Configuring ieee 802.1x security on a client, Ieee 802.1x client using eap/peap – Allied Telesis AT-WA7400/EU User Manual

Page 225

Advertising
background image

AT-WA7400 Management Software User’s Guide

225

Static WEP clients should now be able to associate and authenticate with
the access point. As a client, you will not be prompted for a WEP key. The
WEP key configured on the client security settings is automatically used
when you connect.

Configuring

IEEE 802.1x

Security on a

Client

IEEE 802.1x is the standard defining port-based authentication and
infrastructure for doing key management. Extensible Authentication
Protocol (EAP) messages sent over an IEEE 802.11 wireless network
using a protocol called EAP Encapsulation Over LANs (EAPOL). IEEE
802.1x provides dynamically-generated keys that are periodically
refreshed. An RC4 stream cipher is used to encrypt the frame body and
cyclic redundancy checking (CRC) of each 802.11 frame.

IEEE 802.1x Client Using EAP/PEAP

The built-in authentication server on the AT-WA7400 Wireless Access
Point uses Protected Extensible Authentication Protocol (EAP) referred to
here as EAP/PEAP.

ˆ

If you are using the built-in authentication server with IEEE 802.1x
security mode on the AT-WA7400 Wireless Access Point, then you will
need to set up wireless clients to use PEAP.

ˆ

Additionally, you may have an external RADIUS server that uses EAP/
PEAP. If so, you will need to (1) add the AT-WA7400 Wireless Access
Point to the list of RADIUS server clients, and (2) configure your IEEE
802.1x wireless clients to use PEAP.

Note

The following example assumes that you are using the built-in
authentication server that is shipped with the AT-WA7400 Wireless
Access Point. If you are setting up EAP/PEAP on a client of an
access point that is using an external RADIUS server, the client
configuration process will differ somewhat from this example
especially with regard to certificate validation.

To configure IEEE 802.1x security on a client, perform the following
procedure:

1. If you configured the AT-WA7400 Wireless Access Point to use IEEE

Advertising