Chapter 13 AP Profile
NWA/WAC/WAX Series User’s Guide
169
Enterprise
Select this to enable 802.1X secure authentication with a RADIUS server.
ReAuthentication
Timer
Enter the interval (in seconds) between authentication requests. Enter a 0 for unlimited
time.
Personal
This field is available when you select the
wpa2
,
wpa2-mix
or
wpa3
security mode.
Select this option to use a Pre-Shared Key (PSK) with WPA2 encryption or Simultaneous
Authentication of Equals (SAE) with WPA3 encryption.
Pre-Shared Key
Enter a pre-shared key of between 8 and 63 case-sensitive ASCII characters (including
spaces and symbols) or 64 hexadecimal characters.
Advance
Note: Click on the
Show Advanced Settings
button to show the fields describe below.
Cipher Type
Select an encryption cipher type from the list.
•
auto
- This automatically chooses the best available cipher based on the cipher in
use by the WiFi client that is attempting to make a connection.
•
aes
- This is the Advanced Encryption Standard encryption method. It is a more
recent development over TKIP and considerably more robust. Not all WiFi clients may
support this.
Idle timeout
Enter the idle interval (in seconds) that a client can be idle before authentication is
discontinued.
Group Key Update
Timer
Enter the interval (in seconds) at which the AP updates the group WPA2 encryption key.
Radius Settings
Primary / Secondary
Radius Server Activate
Select this to have the Zyxel Device use the specified RADIUS server.
Radius Server IP
Address
Enter the IP address of the RADIUS server to be used for authentication.
Radius Server Port
Enter the port number of the RADIUS server to be used for authentication.
Radius Server Secret Enter the shared secret password of the RADIUS server to be used for authentication.
Primary / Secondary
Accounting Server
Activate
Select the check box to enable user accounting through an external authentication
server.
Accounting Server
IP Address
Enter the IP address of the external accounting server in dotted decimal notation.
Accounting Server
Port
Enter the port number of the external accounting server. The default port number is 1813.
You need not change this value unless your network administrator instructs you to do so
with additional information.
Accounting Share
Secret
Enter a password (up to 128 alphanumeric characters) as the key to be shared between
the external accounting server and the Zyxel Device. The key must be the same on the
external accounting server and your Zyxel Device. The key is not sent over the network.
Accounting Interim
Update
This field is available only when you enable user accounting through an external
authentication server.
Select this to have the Zyxel Device send subscriber status updates to the accounting
server at the interval you specify.
Interim Update
Interval
Specify the time interval for how often the Zyxel Device is to send a subscriber status
update to the accounting server.
General Server Settings
NAS IP Address
If the RADIUS server requires the Zyxel Device to provide the NAS (Network Access Server)
IP address attribute, enter it here.
Table 66 Configuration > Object > AP Profile > SSID > Security List > Add/Edit Security Profile> Security
Mode: wpa2-mix (continued)
LABEL
DESCRIPTION