background image

IEEE802.11b/g Wireless LAN USB 2.0 Client Adapter   

Version 1.1 

 

 23 

 

3.5.4 802.1x with PEAP 

 

802.1X provides an authentication framework for wireless LANs allowing a user 
to be authenticated by a central authority. 802.1X uses an existing protocol called 
EAP. EAP (Extensible Authentication Protocol) is an extension to the PPP 
protocol that enables a variety of authentication protocols to be used. It passes 
through the exchange of authentication messages, allowing the authentication 
software stored in a server to interact with its counterpart in the client. 
 

4Gon   www.4Gon.co.uk   [email protected]   Tel: +44 (0)1245 808295   Fax: +44 (0)1245 808299 

Summary of Contents for EUB-3701 EXT

Page 1: ...IEEE802 11b g Wireless LAN USB 2 0 Client Adapter User s Manual Version 1 1 4Gon www 4Gon co uk info 4gon co uk Tel 44 0 1245 808295 Fax 44 0 1245 808299 ...

Page 2: ...S 16 3 3 1 INFRASTRUCTURE MODE 16 3 3 2 AD HOC MODE 18 3 4 AUTHENTICATION AND SECURITY 19 3 5 WEP ENCRYPTION 19 3 5 1 WPA WPA2 Authentication TKIP AES Encryption 20 3 5 2 WPA PSK Authentication TKIP AES Encryption 21 3 5 3 LEAP Authentication 22 3 5 4 802 1x with PEAP 23 3 5 4 1 PEAP Authentication with EAP TLS Smartcard 24 3 5 4 2 PEAP Authentication with MS CHAP 25 3 5 5 802 1x with TTLS with EA...

Page 3: ... LAN USB 2 0 Client Adapter Version 1 1 3 Revision History Version Date Notes 1 0 October 20 2005 Initial Version 1 1 November 03 2005 UI updated 4Gon www 4Gon co uk info 4gon co uk Tel 44 0 1245 808295 Fax 44 0 1245 808299 ...

Page 4: ...ctivity available This chapter describes the features benefits package contents applications and network configuration 1 1 Features Benefits Features Benefits High speed data rate up to 54 Mbps Capable of handling heavy data payloads such as MPEG video streaming IEEE 802 11 b g compliant Fully interoperable with IEEE 802 11b g compliant products WPA WPA2 IEEE 802 11i WEP 64 128 Support Powerful da...

Page 5: ...wireless LANs a Difficult to wire environments There are many situations where wires cannot be laid easily Historic buildings older buildings open areas and across busy streets make the installation of LANs either impossible or very expensive b Temporary workgroups Consider situations in parks athletic arenas exhibition centers disaster recovery temporary offices and construction sites where one w...

Page 6: ... 6 Network Configuration To better understand how the wireless LAN products work together to create a wireless network it might be helpful to depict a few of the possible wireless LAN PC card network configurations The wireless LAN products can be configured as a Ad hoc or peer to peer for departmental or SOHO LANs b Infrastructure for enterprise LANs a Ad hoc peer to peer Mode This is the simples...

Page 7: ...puters has to be via the AP It doesn t matter if the AP is stand alone or wired to an Ethernet network If used in stand alone the AP can extend the range of independent wireless LANs by acting as a repeater which effectively doubles the distance between wireless stations The image below depicts a network in infrastructure mode 4Gon www 4Gon co uk info 4gon co uk Tel 44 0 1245 808295 Fax 44 0 1245 ...

Page 8: ... On many systems instead of a CD the necessary installation files are archived on the hard disk in C WINDOWS OPTIONS CABS directory 2 2 Installing the Drivers Follow the steps below in order to install the USB adapter drivers 1 Insert the CD ROM that was provided to you in this package The setup should run automatically If the setup does not run automatically then you must manually select the setu...

Page 9: ... 0 Client Adapter Version 1 1 9 3 Please wait a few minutes while the files are copied to your computer 4 Carefully insert the USB adapter into the USB port 4Gon www 4Gon co uk info 4gon co uk Tel 44 0 1245 808295 Fax 44 0 1245 808299 ...

