5-27
Cisco Aironet 802.11a/b/g Wireless LAN Client Adapters (CB21AG and PI21AG) Installation and Configuration Guide
OL-4211-03
Chapter5 Configuring the Client Adap ter Setting Security Parameters
Step3 Obtain the WPA/WPA2 passphrase for the access point (in an infras tructure network) or o ther clients (in
an ad hoc network) from your system administrator and enter it i n t he W PA/WPA2 passphrase field.
Follow the guidelines below to enter a passphrase:
WPA/WPA2 passphrases must contain 8 to 63 ASCII text characters or 64 hexadecimal characters.
Your client adapter’s WPA/WPA2 passphrase must match the passphrase used by the access point
with which you are planning to communicate.
Step4 Click OK to save the passphrase and return to the Profile Management (Security) window.
Step5 If you want to change the value of the Group Policy Delay parameter, enter a new value or use the up
and down arrows to select a value between 0 and 65535 seconds. (Micro soft supp orts onl y values
between 30 and 600 seconds. The default value is 60 seconds.)
The Group Policy Delay parameter specifies how much time elapses before the Windows logon process
starts Group Policy, a Windows feature used by administrators to specify configuration options for
groups of users. The objective is to delay the start of Group Policy until wireless network authenticatio n
occurs. The value that you set for this parameter goes into effect after the computer reboots with this
profile set as the active profile.
Note A Microsoft hot fix is required in order to use this parameter on com puters ru nning Windows
2000. Refer to the “Installing a Microsoft Hot Fix for Group Policy Delay” section on pa ge 3-20
for information on obtaining and installing the hot fix.
Step6 Click OK to save your settings and return to the Cisco Aironet Desktop Utility (Profile Management)
window.
Enabling LEAP
Before you can enable LEAP authentication, your network devices mu st mee t t he f oll owing
requirements:
To use LEAP authentication with WPA2, client adapters must use the software included in Install
Wizard 2.0 or later.
Access points to which your client adapter may attempt to authenticate must use the following
firmware versions or later: 11.23T (access points running VxWorks), Cisco IOS Release 12.2(4)JA
(1100 series access points), Cisco IOS Release 12.2(8)JA (1200 series access points), or Cisco IOS
Release 12.2(13)JA (350 series access points).
Note To use WPA or CCKM, access points must use Cisco IOS Release 12.2(11)JA or later. To
use WPA2, access points must use Cisco IOS Release 12.3(2)JA or later. To use the
Reporting Access Points That Fail LEAP Authentication feature, access point s mu st u se the
firmware versions listed on page 5-20.
All necessary infrastructure devices (such as access points, servers, etc.) must be properly
configured for LEAP authentication.