Appendix D Wireless LANs
VSG1432-B101 Series User’s Guide
374
WPA and WPA2
Wi-Fi Protected Access (WPA) is a subset of the IEEE 802.11i standard. WPA2
(IEEE 802.11i) is a wireless security standard that defines stronger encryption,
authentication and key management than WPA.
Key differences between WPA or WPA2 and WEP are improved data encryption and
user authentication.
If both an AP and the wireless clients support WPA2 and you have an external
RADIUS server, use WPA2 for stronger data encryption. If you don't have an
external RADIUS server, you should use WPA2-PSK (WPA2-Pre-Shared Key) that
only requires a single (identical) password entered into each access point, wireless
gateway and wireless client. As long as the passwords match, a wireless client will
be granted access to a WLAN.
If the AP or the wireless clients do not support WPA2, just use WPA or WPA-PSK
depending on whether you have an external RADIUS server or not.
Select WEP only when the AP and/or wireless clients do not support WPA or WPA2.
WEP is less secure than WPA or WPA2.
Encryption
WPA improves data encryption by using Temporal Key Integrity Protocol (TKIP),
Message Integrity Check (MIC) and IEEE 802.1x. WPA2 also uses TKIP when
required for compatibility reasons, but offers stronger encryption than TKIP with
Advanced Encryption Standard (AES) in the Counter mode with Cipher block
chaining Message authentication code Protocol (CCMP).
TKIP uses 128-bit keys that are dynamically generated and distributed by the
authentication server. AES (Advanced Encryption Standard) is a block cipher that
uses a 256-bit mathematical algorithm called Rijndael. They both include a per-
packet key mixing function, a Message Integrity Check (MIC) named Michael, an
extended initialization vector (IV) with sequencing rules, and a re-keying
mechanism.
WPA and WPA2 regularly change and rotate the encryption keys so that the same
encryption key is never used twice.
The RADIUS server distributes a Pairwise Master Key (PMK) key to the AP that
then sets up a key hierarchy and management system, using the PMK to
dynamically generate unique data encryption keys to encrypt every data packet
that is wirelessly communicated between the AP and the wireless clients. This all
happens in the background automatically.
Содержание VSG1432-B101 - V1.10
Страница 2: ......
Страница 8: ...Safety Warnings VSG1432 B101 Series User s Guide 8 ...
Страница 10: ...Contents Overview VSG1432 B101 Series User s Guide 10 ...
Страница 20: ...Table of Contents VSG1432 B101 Series User s Guide 20 ...
Страница 21: ...21 PART I User s Guide ...
Страница 22: ...22 ...
Страница 40: ...Chapter 2 The Web Configurator VSG1432 B101 Series User s Guide 40 ...
Страница 67: ...67 PART II Technical Reference ...
Страница 68: ...68 ...
Страница 74: ...Chapter 5 Network Map and Status Screens VSG1432 B101 Series User s Guide 74 ...
Страница 146: ...Chapter 8 Home Networking VSG1432 B101 Series User s Guide 146 ...
Страница 150: ...Chapter 9 Static Routing VSG1432 B101 Series User s Guide 150 ...
Страница 174: ...Chapter 11 Policy Forwarding VSG1432 B101 Series User s Guide 174 ...
Страница 192: ...Chapter 12 Network Address Translation NAT VSG1432 B101 Series User s Guide 192 ...
Страница 198: ...Chapter 13 Dynamic DNS Setup VSG1432 B101 Series User s Guide 198 ...
Страница 224: ...Chapter 16 Firewall VSG1432 B101 Series User s Guide 224 ...
Страница 230: ...Chapter 18 Parental Control VSG1432 B101 Series User s Guide 230 ...
Страница 278: ...Chapter 25 Traffic Status VSG1432 B101 Series User s Guide 278 ...
Страница 282: ...Chapter 26 IGMP Status VSG1432 B101 Series User s Guide 282 ...
Страница 290: ...Chapter 28 Remote Management VSG1432 B101 Series User s Guide 290 ...
Страница 294: ...Chapter 29 Time Settings VSG1432 B101 Series User s Guide 294 ...
Страница 298: ...Chapter 30 Logs Setting VSG1432 B101 Series User s Guide 298 ...
Страница 314: ...Chapter 34 Troubleshooting VSG1432 B101 Series User s Guide 314 ...
Страница 344: ...Appendix A Setting up Your Computer s IP Address VSG1432 B101 Series User s Guide 344 ...
Страница 354: ...Appendix B IP Addresses and Subnetting VSG1432 B101 Series User s Guide 354 ...
Страница 364: ...Appendix C Pop up Windows JavaScripts and Java Permissions VSG1432 B101 Series User s Guide 364 ...
Страница 380: ...Appendix D Wireless LANs VSG1432 B101 Series User s Guide 380 ...
Страница 408: ...Index VSG1432 B101 Series User s Guide 408 ...