
AirMagnet Laptop Wireless LAN Policy Reference Guide
Chapter 5: Authentication and Encryption
117
Figure 5-7: 802.1x framework provides centralized user authentication
and encryption key management
The IEEE 802.11i standard provide a pre-shared key (
PSK
)
mechanism and the 802.1x-server based key management schemes.
The server based mechanism requires an authentication server such
as a
RADIUS
server to securely and dynamically distribute session
keys (Pairwise Master Key or
PMK
). When
PSK
is used instead of
802.1x, the passphrase
PSK
is converted via a formula into a 256-bit
value needed for the Pairwise Master Key. In the
PSK
mode, the
802.11i defined 4-way handshake is used for encryption key
management, with no
EAP
exchange. As there is no
RADIUS
server
and no EAP methods (EAP-TLS, LEAP) involved, the
PSK
mode is
less secure.
Laptop Wireless LAN Policy Reference Guide.book Page 117 Thursday, January 25, 2007 5:36 PM
Содержание PRG-Laptop 7.0
Страница 1: ...AirMagnet Laptop Wireless LAN Policy Reference Guide...
Страница 8: ...vi Table of Contents AirMagnet Laptop Wireless LAN Policy Reference Guide...
Страница 30: ...22 Chapter 1 Configuration Vulnerabilities AirMagnet Laptop Wireless LAN Policy Reference Guide...
Страница 64: ...56 Chapter 2 IDS Denial of Service Attack AirMagnet Laptop Wireless LAN Policy Reference Guide...
Страница 136: ...128 Chapter 5 Authentication and Encryption AirMagnet Laptop Wireless LAN Policy Reference Guide...
Страница 138: ...130 Part Two Performance Intrusion AirMagnet Laptop Wireless LAN Policy Reference Guide...
Страница 144: ...136 Chapter 6 Channel or Device Overload AirMagnet Laptop Wireless LAN Policy Reference Guide...
Страница 192: ...184 Chapter 9 Problematic Traffic Pattern AirMagnet Laptop Wireless LAN Policy Reference Guide...
Страница 210: ...196 Chapter 10 RF Management AirMagnet Laptop Wireless LAN Policy Reference Guide...