sharing router
Table of Contents

Advertisement

Your P-330W supports EAP-MD5 (Message-Digest Algorithm 5) with RADIUS.
The following figure shows an overview of authentication when you specify a RADIUS server
on your access point.

Figure 38 EAP Authentication

The details below provide a general description of how IEEE 802.1x EAP authentication
works. For an example list of EAP-MD5 authentication steps, see the IEEE 802.1x appendix.
1 The wireless station sends a "start" message to the P-330W.
2 The P-330W sends a "request identity" message to the wireless station for identity
information.
3 The wireless station replies with identity information, including username and password.
4 The RADIUS server checks the user information against its user profile database and
determines whether or not to authenticate the wireless station.
6.7.7.6 WPA with RADIUS Application Example
You need the IP address of the RADIUS server, its port number (default is 1812), and the
RADIUS shared secret. A WPA application example with an external RADIUS server looks as
follows. "A" is the RADIUS server. "DS" is the distribution system.
1 The AP passes the wireless client's authentication request to the RADIUS server.
2 The RADIUS server then checks the user's identification against its database and grants
or denies network access accordingly.
3 The RADIUS server distributes a Pairwise Master Key (PMK) key to the AP that then
sets up a key hierarchy and management system, using the pair-wise key to dynamically
generate unique data encryption keys to encrypt every data packet that is wirelessly
communicated between the AP and the wireless clients.
P-330W User's Guide
Chapter 6 Wireless
73

Advertisement

Table of Contents
loading

This manual is also suitable for:

P-330w v2P-330w

Table of Contents