User manual

P a g e 5 3 o f 9 3
U s i n g W P A -8 0 2 . 1 x
Th i s i s t h e m o s t s e c u r e a n d m o s t c o m p l e x s y s t e m .
8 0 2 . 1 x m o d e p r o v i d e s g r e a t e r s e c u r i t y a n d c e n t r a l i z e d m a n a g e m e n t , b u t i t i s m o r e c o m p l e x t o c o n f i g u r e .
Wireless Station Configuration
F o r e a c h o f t h e f o l l o w i n g i t e m s , e a c h W i r e l e s s S t a t i o n m u s t h a v e t h e s a m e s e t t i n g s a s t h e W i r e l e s s A c c e s s P o i n t .
M o d e
O n e a c h P C , t h e m o d e m u s t b e s e t t o I n f r a s t r u ct u r e .
S S I D ( E S S I D )
T h i s m u s t m a t c h t h e v a l u e u s e d o n t h e W i r e l e s s A c c e s s P o i n t .
T h e d e f a u l t v a l u e i s w i r e l e s s
N o t e ! T h e S S I D i s c a s e s e n s i t i v e .
8 0 2 . 1 x
A u t h e nt i c at i o n
E a c h c l i e n t m u s t o b t a i n a C e r t i f i c a t e w h i c h i s u s e d f o r a u t h e n t i c at i o n
f o r t h e R a d i u s S e r v e r .
8 0 2 . 1 x
E n c r y p t i o n
T y p i c a l l y , E A P -T L S i s u s e d . T h i s i s a d y n a m i c k e y s y s t e m , s o k e y s d o
N O T h a v e t o b e e n t e r e d o n e a c h W i r e l e s s s t a t i o n .
H o w e v e r , y o u c a n a l s o u s e a s t a t i c W E P k e y ( E A P -M D 5 ) ; t h e
W i r e l e s s A c c e s s P o i n t s u p p o r t s b o t h m e t h o d s s i m u l t a n e o u s l y .
Radius Server Configuration
I f u s i n g W P A -8 0 2 . 1 x m o d e , t h e R a d i u s S e r v e r o n y o u r n e t w o r k m u s t b e c o n f i g u r e d a s f o l l o w :
It must provide and accept Certificates for user authentication.
There must be a Client Login for the Wireless Access Point itself.
The Wireless Access Point will use its Default Name as its Client Login name. (However, your Radius
server may ignore this and use the IP address instead.)
The Shared Key, set on the Security Screen of the Access Point, must match the Shared Secret value on
the Radius Server.
Encryption settings must be correct.