McAfee UTM Firewall 4.0.4 Administration Guide
83
Network Setup menu options
Wireless
Typically, the appliance’s wireless interface is configured in one of two ways; with strong wireless security
(WPA) to bridge wireless clients directly onto your LAN, or with weak wireless security as a Guest
connection. The latter requires wireless clients to establish a VPN tunnel on top of the wireless connection
to access the LAN, DMZ, and Internet to compensate for the security vulnerabilities WEP poses.
In addition to connection configuration, you can also configure wireless access point, access control list
(ACL), and advanced settings.
Tip:
You can also opt to select the Access Point option from the Change Type list, which automatically creates
a bridge to the LAN. See
Bridging wireless and LAN connections
.
Wireless security methods
The following wireless security methods are supported:
• None — Any client is allowed to connect, and there is no data encryption.
• WEP (Wired Equivalent Privacy) — Allows for 64- or 128-bit encryption.
• WEP with 802.1X — Extends WEP to use the IEEE 802.1X protocol to authenticate the user and
dynamically assign a 128-bit encryption key via a RADIUS server. This is a significant improvement to the
security of WEP. The RADIUS server must be defined on the RADIUS page. For information, refer to
RADIUS page
.
• WPA-PSK (Wi-Fi Protected Access Preshared Key, also known as WPA-Personal) — An
authentication and encryption protocol that fixes the security flaws in WEP. This security method is
recommended if you do not have a RADIUS server. If you elect to use the AES encryption protocol with
WPA-PSK, then this method is also known as WPA2 or 802.11i.
Security Alert:
If you use WEP or no wireless security method at all, McAfee recommends you configure the
wireless interface as a Guest connection, disable bridging between clients, and only allow VPN traffic over the
wireless connection.
This section contains the following procedures:
•
Configuring a wireless connection
•
Bridging wireless and LAN connections
•
Configuring Wireless MAC-based ACL
•
Configuring WDS
•
Configuring advanced wireless features
Configuring a wireless connection
Use this procedure to configure a wireless connection.
Security Alert:
McAfee recommends configuring the wireless interface as a LAN connection only if wireless clients
are using WPA-based encryption/authentication. For more information, see WPA-PSK and WPA-Enterprise in
Wireless security methods
.
1
From the Network Setup menu, click Network Setup. The Connections page appears.
2
Select Direct Connection from the Change Type list of the wireless network interface. The Direct
Connections Settings page appears (
Figure 82
).
Содержание SG310
Страница 1: ...McAfee UTM Firewall Administration Guide version 4 0 4...
Страница 10: ...10 McAfee UTM Firewall 4 0 4 Administration Guide...
Страница 127: ...McAfee UTM Firewall 4 0 4 Administration Guide 127 Network Setup menu options DHCP Server Figure 130 DHCP Addresses page...
Страница 148: ...148 McAfee UTM Firewall 4 0 4 Administration Guide Network Setup menu options SIP...
Страница 238: ...238 McAfee UTM Firewall 4 0 4 Administration Guide Firewall menu options Antispam TrustedSource...
Страница 372: ...372 McAfee UTM Firewall 4 0 4 Administration Guide System menu features Advanced menu...
Страница 410: ...410 McAfee UTM Firewall 4 0 4 Administration Guide Index...
Страница 411: ......
Страница 412: ...700 2237A00...