user manual

6-14
Cisco Aironet 1200 Series Access Point Software Configuration Guide
OL-2159-05
Chapter 6 Configuring Proxy Mobile IP
The Proxy Mobile IP Setup Page
Settings on the Authenticator Configuration Page
802.1X Protocol Version (for EAP Authentication)
This drop-down menu allows you to select the draft of the 802.1X protocol the access points radio will
use. EAP operates only when the radio firmware on client devices complies with the same 802.1X
Protocol draft as the management firmware on the access point. See the Setting Up EAP
Authentication section on page 8-15 for additional information.
Primary Server Reattempt Period (Min)
This field specifies how many minutes should pass before checking for the primary server when it was
not initially accessible.
Server Name/IP
This field identifies the domain name or IP address of the RADIUS or TACACS server proxy Mobile IP
is using for authentication purposes.
Server Type
This drop-down menu displays the selections you can make to designate the server type you want the
proxy Mobile IP configuration to use. The choices are RADIUS or TACACS. RADIUS is the default
setting.
Port
This field specifies the port number the server uses for authentication. The default setting, 1812, is the
port setting for Ciscos RADIUS server, the Cisco Secure Access Control Server, and for many other
RADIUS servers. Check your servers product documentation to find the correct port setting.
Shared Secret
This field identifies the shared secret used by your RADIUS server. The shared secret on the access point
must match the shared secret on the RADIUS server. The shared secret can contain up to 64
alphanumeric characters. This setting has no default.
Retran Int (sec)
This field specifies the time interval in seconds that the server waits after it failed to contact the server
until it tries again. The default setting is 5 seconds.
Max Retran
This field indicates how many times the server attempts to contact the server before it attempts to contact
an alternate server. The setting works in conjunction with the Retran Int (sec) parameter.
Use server for:
These check boxes specify the authentication types the server uses: EAP, MAC Address, User, or MIP
authentication. Checking the EAP authentication check box designates the server as an authenticator for
any EAP type, including LEAP, PEAP, EAP-TLS, LEAP-SIM, and EAP-MD5. Checking the MIP
authentication configures the server to authenticate proxy Mobile IP configured clients.