Brocade Mobility 7131N-FGR Access Point Product Reference Guide (Supporting software release 4.0.0.0-35GRN and later) User Manual

Page 63

Advertising
background image

Brocade Mobility 7131N-FGR Product Reference Guide

51

53-1001947-01

Basic configuration

3

4. Configure the Key Rotation Settings as required to set Broadcast Key Rotation and the update

interval.

5. Configure the Key Settings as needed to set a 256-bit key.

Default (hexadecimal) 256-bit keys for WP2A/CCMP include:

1011121314151617

18191A1B1C1D1E1F

2021222324252627

28292A2B2C2D2E2F

6. Configure the Fast Roaming (802.1x only) field as required to enable additional Brocade

Mobility 7131N-FGR Access Point roaming and key caching options. This feature is applicable
only when using 802.1x EAP authentication with WPA2/CCMP.

NOTE

PMK key caching is enabled internally by default when 802.1x EAP authentication is enabled.

7. Click the Apply button to save the security policy and return to the Quick Setup screen.

At this point, you can test the Brocade Mobility 7131N-FGR Access Point for MU
interoperability.

Broadcast Key Rotation

Select the Broadcast Key Rotation checkbox to enable or disable
broadcast key rotation. When enabled, the key indices used for
encrypting/decrypting broadcast traffic will be alternatively rotated
on every interval specified in the Broadcast Key Rotation Interval.
Enabling broadcast key rotation enhances the broadcast traffic
security on the WLAN. This value is disabled by default.

Update broadcast keys
every (300-604800
seconds)

Specify a time period in seconds to rotate the key index used for
the broadcast key. Set the interval to a shorter duration like 3600
seconds for tighter broadcast traffic security on the wireless LAN.
Set the interval to a longer duration like 86400 seconds for less
broadcast traffic security requirements. Default value is 86400
secs.

256-bit Key

Enter 16 hexadecimal characters into each of the four fields
displayed.

Pre-Authentication

Selecting this option enables an associated MU to carry out an
802.1x authentication with another Brocade Mobility 7131N-FGR
Access Point before it roams to it. The Brocade Mobility
7131N-FGR Access Point caches the keying information of the
client until it roams to the other Brocade Mobility 7131N-FGR
Access Point. This enables the roaming client to start sending and
receiving data sooner by not having to do 802.1x authentication
after it roams. This feature is only supported when 802.1x EAP
authentication is enabled.

Advertising