Appendix D Wireless LANs
VSG1435-B101 Series User’s Guide
378
WPA and WPA2
Wi-Fi Protected Access (WPA) is a subset of the IEEE 802.11i standard. WPA2
(IEEE 802.11i) is a wireless security standard that defines stronger encryption,
authentication and key management than WPA.
Key differences between WPA or WPA2 and WEP are improved data encryption and
user authentication.
If both an AP and the wireless clients support WPA2 and you have an external
RADIUS server, use WPA2 for stronger data encryption. If you don't have an
external RADIUS server, you should use WPA2-PSK (WPA2-Pre-Shared Key) that
only requires a single (identical) password entered into each access point, wireless
gateway and wireless client. As long as the passwords match, a wireless client will
be granted access to a WLAN.
If the AP or the wireless clients do not support WPA2, just use WPA or WPA-PSK
depending on whether you have an external RADIUS server or not.
Select WEP only when the AP and/or wireless clients do not support WPA or WPA2.
WEP is less secure than WPA or WPA2.
Encryption
WPA improves data encryption by using Temporal Key Integrity Protocol (TKIP),
Message Integrity Check (MIC) and IEEE 802.1x. WPA2 also uses TKIP when
required for compatibility reasons, but offers stronger encryption than TKIP with
Advanced Encryption Standard (AES) in the Counter mode with Cipher block
chaining Message authentication code Protocol (CCMP).
TKIP uses 128-bit keys that are dynamically generated and distributed by the
authentication server. AES (Advanced Encryption Standard) is a block cipher that
uses a 256-bit mathematical algorithm called Rijndael. They both include a per-
packet key mixing function, a Message Integrity Check (MIC) named Michael, an
extended initialization vector (IV) with sequencing rules, and a re-keying
mechanism.
WPA and WPA2 regularly change and rotate the encryption keys so that the same
encryption key is never used twice.
The RADIUS server distributes a Pairwise Master Key (PMK) key to the AP that
then sets up a key hierarchy and management system, using the PMK to
dynamically generate unique data encryption keys to encrypt every data packet
that is wirelessly communicated between the AP and the wireless clients. This all
happens in the background automatically.
Содержание VSG1435-B101 - V1.10
Страница 2: ......
Страница 8: ...Safety Warnings VSG1435 B101 Series User s Guide 8 ...
Страница 10: ...Contents Overview VSG1435 B101 Series User s Guide 10 ...
Страница 20: ...Table of Contents VSG1435 B101 Series User s Guide 20 ...
Страница 21: ...21 PART I User s Guide ...
Страница 22: ...22 ...
Страница 42: ...Chapter 2 The Web Configurator VSG1435 B101 Series User s Guide 42 ...
Страница 71: ...71 PART II Technical Reference ...
Страница 72: ...72 ...
Страница 78: ...Chapter 5 Network Map and Status Screens VSG1435 B101 Series User s Guide 78 ...
Страница 150: ...Chapter 8 Home Networking VSG1435 B101 Series User s Guide 150 ...
Страница 154: ...Chapter 9 Static Routing VSG1435 B101 Series User s Guide 154 ...
Страница 178: ...Chapter 11 Policy Forwarding VSG1435 B101 Series User s Guide 178 ...
Страница 196: ...Chapter 12 Network Address Translation NAT VSG1435 B101 Series User s Guide 196 ...
Страница 202: ...Chapter 13 Dynamic DNS Setup VSG1435 B101 Series User s Guide 202 ...
Страница 228: ...Chapter 16 Firewall VSG1435 B101 Series User s Guide 228 ...
Страница 234: ...Chapter 18 Parental Control VSG1435 B101 Series User s Guide 234 ...
Страница 282: ...Chapter 25 Traffic Status VSG1435 B101 Series User s Guide 282 ...
Страница 286: ...Chapter 26 IGMP Status VSG1435 B101 Series User s Guide 286 ...
Страница 294: ...Chapter 28 Remote Management VSG1435 B101 Series User s Guide 294 ...
Страница 298: ...Chapter 29 Time Settings VSG1435 B101 Series User s Guide 298 ...
Страница 302: ...Chapter 30 Logs Setting VSG1435 B101 Series User s Guide 302 ...
Страница 318: ...Chapter 34 Troubleshooting VSG1435 B101 Series User s Guide 318 ...
Страница 348: ...Appendix A Setting up Your Computer s IP Address VSG1435 B101 Series User s Guide 348 ...
Страница 358: ...Appendix B IP Addresses and Subnetting VSG1435 B101 Series User s Guide 358 ...
Страница 368: ...Appendix C Pop up Windows JavaScripts and Java Permissions VSG1435 B101 Series User s Guide 368 ...
Страница 384: ...Appendix D Wireless LANs VSG1435 B101 Series User s Guide 384 ...
Страница 412: ...Index VSG1435 B101 Series User s Guide 412 ...