User's Manual
RLX2 Industrial Hotspot Series
ProSoftTechnology,Inc. Page107of208
February5,2015
EnterpriseModeSettings
WhenoneoftheEnterprisemodesareselectedintheSecurityModecontrol,asetof
controlsforEnterprisemodeparametersis automaticallydisplayedinthemiddleofthe
SecuritySettingspanelonthemainwebpageoftheRLX2.Therearetwosetsof
controls;thefirstpertainstotheRLX2inMastermo
de,andthesecondwhentheRLX2is
configuredinRepeaterorClientmode.
InEnterprisemode,theMaster’sauthenticatorcommunicatesdirectlywiththeRADIUS
Serverwhileitisrelaying802.1xframesreceivedfromanassociatingnote’sSupplicant.
Thefollowingparametersmustbeconfiguredinthismode:
Field
Description
IPAddress
TheIPaddressoftheRADIUSserverwithwhichtheNetworkAdministrator
hasregisterthisRLX2.
UDPPort
TheUDPportnumbertheRADIUSserverisusingtolistentoRadiusframes
fromthisRLX2.ThedefaultportnumberusedfortheRadiusprotocolis
1812.
Secret
ThepassphrasethatwasusedwhenthisRLX2wasregisteredtotheRADIUS
server.ThisisusedtovalidatethattheRadiusframesreceivedoneitherend
arelegitimate.
WheninRepeaterorClientmode,theRLX2SupplicantcommunicatesviaitsParent
RLX2withaRADIUSserver.Severaldifferentauthenticationprotocolsareavailableand
canbesetusingthefollowingparameters.
Field
Description
EAPMethod
TheEAPMethod,sometimesreferredtoasthe‘outerprotocol’definesthe
mechanismusedtocreateasecuretunnelbetweentheSupplicantand
RADIUSserverduringthefirstphaseoftheAuthenticationsequence.The
followingEAPmethodsaresupported:
EAP‐PEAP–EAPmethodusingthe‘ProtectedExtensible
AuthenticationProtoco
l’
EAP‐TLS–EAPmethodbasedonX.509certificatesthatprovides
formutualauthentication.Thisisthemostsecureauthentication
mechanismavailablefor802.11.Certificatesarerequiredbothon
theRLX2andtheRADIUSserver.Theonlyauthenticationoption
availableforEAP‐TLSistouseTLSfortheinnerprotoco
l.
EAP‐TTLS–EAPTunneledTLS.SimilartoEAP‐PEAP.
AnonymousID: