![Lantronix PremierWave EN Скачать руководство пользователя страница 37](http://html.mh-extra.com/html/lantronix/premierwave-en/premierwave-en_user-manual_675657037.webp)
5: Network Settings
PremierWave EN User Guide
37
better interoperability. The PremierWave XNPremierWave EN is compliant with both WPA2 and
IEEE802.11i.
Table 5-12 WLAN Profile WPA and WPA2/IEEE802.11i Settings
WLAN Profile WPA
& WPA2 Settings
Description
Suite
Specify the security suite to be used for this profile.
None
= no authentication or encryption method will be used.
WEP
= Wired Equivalent Privacy
WPA
= WiFi Protected Access
WPA2 /IEEE 802.11i
= Robust Secure Network.
Authentication
Select the authentication method to be used.
PSK
= Pre-Shared Key. The same key needs to be configured on both sides of
the connection. (On the PremierWave and on the Access Point.)
IEEE 802.1X
= This authentication method communicates with a RADIUS
authentication server that is part of the network. The RADIUS server will match
the credentials sent by the PremierWave with an internal database.
Key
64 hexadecimal digits (32 bytes.)
IEEE 802.1X
Select the protocol to use to authenticate the WLAN client.
LEAP
= Lightweight Extensible Authentication Protocol. A derivative of the
original
Cisco
LEAP
, which was a predecessor of 802.1X. Real
Cisco
LEAP
uses a special MAC layer authentication (called
Network
EAP
) and cannot work
with
WPA/WPA2
. The PremierWave uses a more generic version to be
compatible with other major brand WiFi equipment. The authentication back end
is the same.
EAP-TLS =
Extensible Authentication Protocol - Transport Layer Security. Uses
the latest incarnation of the
Secure Sockets Layer
(SSL)
standard and is the
most secure because it requires authentication certificates on both the network
side and the PremierWave side.
EAP-TTLS =
Extensible Authentication Protocol - Tunneled Transport Layer
Security.
PEAP
= Protected Extensible Authentication Protocol.
EAP-TTLS
and
PEAP
have been developed to avoid the requirement of
certificates on the client side (PremierWave), which makes deployment more
cumbersome. Both make use of
EAP-TLS
to authenticate the server (network)
side and establish an encrypted tunnel. This is called the outer-authentication.
Then a conventional authentication method (
MD5
,
MSCHAP
, etc.) is used
through the tunnel to authenticate the PremierWave. This is called inner
authentication.
EAP-TTLS
and
PEAP
have been developed by different consortia and vary in
details, of which the most visible is the supported list of inner authentications.
Note:
When using EAP-TLS, EAP-TTLS or PEAP authority, at least one authority
certificate will have to be installed in the SSL configuration that is able to verify the
RADIUS server’s certificate. In case of EAP-TLS, also a certificate and matching
private key need to be configured to authenticate the PremierWave EN to the
RADIUS server. For more information about SSL certificates see
TLS (SSL) on
page 91
.