Configuration / project engineering
5.6 Configuration with Web Based Management
SCALANCE W786-xPRO
Operating Instructions, Release 08/2007, C79000-G8976-C221-02
125
may be necessary because some RADIUS servers do not evaluate the response of the client
completely or correctly.
The following options are available:
●
EAP TLS - Extensible Authentication Protocol - Transport Layer Security. Uses
certificates for authentication
●
EAP TTLS - Extensible Authentication Protocol - Tunnel Transport Layer Security. After
setting up the TLS tunnel, MS-CHAPv2 is used for internal authentication.
●
PEAP - Protected Extensible Authentication Protocol. Alternative draft protocol of IETF
for EAP-TTLS
Additional Entries for WPA-PSK and WPA2-PSK
To use the WPA-PSK scheme, you must enter a string in the Pass Phrase box that is used
by the SCALANCE W74x to initialize dynamic key generation.
Suppress SSID broadcasting (only in access point mode)
With the Suppress SSID broadcasting setting, the SCALANCE W78x is only ever accessible
to clients that know its SSID. This method can be used to protect the SCALANCE W78x from
unauthorized access.
Note
Since no encryption is used for the SSID transfer, this function can only provide basic
protection against unauthorized access. The use of an authentication method (for example
WPA (RADIUS) or WPA-PSK if this is not possible) provides higher security.
You must also expect that certain end devices may have problems with access to a hidden
SSID.
Inter SSID communication check box (only in access point mode)
Selecting this check box allows communication between WLAN clients registered at different
SSIDs of an access point.
Example 1:
A SCALANCE W78x-2xx or W786-3PRO was defined with different SSIDs.
Example 2:
A SCALANCE W78x-1xx is used with multiple SSIDs.
Note
On a SCALANCE W78x-2xx or W786-3PRO, the Inter SSID communication function must
be enabled on all WLAN interfaces or on all VAPs to allow communication between the
clients with different SSIDs.