Task 12: Configuring a RADIUS
server
Chapter 2: Configuration and alignment
2-126
pmp-0050 (May 2012)
SM - Phase 2 (Inside Identity) parameters and settings
If using
eapttls
for Phase 1 authentication, select the desired
Phase 2
(Inside Identity) authentication
protocol from the
Phase 2
options of
PAP
(Password Authentication Protocol),
CHAP
(Challenge Handshake
Authentication Protocol), and
MSCHAPv2 (
Microsoft‘s version of CHAP). The protocol must be consistent
with the authentication protocol configured on the RADIUS server. Enter a
Username
for the SM. This
must match the username configured for the SM on the RADIUS server. The default
Username
is the SM‘s
MAC address. The
Username
can be up to 128 non-special (no diacritical markings) alphanumeric characters.
Enter the desired password for the SM in the
Password
and
Confirm Password
fields.
.
The
Password
must
match the password configured for the SM on the RADIUS server. The default
Password
is ―password‖. The
Password
can be up to 128 non-special (no diacritical markings) alphanumeric characters.
Handling Certificates
Managing SM Certificates via the SM GUI
The default public Canopy certificates are loaded into SMs upon factory software installation. The default
certificates are not secure and are intended for use during lab and field trials as part of gaining experience
with the RADIUS functionalities or as an option during debug. For secure operation, an operator will want
to create or procure their own certificates.
Up to 2 certificates can be resident on an SM. An installed certificate can be deleted by clicking the
Delete
button in the certificate‘s description block on the Configuration > Security tab. To restore fhe 2 default
certificates, click the
Use Default Certificates
button in the
RADIUS Certificate Settings
parameter block and
reboot the radio.
To upload a certificate manually to an SM, first load it in a known place on your PC or network drive, then
click on a
Delete
button on one of the Certificate description blocks to delete a certificate to provide space for
your certificate. Click on
Choose File,
browse to the location of the certificate, and click the
Import Certificate
button, and then reboot the radio to use the new certificate.
When a certificate is in use, after the SM successfully registers to an AP, an indication of
In Use
will appear
in the description block of the certificate being used.
The public certificates installed on the SMs are used with the private certificate on the RADIUS server to
provide a public/private key encryption system.
Содержание PMP 450
Страница 1: ...Cambium PMP 450 Configuration and User Guide System Release 12 0...
Страница 6: ......
Страница 22: ......
Страница 172: ......
Страница 173: ...PMP 450 Configuration and User Guide pmp 0050 May 2012 3 1 Chapter 3 Reference information...
Страница 178: ......