Cisco AIR-AP521G-A-K9 Configuration Guide - Page 103

WPA2-PSK, shared key, ASCII, Generate for the encryption key to be, automatically created

Page 103 highlights

Chapter 8 Adding Employee Access with Web Authentication Creating a New WLAN SSID for the Employee VLAN Step 9 • WPA2-This security setting is more secure than the WPA setting. It enables WPA2 authentication and requires you to select the IP address of a RADIUS server. Client devices that associate with the access point by using this SSID must be WPA2-capable. • WPA2-PSK-Select this security setting when you want to use WPA2 encryption and you do not have access to a RADIUS server. It requires that the access point and the client device share the same WPA2-PSK. The key can be from 8 to 63 characters long. The authentication type is WPA2-PSK. • MAC-Select this security setting when you want to authenticate client devices by using MAC address-based authentication. There is no encryption, and the authentication type is IEEE 802.1x. If you choose WEP security, perform these steps: a. In the Authentication field, click the drop-down arrow and choose open or shared key. - Open authentication-an authentication method that allows any device to authenticate and then attempts to communicate with the access point. - Shared key authentication-an authentication method in which the access point sends an unencrypted challenge text string to any device attempting to communicate with it. If the challenge text is correctly encrypted, the access point allows the requesting device to authenticate. b. In the Key Format field, click the drop-down arrow and choose Hex or ASCII. c. Click the Hex Key field drop-down arrow and choose 1, 2, 3, 4. d. Click the key size drop-down arrow and choose one of these options: - 104 bits-Requires 13 ASCII characters or 26 Hex digits. - 40 bits-Requires 5 ASCII characters or 20 Hex digits. e. If you selected a hex key format, choose one of these options: - Enter the encryption key (see key size above). - Enter a passphrase (8 to 63 characters) and click Generate for the encryption key to be automatically created (see Figure 8-9). OL-15283-01 Cisco 500 Series Wireless Express Mobility Controller Configuration Guide 8-7

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144

8-7
Cisco 500 Series Wireless Express Mobility Controller Configuration Guide
OL-15283-01
Chapter 8
Adding Employee Access with Web Authentication
Creating a New WLAN SSID for the Employee VLAN
WPA2
—This security setting is more secure than the WPA setting. It enables WPA2 authentication
and requires you to select the IP address of a RADIUS server. Client devices that associate with the
access point by using this SSID must be WPA2-capable.
WPA2-PSK
—Select this security setting when you want to use WPA2 encryption and you do not
have access to a RADIUS server. It requires that the access point and the client device share the same
WPA2-PSK. The key can be from 8 to 63 characters long. The authentication type is WPA2-PSK.
MAC
—Select this security setting when you want to authenticate client devices by using MAC
address-based authentication. There is no encryption, and the authentication type is IEEE 802.1x.
Step 9
If you choose WEP security, perform these steps:
a.
In the Authentication field, click the drop-down arrow and choose
open
or
shared key
.
Open authentication—an authentication method that allows any device to authenticate and then
attempts to communicate with the access point.
Shared key authentication—an authentication method in which the access point sends an
unencrypted challenge text string to any device attempting to communicate with it. If the
challenge text is correctly encrypted, the access point allows the requesting device to
authenticate.
b.
In the Key Format field, click the drop-down arrow and choose
Hex
or
ASCII
.
c.
Click the Hex Key field drop-down arrow and choose
1
,
2
,
3
,
4
.
d.
Click the key size drop-down arrow and choose one of these options:
104 bits
—Requires 13 ASCII characters or 26 Hex digits.
40 bits
—Requires 5 ASCII characters or 20 Hex digits.
e.
If you selected a hex key format, choose one of these options:
Enter the encryption key (see key size above).
Enter a passphrase (8 to 63 characters) and click
Generate for the encryption key to be
automatically created
(see
Figure 8-9
).