Reference Manual for the NETGEAR WG102 ProSafe 802.11g Wireless Access Point

The primary information conveyed in the Beacon frames is the authentication method and the cipher suite. Possible authentication methods include 802.1X and Pre-shared key. Pre-shared key is an authentication method that uses a statically configured pass phrase on both the stations and the access point. This obviates the need for an authentication server, which in many home and small office environments will not be available nor desirable. Possible cipher suites include: WEP, TKIP, and AES (Advanced Encryption Standard). We talk more about TKIP and AES when addressing data privacy below.

Authentication. EAP over 802.1X is used for authentication. Mutual authentication is gained by choosing an EAP type supporting this feature and is required by WPA. 802.1X port access control prevents full access to the network until authentication completes. 802.1X EAPOL-Key packets are used by WPA to distribute per-session keys to those stations successfully authenticated.

The supplicant in the station uses the authentication and cipher suite information contained in the information elements to decide which authentication method and cipher suite to use. For example, if the access point is using the pre-shared key method then the supplicant need not authenticate using full-blown 802.1X. Rather, the supplicant must simply prove to the access point that it is in possession of the pre-shared key. If the supplicant detects that the service set does not contain a WPA information element then it knows it must use pre-WPA 802.1X authentication and key management in order to access the network.

Key management. WPA features a robust key generation/management system that integrates the authentication and data privacy functions. Keys are generated after successful authentication and through a subsequent 4-way handshake between the station and Access Point (AP).

Data Privacy (Encryption). Temporal Key Integrity Protocol (TKIP) is used to wrap WEP in sophisticated cryptographic and security techniques to overcome most of its weaknesses.

Data integrity. TKIP includes a message integrity code (MIC) at the end of each plaintext message to ensure messages are not being spoofed.

Wireless Networking Basics

B-11

October 2004

Page 85
Image 85
NETGEAR WG102 manual Wireless Networking Basics

WG102 specifications

The NETGEAR WG102 is a robust and versatile wireless access point designed to enhance network connectivity in a variety of environments, from small businesses to larger enterprise settings. This device is well-regarded for its ease of use, reliable performance, and a feature set that caters to both basic and advanced networking needs.

One of the key features of the WG102 is its support for the IEEE 802.11g standard, which provides data rates of up to 54 Mbps. This makes it suitable for high-speed internet access and seamless data transfer for users connected to the network. Additionally, the WG102 is backward compatible with the 802.11b devices, ensuring that existing hardware can be integrated into the network without issues, thereby protecting investment in older technology.

The WG102 also excels in its deployment flexibility. With Power over Ethernet (PoE) support, installation becomes significantly easier, as the access point can receive power through the Ethernet cable, eliminating the need for additional power outlets. This feature is particularly advantageous in locations where power supply access is limited or where aesthetic considerations are key.

Security is a vital aspect of any network, and the WG102 does not disappoint. It supports Wi-Fi Protected Access (WPA and WPA2) for secure wireless communications, ensuring that user data is encrypted and protected from potential threats. The device also features WEP encryption, allowing users to implement various security measures based on their specific needs.

The WG102's management capabilities include a web-based interface, enabling administrators to configure settings easily and monitor network performance. The device supports VLAN tagging, which can help in segmenting network traffic for better performance and security. The ability to manage multiple access points through a single interface also streamlines network management.

In terms of physical characteristics, the NETGEAR WG102 is designed for durability and reliability. Its compact form factor allows for discreet installation, whether mounted on a ceiling, wall, or placed on surfaces.

Overall, the NETGEAR WG102 is a dependable access point that offers a combination of speed, security, and ease of management, making it an excellent choice for those looking to enhance their wireless networking capabilities.