Page 10: ...re using Windows XP you will see a message regarding Windows Logo Testing click on the Continue Anyway button to continue 6 The Driver Utility installation is now complete click on the Finish button 4Gon www 4Gon co uk info 4gon co uk Tel 44 0 1245 808295 Fax 44 0 1245 808299 ...

Page 11: ...in the Control Panel Follow the steps below in order to disable Windows zero config 1 Click on Start Control Panel 2 Double click on the Network Connections icon 3 Right click on the wireless network connection for the USB adapter and then select Properties After you click on Properties the Wireless Network Connection Properties window will appear as the image depicts below 4Gon www 4Gon co uk inf...

Page 12: ... Wireless Networks tab you will then see the following screen 5 Make sure that there isn t any check placed in the Use Windows to configure my wireless network settings check box 6 Click on the OK button 4Gon www 4Gon co uk info 4gon co uk Tel 44 0 1245 808295 Fax 44 0 1245 808299 ...

Page 13: ...lick on Launch Config Utilities 3 1 Link Status The Link Status tab displays the current status of the wireless radio The following information is included in this tab as the image depicts below h Status This indicates the state of the client There are three options o Associated Indicates that the wireless client is connected to an Access Point AP The BSSID is shown in the form of 12 HEX Client Ut...

Page 14: ... Throughput bytes sec Displays the Tx transmit and Rx receive kilo bytes per second h Link Quality In infrastructure mode this bar displays the transmission quality between an AP and a client In Ad hoc mode this bar displays the transmission quality between one client and another h Signal Strength This bar displays the strength of the signal received from an AP or client h Noise Level Displays the...

Page 15: ...the Access Point h Channel Displays the channel number of the Access Point h Encryption Displays the encryption on the Access Point this includes WEP TKIP AES or None h Authentication displays the authentication on the Access Point this includes WPA WPA PSK WPA2 or Unknown h Network Type Indicates whether the SSID is a Station Ad hoc or Access Point Infrastructure h Rescan Click on this button to ...

Page 16: ...figured as Infrastructure or Ad hoc mode The configuration settings for each mode are described below 3 3 1 Infrastructure Mode The infrastructure mode requires the use of an Access Point AP In this mode all wireless communication between two computers has to be via the AP It doesn t matter if the AP is stand alone or wired to an Ethernet network If used in stand alone the AP can extend the range ...

Page 17: ... its battery power This option minimizes the battery usage while the network is idle h Network Type Select Infrastructure from the drop down list h TX Power Select a transmit power from the drop down list If your notebook is connected to external power then select 100 or auto if not select one of the lower values for power saving h RTS Threshold Place a check in this box if you would like to enabl...

Page 18: ...r all points in the network and is case sensitive h Network Type Select Ad hoc from the drop down list h TX Power Select a transmit power from the drop down list If your notebook is connected to external power then select 100 or auto if not select one of the lower values for power saving h Preamble Select Auto from the drop down list unless you are aware of the preamble type long or short used in ...

Page 19: ...WEP Encryption The WEP tab displays the WEP settings Encryption is designed to make the data transmission more secure You may select 64 or 128 bit WEP Wired Equivalent Privacy key to encrypt data Default setting is Disable WEP encrypts each frame transmitted from the radio using one of the Keys from a panel When you use WEP to communicate with the other wireless clients all the wireless devices in...

Page 20: ... to work with existing Wi Fi products that have been enabled with WEP WPA provides improved data encryption through the Temporal Integrity Protocol TKIP which scrambles the keys using a hashing algorithm and by adding an integrity checking feature which makes sure that keys haven t been tampered with EAP Extensible Authentication Protocol is an extension to the PPP protocol that enables a variety ...

Page 21: ... TKIP encryption EAP Extensible Authentication Protocol is an extension to the PPP protocol that enables a variety of authentication protocols to be used It passes through the exchange of authentication messages allowing the authentication software stored in a server to interact with its counterpart in the client h Authentication Type Select WPA or WPA2 from the drop down list h Encryption Select ...

Page 22: ...than keys used by others sessions Dynamic key delivery eliminates one big vulnerability static encryption keys that are shared by all stations in the WLAN EAP Extensible Authentication Protocol is an extension to the PPP protocol that enables a variety of authentication protocols to be used It passes through the exchange of authentication messages allowing the authentication software stored in a s...

Page 23: ...1X uses an existing protocol called EAP EAP Extensible Authentication Protocol is an extension to the PPP protocol that enables a variety of authentication protocols to be used It passes through the exchange of authentication messages allowing the authentication software stored in a server to interact with its counterpart in the client 4Gon www 4Gon co uk info 4gon co uk Tel 44 0 1245 808295 Fax 4...

Page 24: ...quent communications between the WLAN client and the access point h Authentication Type Select PEAP from the drop down list h Protocol If your network uses TLS or Smart Card to authenticate its users select TLS Smartcard from the drop down list TLS Transport Layer Security is an IETF standardized authentication protocol that uses PKI Public Key Infrastructure certificate based authentication of bo...

Page 25: ...anges 3 5 5 802 1x with TTLS with EAP MD5 MS CHAP MS CHAPv2 802 1X provides an authentication framework for wireless LANs allowing a user to be authenticated by a central authority 802 1X uses an existing protocol called EAP EAP Extensible Authentication Protocol is an extension to the PPP protocol that enables a variety of authentication protocols to be used It passes through the exchange of auth...

Page 26: ...ick on the Apply button to save the changes 3 5 6 802 1x CA Server Depending on the EAP in use only the server or both the server and client may be authenticated and require a certificate Server certificates identify a server usually an authentication or RADIUS server to clients Most EAPs require a certificate issued by a root authority or a trusted commercial Certificate Authority 4Gon www 4Gon c...

Page 27: ...usted certificate authorities If this parameter is true then the client will also accept a signature from a trusted intermediate certificate authority otherwise it will not h Server name Enter the server name if not selected from the existing drop down list above 3 6 Statistics The Statistics tab displays transmit and receive packet statistics in real time Information included is frames transmitte...

Page 28: ...e the wireless mode 802 11b only 802 11g only or 802 11b g mixed B G protection and country channel setting h Wireless mode Select 802 11 b g mix if the wireless network uses both 11b and 11g stations and APs Select 802 11 b only or 802 11 g only if a 4Gon www 4Gon co uk info 4gon co uk Tel 44 0 1245 808295 Fax 44 0 1245 808299 ...

Page 29: ...tion h Turn off RF Click on this button to disable the wireless radio h CCX 2 0 Enable this option if the network supports Cisco Compatible Extensions h Country Region Code Select the country code and channel based on the following table Code Class Frequency Range 0 FCC CH 1 CH 11 1 IC CANADA CH 1 CH 11 2 ETSI CH 1 CH 13 3 SPAIN CH 1 CH 11 4 FRANCE CH 1 CH 13 5 MKK CH 1 CH 14 6 MKKI TELEC CH 1 CH ...

Page 30: ...stallation procedure again Follow the steps below in order to uninstall the client utility 1 Click on Start Control Panel Add Remove Programs 2 You will then see the following window select 802 11b g USB Adaptor and then click on the Remove button 3 The Setup window will then appear click on the Remove all button 4 The uninstall process is complete remove the USB client adapter and then click on t...

Page 31: ...fferent country regulations Media Access Protocol Carrier Sense Multiple Access with Collision Avoidance CSMA CA Modulation Technology 802 11g OFDM 64 QAM 16 QAM QPSK BPSK 802 11b DSSS DBPSK DQPSK CCK Operating Channels 11 for North America 14 for Japan 13 for Europe 2 for Spain 4 for France Antenna Printed Antenna Networking Topology Ad Hoc Infrastructure Security WPA WPA2 AES 64 128 WEP with sha...

Page 32: ...te the receiving antenna z Increase the separation between the equipment and receiver z Connect the equipment into an outlet on a circuit different from that to which the receiver is connected z Consult the dealer or an experienced radio TV technician for help FCC Caution Any changes or modifications not expressly approved by the party responsible for compliance could void the user s authority to ...

Reviews: