139
Copyright © 2004-2005, Vivato, Inc.
2. Configure these settings on the Authentication tab.
3. Click
Properties
to bring up the Smart Card or other Certificate Properties dialog and enable the "Val-
idate server certificate" option.
Click
OK
on all dialogs to close and save your changes.
4. To complete the client configuration you must now obtain a certificate from the RADIUS server and
install it on this client. For information on how to do this see “Obtaining a TLS-EAP Certificate for a Cli-
ent” on page 145.
Logging on to the Wireless Network with a WPA Client Using a Certificate
WPA clients should now be able to connect to the AP/Bridge using their TLS certificates. The certificate
you installed is used when you connect, so you will not be prompted for login information. The certificate is
automatically sent to the RADIUS server for authentication and authorization.
Data Encryption
TKIP or AES depending on how this option is configured on
the AP/Bridge.
Note:
When the Cipher Suite on the AP/Bridge is set to
"Both", then TKIP clients with a valid TKIP key and AES cli-
ents with a valid CCMP (AES) key can associate with the
AP/Bridge. For more information, see Users Guide and
Online Help on the AP/Bridge.
Authentication Tab
Enable IEEE 802.1x
authentication for this
network
Enable (click to check) this option.
EAP Type
Choose Smart Card or other Certificate.
Smart Card or
other Certificate
Properties Dialog
Validate Server
Certificate
Enable this option (click to check the box).
Certificates
In the certificate list shown, select the certificate for this cli-
ent.