38
Required
— Clients authenticate to a RADIUS server via the access point.
Clients are not allowed onto the wired LAN until authentication is
successful. If two Radios are installed and WPA is being used, both radios’
security must be set to “WPA authentication over 802.1x” for the WPA key
management when 802.1x is Required. If one radio’s security is set to
“WPA pre-shared key (PSK)” for WPA key management and the other is
“WPA authentication over 802.1x”, then the 802.1x Wireless Setup must
be set to “Supported” instead.
When 802.1x is enabled, the broadcast and session key rotation intervals can
also be configured. Set these values to force the periodic refresh of broadcast
or session keys for each 802.1x client.
First set up the RADIUS authentication for the client on the RADIUS
authentication server. (See “RADIUS” on page 35.) Select Supported or
Required on the 802.1x Wireless Setup field above. Enter data as described in
the following table.
802.1x Supplicant Setup
802.1x Supplicant provides the access point with the ability to authenticate
itself to an 802.1x-enabled switch port. In an environment where network
access is controlled via 802.1x, the supplicant makes it possible for the access
point to connect to the wired network. The access point assumes the 802.1x
authenticator role (if configured properly) after the supplicant has completed.
The supplicant authentication method supported is EAP-MD5.
Enable
—Select
Enable
to start the supplicant authentication process. The
supplicant retries the authentication process until it has been successfully
authenticated.
Username
—Enter a username to be used for EAP-MD5 authentication.
Password
—Enter a password to be used for EAP-MD5 authentication.
Confirm Password
—Re-enter the password for EAP-MD5 authentication.
Field
Default
Description
Broadcast Key Refresh
Rate
0
(minutes)
Defines how long the RADIUS server will
refresh the primary broadcast key.
Session Key Refresh Rate
0
(minutes)
Defines how long the RADIUS server will
dynamically re-assign a session key to a
connected client station.
802.1x Reauthentication
Refresh Rate
0
(seconds)
Defines the time interval in which the Access
Point forces a Reauthentication and
subsequently re-issues a new session key.