Ieee 802.1X - Psion Teklogix 9160 G2 User Manual

Wireless gateway
Hide thumbs Also See for 9160 G2:
Table of Contents

Advertisement

Chapter 10: Configuring Security
Security Modes
Figure 10.4 Example Of Using Multiple WEP Keys And Transfer Key Index On Client Stations
Access Point transmits to both stations with same WEP key
(e.g., WEP key 3)

10.2.2.3 IEEE 802.1x

IEEE 802.1x is the standard defining port-based authentication and infrastructure for doing
key management. Extensible Authentication Protocol (EAP) messages sent over an IEEE
802.11 wireless network using a protocol called EAP Encapsulation Over LANs (EAPOL).
IEEE 802.1x provides dynamically-generated keys that are periodically refreshed. An RC4
stream cipher is used to encrypt the frame body and cyclic redundancy checking (CRC) of
each 802.11 frame.
This mode requires the use of a RADIUS server to authenticate users. If the option for the
internal RADIUS server is enabled, configure user accounts on the AP via the Cluster >
User Management tab. Otherwise configure user accounts on the external RADIUS server.
The access point requires a RADIUS server capable of EAP, such as the Microsoft Internet
Authentication Server or the 9160 G2 Wireless Gateway internal authentication server. To
work with Windows clients, the authentication server must support Protected EAP (PEAP)
and MSCHAP V2.
When configuring IEEE 802.1x mode, you have a choice of whether to use the embedded
RADIUS server or an external RADIUS server that you provide. The 9160 G2 Wireless
Gateway embedded RADIUS server supports Protected EAP (PEAP) and MSCHAP V2.
If you use your own RADIUS server, you have the option of using any of a variety of au-
thentication methods that the IEEE 802.1x mode supports, including certificates, Kerberos,
and public key authentication. Keep in mind, however, that the client stations must be con-
figured to use the same authentication method being used by the access point.
If you selected IEEE 802.1x Security Mode, provide the following:
108
Psion Teklogix 9160 G2 Wireless Gateway User Manual
can decrypt WEP key 3
transmits in WEP key 1
Client Station 1
WEP key 3
WEP key 2
Client Station 2
can decrypt WEP key 3
transmits in WEP key 2

Advertisement

Table of Contents
loading

Table of Contents