Rajant Corporation
ME BreadCrumb User Guide
- 28 -
3.7.3 ENCRYPTING WIRED TRAFFIC
The BreadCrumb devices’ IMCrypto support includes the ability to encrypt traffic from a wired network provided
that the BreadCrumb device’s Ethernet interface is in either Gateway Mode or Gateway (Ingress) Mode. With
IMCrypto enabled on a BreadCrumb device in one of these modes, encryption of wired traffic entering the
wireless network and decryption of wireless traffic entering a wired network is completely automatic.
3.7.4 ZEROIZING THE ACCESS ID/FACTORY RESET
The BreadCrumb Access ID and other settings can be erased remotely through BCAdmin.
3.7.5 AES-256 ENCRYPTION WITH OPENSSL
Note:
OpenSSLis currently undergoing FIPS 140-2 certification. For its current status, visit the Open Source
Software Institute’s website at http://www.oss-institute.org.
Inter-BreadCrumb-device communication can be encrypted using OpenSSL in order to provide a secure wireless
backbone. Traffic to or from wired devices and networks connected via a BreadCrumb device’s Ethernet port and
wireless devices associated with BreadCrumb devices is automatically encrypted as it passes through the
BreadCrumb network. No client device configuration is necessary, although it is important to note that traffic
between wireless clients and BreadCrumb devices should also be encrypted using WPA, WPA2, or WEP.
SETTING THE KEY
The key is a shared credential used by the BreadCrumb devices to encrypt and authenticate data. All BreadCrumb
devices in a BCWN must share a common key.
To set the key on a BreadCrumb device, the BCAdmin workstation must be connected to the BreadCrumb device
via the BreadCrumb device’s Ethernet port. This is in order to prevent the transmission of the key over an
unsecured wireless connection that the key will help to protect.
Important:
In order to communicate to a BreadCrumb device via the BreadCrumb device’s Ethernet port, the
BreadCrumb device’s Ethernet interface must be placed into Bridge Mode in the BreadCrumb
device’s reachback settings. If a BreadCrumb device does not have an Ethernet port, you cannot set
its key.
If your BCAdmin workstation is connected to a BreadCrumb device via Ethernet, be sure that the
BCAdmin workstation’s radio is disabled in order to guarantee that the Ethernet connection is in fact
being used.
To set the key on a BreadCrumb device, open the General tab of its Properties window and click the button
‘Change Access ID/Key’ .You will be presented with a window resembling the following:
Содержание ME BreadCrumb
Страница 31: ......
Страница 43: ...ME BreadCrumb User Guide Rajant Corporation Figure 21 BCAdmin Installation Screen 1 43...