Cisco Unified Wireless IP Phone 7925G Series Deployment Guide
69
•
Below are the available security modes supported and which key management and encryption types can be used for
each mode.
Security Mode
Key Management
Encryption
Open
N/A
N/A
Open+WEP
Static
WEP (40 or 128 bit)
Shared Key
Static
WEP (40 or 128 bit)
LEAP
802.1x, WPA, WPA2
TKIP, AES, WEP (40 or 128 bit)
EAP-FAST
802.1x, WPA, WPA2
TKIP, AES, WEP (40 or 128 bit)
EAP-TLS
802.1x, WPA, WPA2
TKIP, AES, WEP (40 or 128 bit)
PEAP
802.1x, WPA, WPA2
TKIP, AES, WEP (40 or 128 bit)
AKM
802.1x, WPA, WPA2, WPA-PSK, WPA2-PSK
TKIP, AES, WEP (40 or 128 bit)
Open with WEP and Shared Key security modes require that the static WEP settings be entered.
Key Style
Key Size
Characters
ASCII
40
5
ASCII
128
13
HEX
40
10 (0-9, A-F)
HEX
128
26 (0-9, A-F)
•
The AKM security mode is an auto authentication mode that can use either LEAP for 802.1x authentication or
WPA Pre-Shared Key.
•
If using 802.11i (Pre-Shared key), enter the ASCII or hexadecimal formatted key.
Pre-Shared Key requires that a passphrase be entered in ASCII or hexadecimal format.
ASCII = 8-63 characters
HEX = 64 characters (0-9,A-F)
•
AKM mode requires a key management type to be enabled on the Access Point.
For 802.1x authentication methods, WPA, WPA2 or CCKM is required.
For non-802.1x authentication, WPA-PSK or WPA2-PSK is required.
•
If using open authentication plus WEP encryption or shared key authentication, enter the static WEP key
information that matches the access point configuration.
Note:
CCKM will be negotiated if enabled on the Access Point when using 802.1x authentication with LEAP, EAP-FAST,
EAP-TLS, PEAP or AKM modes.
WEP with AKM is only applicable with 802.1x authentication (not WPA-PSK).