National Instruments WAP-3711, WAP-3701 user manual Ieee 802.1X/RADIUS AP mode only, Click Download

Page 33

NI WAP-3701/3711 User’s Manual

Web Console Configuration

 

 

 

 

 

 

Sample MAC ACL file

To download a MAC ACL file from a TFTP server:

1.Specify the IP address of the TFTP server in the TFTP server IP address text box.

2.Specify the name of the MAC ACL file on the TFTP server in the MAC ACL file name text box.

3.Click Download.

IEEE 802.1X/RADIUS (AP mode only)

IEEE 802.1X Port-Based Network Access Control is a new standard for solving some security issues associated with IEEE 802.11, such as lack of user-based authentication and dynamic encryption key distribution. With IEEE 802.1X and the help of a RADIUS (Remote Authentication Dial-In User Service) server and a user account database, an enterprise or ISP (Internet Service Provider) can manage its mobile users’ access to its wireless LANs. Before being granted access to a wireless LAN supporting IEEE 802.1X, a user needs to issue his or her user name and password or digital certificate to the backend RADIUS server by EAPOL (Extensible Authentication Protocol Over LAN). The RADIUS server can record accounting information, such as when a user logs on to the wireless LAN and logs off from the wireless LAN for monitoring or billing purposes.

The IEEE 802.1X functionality of the access point is controlled by the security mode. So far, the wireless access point supports two authentication mechanisms—EAP-MD5 (Message Digest version 5), EAP-TLS (Transport Layer Security). If EAP-MD5 is used, the user must give his or her user name and password for authentication. If EAP-TLS is used, the wireless client computer automatically gives the user’s digital certificate that is stored in the computer hard disk or a smart card for authentication. And after a successful EAP-TLS authentication, a session key is generated automatically for encrypting wireless packets sent between the wireless client computer and the associated wireless access point. In short, EAP-MD5 only supports user authentication, whereas EAP-TLS supports both user authentication and dynamic encryption key distribution.

3-19

Image 33
Contents First Edition, Sept NI WAP-3701/3711 User’s ManualCopyright Notice TrademarksDisclaimer Table of Contents Page Introduction Product Features Package ChecklistProduct Specifications OverviewPower Software FeaturesInterface MechanicalGetting Started ‰ Confirming the Settings of the AP and Client ComputersNI WAP-3701/3711 User’s Manual Getting Started First-Time Installation and ConfigurationAP Client AP/BridgeReview and Apply Settings Configure the NI WAP-3701/3711’s Ieee 802.11 settingsSetting up Client Computers Deploying the Access Point APConfiguring Ieee 802.11g-related Settings To establish a wireless link to an Access PointConfiguring TCP/IP-related Settings Confirming the Settings of the AP and Client ComputersChecking if the Ieee 802.11g-related Settings Work Checking if the TCP/IP-related Settings WorkNI WAP-3701/3711 User’s Manual Getting Started Web Console Configuration Menu Structure NI WAP-3701/3711 User’s Manual Web Console ConfigurationAssociated Wireless Clients Save, Save & Restart, and Cancel ButtonsViewing Status Home and Refresh ButtonsLink Monitor AP Client mode only Current Dhcp MappingsSystem Log General Operations Specifying the Operational ModeSTA-AP WDSAdministrative Password Managing the FirmwareUpgrading the Firmware by Http Upgrading Firmware by Tftp Backing up and Restoring Configuration Settings by HttpChoose Tftp as the Firmware management protocol Backing up and Restoring Configuration Settings by Tftp Configuring TCP/IP-related Settings Resetting the Configuration to Factory DefaultsAddressing Dhcp Server AP/Bridge modes only BasicStatic Dhcp Mappings Configuring Ieee 802.11g-related Settings CommunicationLink Integrity Wireless Distribution System Association ControlAP Load Balancing Sample wireless bridge network topology Network topology containing a loop SecuritySTA Shared Key , and Auto MAC-Address-Based Access Control Set the Access control type to exclusiveSet the Access control type to inclusive Click Download Ieee 802.1X/RADIUS AP mode onlyIeee 802.1X and Radius InternetPacket Filters Configuring Advanced SettingsEthernet Type Filters IP Protocol FiltersTCP/UDP Port Filters ManagementUPnP System LogSnmp Default Settings LAN Interface NI WAP-3701/3711 User’s Manual Default SettingsManagement Snmp read communityWireless Settings Problems TroubleshootingTCP/IP Settings Problems NI WAP-3701/3711 User’s Manual TroubleshootingAP does not respond to ping from the client computer Wireless Router/AP Browser Unknown ProblemsNI WAP-3701/3711 User’s Manual Troubleshooting Regulatory Statement Federal Communication Commission Interference StatementTTE Compliance Statement NI WAP-3701/3711 User’s Manual Regulatory Statement SafetyTechnical Support and Professional Services Worldwide Technical Support and Product Information National Instruments Corporate HeadquartersWorldwide Offices