|
| ZyAIR |
| Table 27 RADIUS |
|
|
|
|
| LABEL | DESCRIPTION |
|
|
|
| Shared Secret | Enter a password (up to 31 alphanumeric characters) as the key to be shared |
|
| between the external authentication server and the ZyAIR. |
|
| The key must be the same on the external authentication server and your |
|
| ZyAIR. The key is not sent over the network. |
| Accounting Server |
|
| Active | Select the check box to enable user accounting through an external |
|
| authentication server. |
| Server IP Address | Enter the IP address of the external accounting server in dotted decimal |
|
| notation. |
| Port Number | Enter the port number of the external accounting server. The default port |
|
| number is 1813. |
|
| You need not change this value unless your network administrator instructs |
|
| you to do so with additional information. |
| Shared Secret | Enter a password (up to 31 alphanumeric characters) as the key to be shared |
|
| between the external accounting server and the ZyAIR. |
|
| The key must be the same on the external accounting server and your ZyAIR. |
|
| The key is not sent over the network. |
| Apply | Click Apply to save your changes back to the ZyAIR. |
|
|
|
| Reset | Click Reset to reload the previous configuration for this screen. |
|
|
|
7.11 802.1x Overview
The IEEE 802.1x standard outlines enhanced security methods for both the authentication of wireless stations and encryption key management. Authentication can be done using the trusted user database internal to the ZyAIR (authenticate up to 32 users) or an external RADIUS server for an unlimited number of users.
See also the section on RADIUS in this User’s Guide.
7.12 Dynamic WEP Key Exchange
The AP maps a unique key that is generated with the RADIUS server. This key expires when the wireless connection times out, disconnects or reauthentication times out. A new WEP key is generated each time reauthentication is performed.
If this feature is enabled, it is not necessary to configure a default encryption key in the Wireless screen. You may still configure and store keys here, but they will not be used while Dynamic WEP is enabled.
To use Dynamic WEP, enable and configure the RADIUS server and enable Dynamic WEP Key Exchange in the Wireless screen. Ensure that the wireless station’s EAP type is configured to one of the following:
Chapter 7 Wireless Security | 104 |