Configuration Using the Wizards of Web Based Management
Operating Instructions SCALANCE W78x
85
Port-related access check over an external RADIUS server (IEEE 802.1x). With
IUS server based on a certificate (EAP-
TLS) or a combination of user name and password (EAP-PEAP or EAP-TTLS /
internal authentication method MSCHAPv2). As an option, the RADIUS server
n identifies itself to the client using a certificate. Following successful
C79000-G8976-C184-07
●
Medium (IEEE 802.1x)
this method, the client logs on at a RAD
the
authentication, the client and RADIUS server generate key material that is
used for data encryption. WEP is used as a weak encryption method.
●
High
(WPA2-PSK)
WPA2-PSK is based on the WPA2 standard, WPA authentication, however,
operates without a RADIUS server. Instead of this, a key (pass phrase) is
stored on every client and access point and this is used for authentication and
further encryption. AES or TKIP is used as the encryption method, AES
represents the standard method.
●
Highest
(WPA2)
WPA2 (Wi-Fi Protected Access 2) is a further development of WPA and
implements the functions of the IEEE 802.11i security standard. WPA2 uses
the additional encryption protocol CCMP that allows fast roaming in mobile ad
hoc networks with its preauthentication. A client can log on in advance and
several access points so that the normal authentication can be omitted.
A RADIUS server is used to authenticate the client with an access point. The
client logs on at a RADIUS server based on a certificate (EAP-TLS) or a
combination of user name and password (EAP-PEAP or EAP-TTLS / internal
authentication method MSCHAPv2). As an option, the RADIUS server then
identifies itself to the client using a certificate. Following successful
authentication, the client and RADIUS server generate key material that is
used for data encryption. AES or TKIP is used as the encryption method, AES
represents the standard method.
●
High
(WPA-Auto-PSK)
Setting with which an access point can process both the
WPA-PSK
as well as
WPA2-PSK
type of authentication. This is necessary when the access point
communicates with different clients, some using
WPA-PSK
and others
WPA2-
PSK
. The same encryption method must be set on the clients.
●
Highest
(WPA-Auto)
Setting with which an access point can process both the
WPA
and
WPA2
type
of authentication. This is necessary when the access point communicates with
different clients, some using
WPA
and others
WPA2
. The same encryption
method must be set on the clients.