SMC Networks SMCWHSG44-G manual MAC-Address-Based Access Control

Page 67

NOTE: The number of characters of the Pre-shared key setting must be at least 8 and can be up to 63.

IEEE 802.1x EAP without Encryption (EAP-MD5). The IEEE 802.1x functionality is enabled and the user-name/password-based EAP-MD5 authentication is used. No data encryption.

IEEE 802.1x EAP with Static WEP (EAP-MD5). The IEEE 802.1x functionality is enabled and the user-name/password-based EAP-MD5 authentication is used. Data encryption is achieved by static WEP.

IEEE 802.1x EAP with Dynamic WEP (EAP-TLS, EAP-TTLS, PEAP). The IEEE 802.1x functionality is enabled and dynamic WEP key distribution authentication (EAP-TLS, EAP-TTLS, or PEAP) is used. Data encryption is achieved by dynamic WEP.

IEEE 802.1x EAP with Dynamic TKIP (WPA). This is a full WPA mode, in which both the TKIP and IEEE 802.1x dynamic key exchange mechanisms are enabled. The SMCWHSG44-G is highly secure in this mode.

In the above security modes, a back-end RADIUS (Remote Authentication Dial-In User Service) server is needed if IEEE 802.1x functionality is enabled.

According to the IEEE 802.11 standard, WEP can be used for authentication and data encryption. Normally, Shared Key authentication is used if WEP data encryption is enabled. In rare cases, Open System authentication may be used when WEP data encryption is enabled. The Authentication algo- rithm setting is provided for better compatibility with wireless client com- puters with various WLAN network adapters. There are three options avail- able, including Open System, Shared Key, and Auto.

When WEP is enabled by a security mode, the Key length can be specified to be 64 Bits or 128 Bits. The Selected key setting specifies the key to be used as a send-key for encrypting traffic from the local device side to the remote device side. All 4 WEP keys are used as receive-keys to decrypt traffic from the remote device side to the local device side.

NOTE: Each field of a WEP key setting is a hex-decimal number from 0-9, A-F. For example, when the security mode is Static WEP and the key length is 64 Bits, you could set Key 1 to “00012E3ADF”.

2.5.2.2. MAC-Address-Based Access Control

Fig. 79. MAC-Address-Based Access Control Settings.

66

Image 67
Contents SMCWHSG44-G Page Trademarks CopyrightLimited Warranty Page FCC Radiation Exposure Statement Federal Communication Commission Interference StatementIndustry Canada Class B EC Conformance Declaration Power Cord Safety Safety ComplianceSchuko Page Wichtige Sicherheitshinweise Germany Schuko Page Table of Contents System Page SMCWHSG44-G SMCWHS-POS Introduction User Authentication, Authorization, and Accounting AAA Overview FeaturesIeee 802.11b/g Compliant Wireless Operation Internet Connection Sharing Network Security Firmware Tools LED Definition Package ChecklistRear Panel POE enabled LAN Port Position Selecting a Power Supply MethodMounting the SMCWHSG44-G on a Wall Changing the TCP/IP Settings of the Managing Computer Preparing for ConfigurationEntering the Password Configuring the SMCWHSG44-GHome Setup Wizard Selecting an Operational ModePage Router with a Static-IP DSL/Cable Connection Router with a DHCP-Based DSL/Cable ConnectionRouter with Multiple DSL/Cable Connections Setup Wizard Configuring Ieee 802.11 Settings Setup Wizard Configuring Dhcp Server SettingsWeb Redirection Configuring User Authentication SettingsAuthentication protocol Local Authentication SeverPage Account Table List How to Setup the Mini-POS Ticket PrinterIeee Radius Settings Allowable Authentication Modes Configuring Radius SettingsDeploying the SMCWHSG44-G Setting up Client ComputersTo establish a wireless link to an AP Configuring Ieee 802.11-Related SettingsConfiguring TCP/IP-Related Settings Page Authentication Success Menu Structure OverviewLogout Page Home and Refresh Commands Save, Save & Restart, and Cancel CommandsStatus Associated Wireless Clients Account Table Authenticated UsersManaged LAN Devices Session ListSystem Specifying Operational ModeManaging Firmware Changing PasswordTo upgrade firmware of the SMCWHSG44-G by Http Backing up and Restoring Configuration Settings by HttpUpgrading Firmware by Http Upgrading Firmware by Tftp To upgrade firmware of the SMCWHSG44-G by TftpTo back up configuration of the SMCWHSG44-G by Tftp Backing up and Restoring Configuration Settings by TftpTo restore configuration of the SMCWHSG44-G by Tftp Configuring TCP/IP Related Settings Address Resetting Configuration to Factory DefaultsTime Zone Router with a DHCP-Based DSL/Cable Connection Router with a Static-IP DSL/Cable Connection DNS DNS Proxy NAT Basic Host Address ResolutionVirtual Server Mappings To expose preset internal serversDhcp Server Ii. Static Dhcp Mappings Dhcp Server BasicLoad Balancing Dhcp RelayTo always assign an IP address to a specific Dhcp client Configuring Ieee 802.11-Related Settings Wireless Basic Zero Client ReconfigurationWireless Distribution System To enable a WDS link Wireless Distribution System SettingsNetwork Topology Containing a Loop SecurityPage MAC-Address-Based Access Control Settings MAC-Address-Based Access ControlTo grant wireless clients access to the wireless network To deny wireless clients access to the wireless networkIeee 802.1x/RADIUS Ieee 802.1x/RADIUS Settings Configuring Authentication Settings AAA Basic Default Authentication Failure Warning To specify an uncontrolled computer by MAC address Unrestricted ClientsRadius Basic Walled GardenRobustness Log-On Page Customization Settings Authentication Session ControlAuthentication Success Page Customization Settings Ddns Advertisement Links SettingsIcmp TCP UDP Firewall VlanTo set a rule for packet filtering Management Basic URL FiltersTo block Http traffic to an unwelcome Web site System Log UPnPSnmp Access RulesLAN Device Management Unrestricted Host MAC Address SettingsTo specify a LAN device to manage Example for LAN Device ManagementAppendix a Default SettingsLED Definitions TCP/IP Setting Problems Page Other Problems Wireless Settings ProblemsAppendix C Distances and Data Rates Standards Network ConfigurationTransmission output Power Configuration and ManagementKeypad Ad Hoc Access PointAuthentication Basic Service Set BSSEncryption Dynamic Host Configuration Protocol DhcpExtended Service Set ESS Extensible Authentication Protocol EAPLocal Area Network LAN Inter Access Point Protocol IappPower over Ethernet PoE InfrastructureSession Key Service Set Identifier SsidWireless Distribution System WDS Wi-Fi Protected AccessWPA Pre-shared Key PSK Wired Equivalent Privacy WEPPage For Technical SUPPORT, Call