Enabling Eap-Fast - Cisco CB21AG Installation And Configuration Manual

Cisco aironet 802.11a/b/g wireless lan client adapters (cb21ag and pi21ag)
Hide thumbs Also See for CB21AG:
Table of Contents

Advertisement

Chapter 5
Configuring the Client Adapter

Enabling EAP-FAST

Before you can enable EAP-FAST authentication, your network devices must meet the following
requirements:
Follow these steps to enable EAP-FAST authentication for this profile.
Step 1
Perform one of the following on the Profile Management (Security) window:
Note
Note
Step 2
Click Configure. The EAP-FAST Settings window appears (see
Cisco Aironet 802.11a/b/g Wireless LAN Client Adapters (CB21AG and PI21AG) Installation and Configuration Guide
OL-4211-03
To use EAP-FAST authentication with WPA2, client adapters must use the software included in
Install Wizard 2.0 or later.
Access points to which your client adapter may attempt to authenticate must use the following
firmware versions or later: 11.23T (340 and 350 series access points), 11.54T (1200 series access
points), or Cisco IOS Release 12.2(4)JA (1100 series access points).
Note
To use WPA or CCKM, access points must use Cisco IOS Release 12.2(11)JA or later. To
use WPA2, access points must use Cisco IOS Release 12.3(2)JA or later. To use the
Reporting Access Points That Fail LEAP or EAP-FAST Authentication feature, access
points must use the firmware versions listed on
The access point to which your client adapter will associate must be configured for both
Note
Network-EAP and Open authentication.
All necessary infrastructure devices (such as access points, servers, gateways and user databases)
must be properly configured for EAP-FAST authentication.
If you want to enable EAP-FAST without WPA or WPA2, choose 802.1x under Set Security Options
and EAP-FAST in the 802.1x EAP Type drop-down box.
If you want to enable EAP-FAST with WPA or WPA2, choose WPA/WPA2/CCKM under Set
Security Options and EAP-FAST in the WPA/WPA2/CCKM EAP Type drop-down box.
If you want to enable CCKM on the client adapter, you must choose the WPA/WPA2/CCKM
security option, regardless of whether you want the adapter to use WPA or WPA2. The
configuration of the access point to which your client adapter associates determines whether
CCKM will be used with 802.1x, WPA, or WPA2.
Refer to the
"WPA and WPA2" section on page 5-18
Setting Security Parameters
page
5-19.
for additional information.
Figure
5-8).
5-31

Advertisement

Table of Contents
loading

This manual is also suitable for:

Pi21ag

Table of Contents