ZyAIR G-3000 User’s Guide
Chapter 16 System Security
144
Dynamic WEP Key
Exchange
This field is activated only when you select
Authentication Required
in the
Wireless Port Control
field. Also set the
Authentication Databases
field to
RADIUS Only
. Local user database may not be used.
Select
Disable
to allow wireless stations to communicate with the access
points without using Dynamic WEP Key Exchange.
Select
64-bit WEP
or
128-bit WEP
to enable data encryption.
Up to 32 stations can access the ZyAIR when you configure Dynamic WEP Key
Exchange.
PSK
Type a pre-shared key from 8 to 63 case-sensitive ASCII characters (including
spaces and symbols) when you select
WPA-PSK
in the
Key Management
Protocol
field.
WPA Mixed Mode
Select
Enable
to activate WPA mixed mode. Otherwise, select
Disable
and
configure
Data Privacy for Broadcast/Multicast packets
field.
Group Data Privacy
This field allows you to choose
TKIP
(recommended) or
WEP
for broadcast and
multicast (“group”) traffic if the
Key Management Protocol
is
WPA
and
WPA
Mixed Mode
is disabled.
WEP
is used automatically if you have enabled
WPA
Mixed Mode
.
All unicast traffic is automatically encrypted by
TKIP
when
WPA
or
WPA-PSK
Key Management Protocol
is selected.
WPA Group Key
Update Timer
The
WPA Broadcast/Multicast Key Update Timer
is the rate at which the AP
(if using
WPA-PSK
key management) or RADIUS server (if using
WPA
key
management) sends a new group key out to all clients. The re-keying process
is the WPA equivalent of automatically changing the WEP key for an AP and all
stations in a WLAN on a periodic basis. Setting of the
WPA Broadcast/
Multicast Key Update Timer
is also supported in WPA-PSK mode. The ZyAIR
default is 1800 seconds (30 minutes).
Authentication
Databases
The authentication database contains wireless station login information. The
local user database is the built-in database on the ZyAIR. The RADIUS is an
external server. Use this field to decide which database the ZyAIR should use
(first) to authenticate a wireless station.
Before you specify the priority, make sure you have set up the corresponding
database correctly first.
When you configure
Key Management Protocol
to
WPA
, the
Authentication
Databases
must be
RADIUS Only
. You can only use the
Local User
Database
with
802.1x Key Management Protocol
.
Select
Local User Database Only
to have the ZyAIR just check the built-in
user database on the ZyAIR for a wireless station's username and password.
Select
RADIUS Only
to have the ZyAIR just check the user database on the
specified RADIUS server for a wireless station's username and password.
Select
Local first, then RADIUS
to have the ZyAIR first check the user
database on the ZyAIR for a wireless station's username and password. If the
user name is not found, the ZyAIR then checks the user database on the
specified RADIUS server.
Select
RADIUS first, then Local
to have the ZyAIR first check the user
database on the specified RADIUS server for a wireless station's username and
password. If the ZyAIR cannot reach the RADIUS server, the ZyAIR then
checks the local user database on the ZyAIR. When the user name is not found
or password does not match in the RADIUS server, the ZyAIR will not check the
local user database and the authentication fails.
When you have completed this menu, press [ENTER] at the prompt “Press ENTER to confirm or ESC
to cancel” to save your configuration or press [ESC] to cancel and go back to the previous screen.
Table 47
Menu 23.4 System Security : IEEE802.1x
FIELD
DESCRIPTION
Содержание ZyAIR G-3000
Страница 1: ...ZyAIR G 3000 802 11g Business Access Point Bridge Repeater User s Guide Version 3 50 September 2004...
Страница 14: ...ZyAIR G 3000 User s Guide 15 Table of Contents...
Страница 22: ...ZyAIR G 3000 User s Guide 23 List of Tables...
Страница 26: ...ZyAIR G 3000 User s Guide 27 Preface...
Страница 40: ...ZyAIR G 3000 User s Guide 41 Chapter 2 Introducing the Web Configurator...
Страница 48: ...ZyAIR G 3000 User s Guide 49 Chapter 3 Wizard Setup...
Страница 54: ...ZyAIR G 3000 User s Guide 55 Chapter 4 System Screens...
Страница 100: ...ZyAIR G 3000 User s Guide 101 Chapter 8 IP Screen...
Страница 116: ...ZyAIR G 3000 User s Guide 117 Chapter 10 Maintenance Figure 59 Restart Screen...
Страница 122: ...ZyAIR G 3000 User s Guide 123 Chapter 11 Introducing the SMT...
Страница 132: ...ZyAIR G 3000 User s Guide 133 Chapter 13 LAN Setup...
Страница 174: ...ZyAIR G 3000 User s Guide 175 Appendix C Power over Ethernet Specifications...
Страница 176: ...ZyAIR G 3000 User s Guide 177 Appendix D Brute Force Password Guessing Protection...
Страница 188: ...ZyAIR G 3000 User s Guide 189 Appendix E Setting up Your Computer s IP Address...
Страница 192: ...ZyAIR G 3000 User s Guide 193 Appendix F IP Address Assignment Conflicts...
Страница 200: ...ZyAIR G 3000 User s Guide 201 Appendix G IP Subnetting...
Страница 202: ...ZyAIR G 3000 User s Guide 203 Appendix H Command Interpreter...
Страница 206: ...ZyAIR G 3000 User s Guide 207 Appendix I Log Descriptions...
Страница 209: ...ZyAIR G 3000 User s Guide Appendix J Wireless LAN and IEEE 802 11 210 Figure 127 ESS Provides Campus Wide Coverage...
Страница 210: ...ZyAIR G 3000 User s Guide 211 Appendix J Wireless LAN and IEEE 802 11...