Network authentication
and the
Data Encryption
now include the CCX security
options:
Open
,
Shared
for 802.11 Authentication and
none, WEP, CKIP
for Data
encryption.
6. Click
Next
.
7. Select
Open
in the Network Authentication options.
8. Select
CKIP
as the Data encryption.
9. Click the
802.1x Enabled
checkbox to enable the 802.1x security option.
10. Select
LEAP
as the 802.1x Authentication Type.
11. Click the
Configure
button to open the LEAP Setting dialog. Enter the user name
and password of the user account created on the authentication server. The user
name and password do not have to be the same as name and password of your
current Windows user login.
12. Click on the "Enable Rogue AP Detection" if the network is setup to account for
rogue APs. This setting should also be made if
only
the "Network-EAP" checkbox
is selected in the AP configuration settings (applies to all Cisco APs).
13. Click
Close
to save the settings.
14. Select the Networks page and click the
Connect
button to connect to the
appropriate CCX enabled AP using the CCX Profile.
CCX Access Point and Client Configurations
The access point provides settings to select different authentication types depending on
the WLAN environment. The client sends an Authentication algorithm field during the
802.11 authentication handshake that takes place between the client and the AP during
connection establishment. The Authentication algorithm values recognized by a CCX
enabled AP is different for the different authentication types. For instance "Network-EAP"
which denotes LEAP has a value of 0x80 while "Open" which is the 802.11 specified
Open authentication and "Required EAP" which requires an EAP handshake exchange
have values of 0x0.
Network-EAP only
AP
: For CCX enabled networks using LEAP authentication only the authentication type is
set with "Network-EAP" checkbox selected, and "Open" and "Required EAP" boxes
unchecked. The AP is then configured to allow LEAP clients ONLY to authenticate and
connect. In this case, the AP expects the 802.11 authentication algorithm to be set to
0x80 (LEAP), and rejects clients that attempt authentication with an Authentication
algorithm value 0x0.