Configuring Wpa2-Ccmp (802.11I) - Extreme Networks Altitude 4700 Series Product Reference Manual

Software version 4.1
Hide thumbs Also See for Altitude 4700 Series:
Table of Contents

Advertisement

256-bit Key
Default (hexadecimal) 256-bit keys for WPA/TKIP include:
1011121314151617
18191A1B1C1D1E1F
2021222324252627
28292A2B2C2D2E2F
7 Enable WPA2-TKIP Support as needed to allow WPA2 and TKIP client interoperation.
Allow WPA2-TKIP
clients
8 Configure the Fast Roaming (802.1x only) field as required to enable additional access point roaming
and key caching options. This feature is applicable only when using 802.1x EAP authentication with
WPA2-TKIP.
Pre-Authentication
Opportunistic PMK
Caching
NOTE
PMK key caching is enabled internally by default for WPA2-TKIP when 802.1x EAP authentication is
enabled.
9 Click the Apply button to save any changes made within this New Security Policy screen.
10 Click the Cancel button to undo any changes made within the WPA/TKIP Settings field and return to
the WLAN screen. This reverts all settings to the last saved configuration.

Configuring WPA2-CCMP (802.11i)

WPA2 is a newer 802.11i standard that provides even stronger wireless security than Wi-Fi Protected
Access (WPA) and WEP. CCMP is the security standard used by the Advanced Encryption Standard (AES).
AES serves the same function TKIP does for WPA-TKIP. CCMP computes a Message Integrity Check
(MIC) using the proven Cipher Block Chaining (CBC) technique. Changing just one bit in a message
produces a totally different result.
Altitude 4700 Series Access Point Product Reference Guide
To use a hexadecimal value (and not an ASCII
passphrase), select the checkbox and enter 16
hexadecimal characters into each of the four fields
displayed.
WPA2-TKIP support enables WPA2 and TKIP clients to
operate together on the network.
Selecting this option enables an associated MU to carry
out an 802.1x authentication with another access point
before it roams to it. The access point caches the keying
information of the client until it roams to the other access
point. This enables the roaming client to start sending and
receiving data sooner by not having to do 802.1x
authentication after it roams. This feature is only supported
when 802.1x EAP authentication and WPA2-TKIP is
enabled.
Select the Opportunistic Pairwise Master Key (PMK)
Caching option to reduce handoff latency by pre-
establishing security associations between an MU and the
AP4700 Access Points in a wireless network.
213

Advertisement

Table of Contents
loading

Table of Contents