![ZyXEL Communications P-660H Series User Manual Download Page 412](http://html.mh-extra.com/html/zyxel-communications/p-660h-series/p-660h-series_user-manual_944030412.webp)
P-660H/HW-T Series User’ Guide
411
Appendix K
EAP-TLS (Transport Layer Security)
With EAP-TLS, digital certifications are needed by both the server and the wireless stations
for mutual authentication. The server presents a certificate to the client. After validating the
identity of the server, the client sends a different certificate to the server. The exchange of
certificates is done in the open before a secured tunnel is created. This makes user identity
vulnerable to passive attacks. A digital certificate is an electronic ID card that authenticates the
sender’s identity. However, to implement EAP-TLS, you need a Certificate Authority (CA) to
handle certificates, which imposes a management overhead.
EAP-TTLS (Tunneled Transport Layer Service)
EAP-TTLS is an extension of the EAP-TLS authentication that uses certificates for only the
server-side authentications to establish a secure connection. Client authentication is then done
by sending username and password through the secure connection, thus client identity is
protected. For client authentication, EAP-TTLS supports EAP methods and legacy
authentication methods such as PAP, CHAP, MS-CHAP and MS-CHAP v2.
PEAP (Protected EAP)
Like EAP-TTLS, server-side certificate authentication is used to establish a secure connection,
then use simple username and password methods through the secured connection to
authenticate the clients, thus hiding client identity. However, PEAP only supports EAP
methods, such as EAP-MD5, EAP-MSCHAPv2 and EAP-GTC (EAP-Generic Token Card),
for client authentication. EAP-GTC is implemented only by Cisco.
LEAP
LEAP (Lightweight Extensible Authentication Protocol) is a Cisco implementation of IEEE
802.1x.
Dynamic WEP Key Exchange
The AP maps a unique key that is generated with the RADIUS server. This key expires when
the wireless connection times out, disconnects or reauthentication times out. A new WEP key
is generated each time reauthentication is performed.
If this feature is enabled, it is not necessary to configure a default encryption key in the
Wireless screen. You may still configure and store keys here, but they will not be used while
Dynamic WEP is enabled.
Note:
EAP-MD5 cannot be used with Dynamic WEP Key Exchange
Summary of Contents for P-660H Series
Page 2: ......
Page 10: ...P 660H HW T Series User Guide 9 Customer Support ...
Page 32: ...P 660H HW T Series User Guide 31 List of Figures ...
Page 38: ...P 660H HW T Series User Guide 37 List of Tables ...
Page 42: ...P 660H HW T Series User Guide 41 Introduction to DSL ...
Page 62: ...P 660H HW T Series User Guide 61 Chapter 3 Wizard Setup for Internet Access ...
Page 90: ...P 660H HW T Series User Guide 89 Chapter 5 Wireless LAN ...
Page 132: ...P 660H HW T Series User Guide 131 Chapter 10 Firewalls ...
Page 162: ...P 660H HW T Series User Guide 161 Chapter 13 Remote Management Configuration ...
Page 176: ...P 660H HW T Series User Guide 175 Chapter 14 Universal Plug and Play UPnP ...
Page 182: ...P 660H HW T Series User Guide 181 Chapter 15 Logs Screens ...
Page 196: ...P 660H HW T Series User Guide 195 Chapter 16 Media Bandwidth Management Advanced Setup ...
Page 208: ...P 660H HW T Series User Guide 207 Chapter 17 Maintenance ...
Page 218: ...P 660H HW T Series User Guide 217 Chapter 19 Menu 1 General Setup ...
Page 222: ...P 660H HW T Series User Guide 221 Chapter 20 Menu 2 WAN Backup Setup ...
Page 226: ...P 660H HW T Series User Guide 225 Chapter 21 Menu 3 LAN Setup ...
Page 230: ...P 660H HW T Series User Guide 229 Chapter 22 Wireless LAN Setup ...
Page 236: ...P 660H HW T Series User Guide 235 Chapter 23 Internet Access ...
Page 250: ...P 660H HW T Series User Guide 249 Chapter 25 Static Route Setup ...
Page 254: ...P 660H HW T Series User Guide 253 Chapter 26 Bridging Setup ...
Page 270: ...P 660H HW T Series User Guide 269 Chapter 27 Network Address Translation NAT ...
Page 286: ...P 660H HW T Series User Guide 285 Chapter 29 Filter Configuration ...
Page 306: ...P 660H HW T Series User Guide 305 Chapter 32 System Information and Diagnosis ...
Page 318: ...P 660H HW T Series User Guide 317 Chapter 33 Firmware and Configuration File Maintenance ...
Page 324: ...P 660H HW T Series User Guide 323 Chapter 34 System Maintenance ...
Page 328: ...P 660H HW T Series User Guide 327 Chapter 35 Remote Management ...
Page 338: ...P 660H HW T Series User Guide 337 Chapter 36 IP Policy Routing ...
Page 342: ...P 660H HW T Series User Guide 341 Chapter 37 Call Scheduling ...
Page 358: ...P 660H HW T Series User Guide 357 Appendix A ...
Page 360: ...P 660H HW T Series User Guide 359 Appendix B ...
Page 384: ...P 660H HW T Series User Guide 383 Appendix D ...
Page 388: ...P 660H HW T Series User Guide 387 Appendix F ...
Page 394: ...P 660H HW T Series User Guide 393 Appendix G ...
Page 398: ...P 660H HW T Series User Guide 397 Appendix H ...
Page 401: ...P 660H HW T Series User Guide Appendix I 400 ...
Page 402: ...P 660H HW T Series User Guide 401 Appendix I ...
Page 456: ...P 660H HW T Series User Guide 455 Appendix M ...