Motorola MK2200-0N0SCKBWT0R Reference Guide - Page 217

Authentication, MK2290 RF Network Configuration, C - 11

Page 217 highlights

MK2290 RF Network Configuration C - 11 Table C-7 Security Modes Security Mode Authentication Types Legacy (Pre-WPA) None, EAP-TLS, EAP-FAST, PEAP, LEAP, TTLS WPA - Personal None Encryption Types Open, WEP-40 (40/24), WEP-104 (104/24), TKIP, AES TKIP WPA2 - Personal None AES WPA - Enterprise WPA2 - Enterprise EAP-TLS, EAP-FAST, TKIP PEAP, LEAP, TTLS EAP-TLS, EAP-FAST, AES PEAP, LEAP, TTLS Pass-phrase/Hexkey Configuration Enabled. User input required with pass-phrase/hex key configuration. Enabled. User input required with pass-phrase/hex key configuration. Enabled. User input required with pass-phrase/hex key configuration. Disabled. No user input required for encryption key. Disabled. No user input required for encryption key. Authentication Select an available authentication type from the drop-down list. The options listed are based on the selected Security Mode as shown in Table C-7. The authentication types, other than None, all use IEEE 802.1x authentication to ensure that only valid users and sometimes servers can connect to the network. Each authentication type uses a different scheme using various combinations of tunnels, username/passwords, user certificates, server certificates, and Protected Access Credentials (PACs). Table C-8 Authentication Options Authentication Description None Default setting when authentication is not required on the network. EAP-TLS Select this option to enable EAP-TLS authentication. A user certificate is required; validating the server certificate is optional. EAP-FAST Select this option to enable EAP-FAST authentication. This type uses a PAC (Protected Access Credential) to establish a tunnel and then uses the selected tunnel type to verify credentials. PACs are handled behind the scenes, transparent to the user. Automatic PAC provisioning can, depending on the tunnel type, require a user certificate and the validation of a server certificate. Manual PAC provisioning is currently not supported.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334

MK2290 RF Network Configuration
C - 11
Authentication
Select an available authentication type from the drop-down list. The options listed are based on the selected
Security Mode as shown in
Table C-7
.
The authentication types, other than
None
, all use IEEE 802.1x authentication to ensure that only valid users and
sometimes servers can connect to the network. Each authentication type uses a different scheme using various
combinations of tunnels, username/passwords, user certificates, server certificates, and Protected Access
Credentials (PACs).
Table C-7
Security Modes
Security Mode
Authentication
Types
Encryption Types
Pass-phrase/Hexkey
Configuration
Legacy (Pre-WPA)
None, EAP-TLS,
EAP-FAST, PEAP,
LEAP, TTLS
Open,
WEP-40 (40/24),
WEP-104 (104/24),
TKIP, AES
Enabled. User input required with
pass-phrase/hex key configuration.
WPA - Personal
None
TKIP
Enabled. User input required with
pass-phrase/hex key configuration.
WPA2 - Personal
None
AES
Enabled. User input required with
pass-phrase/hex key configuration.
WPA - Enterprise
EAP-TLS, EAP-FAST,
PEAP, LEAP, TTLS
TKIP
Disabled. No user input required
for encryption key.
WPA2 - Enterprise
EAP-TLS, EAP-FAST,
PEAP, LEAP, TTLS
AES
Disabled. No user input required
for encryption key.
Table C-8
Authentication Options
Authentication
Description
None
Default setting when authentication is not required on the network.
EAP-TLS
Select this option to enable EAP-TLS authentication. A user certificate is required; validating
the server certificate is optional.
EAP-FAST
Select this option to enable EAP-FAST authentication. This type uses a PAC (Protected
Access Credential) to establish a tunnel and then uses the selected tunnel type to verify
credentials. PACs are handled behind the scenes, transparent to the user. Automatic PAC
provisioning can, depending on the tunnel type, require a user certificate and the validation of a
server certificate. Manual PAC provisioning is currently not supported.