3-24
CB3000 Client Bridge User’s Guide
Validate Server
Certificate
Check to force the CB3000 to validate the Server Certificate.
Inner Authentication
Method
Select the authentication method used inside the tunnel. Select from:
•
CHAP
–
Challenge-Handshake Authentication Protocol
(CHAP) provides
security by the Challenge-Response method of authentication.
•
MS CHAP
-
Microsoft CHAP
(MS CHAP) is Microsoft’s version of the
CHAP protocol.
•
MS CHAP v2
– An enhanced version of MS CHAP that plugs some
security loopholes of MS CHAP
•
PAP
–
Password Authentication Protocol
(PAP) is a basic authentication
protocol that transmits unencrypted ASCII passwords over the network.
•
MD5
–
Message Digest algorithm 5
(MD5) is a cryptographic hash
algorithm that uses a 128-bit hash value.
•
GTC
– Generic Token Card (GTC) is a protocol that enables the exchange
of clear-text authentication credentials across a network. This protocol
uses one-time password and therefore is not vulnerable to replay attacks.
EAP-GTC is generally used inside a tunnel created by TTLS or PEAP to
provide server authentication.
WPA2 Algorithm
Select the WPA2 algorithm to use:
•
TKIP
– Defines a ‘
wrapper
’ that goes around an existing WEP encryption
algorithm. TKIP comprises the same encryption engine and RC4 algorithm
defined for WEP. However, the key used for encryption in TKIP is 128 bits
long.
TKIP changes the key used for each packet. The key is created by mixing
together a combination of things, including a base key (called a Pairwise
Transient Key), the MAC address of the transmitting station, and the serial
number for the packet.
•
CCMP (AES)
–
Utilizes an
Advanced Encryption Standard
(AES) 128-bit
key algorithm with a 48-bit initialization vector (IV) for replay detection.
The
Counter Mode
(CM) component of CCMP is the algorithm providing
data privacy. The
Cipher Block Chaining Message Authentication Code
(CBC-MAC)
component of CCMP provides data integrity and
authentication.
•
Both
– Select this option to enable CB3000 to support devices that use
both TKIP and CCMP algorithms. Use this option when the number of
devices is large.
WPA2 User ID
The User ID for authentication.
WPA2 Password
The WPA2 user password.
Clean User ID and
Password
Check to prevent the CB3000 from saving the WPA user name and its
password in its cache.
Summary of Contents for CB3000 - Client Bridge - Wireless Access Point
Page 1: ...M CB3000 Client Bridge User s Guide ...
Page 24: ...2 12 CB3000 Client Bridge User s Guide ...
Page 65: ...Management Options 4 7 Figure 4 4 View Log Screen ...
Page 74: ...4 16 CB3000 Client Bridge User s Guide ...
Page 90: ...5 16 CB3000 Client Bridge User s Guide ...
Page 94: ...B 2 CB3000 Client Bridge User s Guide ...
Page 96: ...C 2 CB3000 Client Bridge User s Guide ...
Page 104: ...D 8 CB3000 Client Bridge User s Guide ...
Page 105: ......