ZyXEL NWA5123-AC HD User Guide - Page 143

ZyXEL NWA5123-AC HD Manual

Page 143 highlights

Chapter 13 AP Profile The following table describes the labels in this screen. Table 59 Configuration > Object > AP Profile > SSID > Security List > Add/Edit Security Profile LABEL DESCRIPTION General Settings Profile Name Security Mode Enter up to 31 alphanumeric characters for the profile name. This name is only visible in the Web Configurator and is only for management purposes. Spaces and underscores are allowed. Select a security mode from the list: none, enhanced-open, wep, wpa2, wpa2-mix or wpa3. Authentication Settings Enterprise ReAuthentication Timer Personal enhanced-open uses Opportunistic Wireless Encryption (OWE) which encrypts the wireless connection when possible. Select this to enable 802.1x secure authentication with a RADIUS server. Enter the interval (in seconds) between authentication requests. Enter a 0 for unlimited time. This field is available when you select the wpa2, wpa2-mix or wpa3 security mode. Pre-Shared Key Transition Mode Select this option to use a Pre-Shared Key (PSK) with WPA2 encryption or Simultaneous Authentication of Equals (SAE) with WPA3 encryption. Enter a pre-shared key of between 8 and 63 case-sensitive ASCII characters (including spaces and symbols) or 64 hexadecimal characters. Enable this for backwards compatibility. This option is only available if the Security Mode is wpa3 or enhanced-open. This creates two virtual APs (VAPs) with a primary (wpa3 or enhanced-open) and fallback (wpa2 or none) security method. Cipher Type If the Security Mode is wpa3, enabling this will force Management Frame Protection to be set to Optional. If this is disabled or if the Security Mode is enhanced-open, Management Frame Protection will be set to Required. Select an encryption cipher type from the list. Idle Timeout Authentication Type Key Length • auto - This automatically chooses the best available cipher based on the cipher in use by the wireless client that is attempting to make a connection. • aes - This is the Advanced Encryption Standard encryption method. It is a more recent development over TKIP and considerably more robust. Not all wireless clients may support this. Enter the idle interval (in seconds) that a client can be idle before authentication is discontinued. Select a WEP authentication method. Choices are Open or Share key. Select the bit-length of the encryption key to be used in WEP connections. If you select WEP-64: • Enter 10 hexadecimal digits in the range of "A-F", "a-f" and "0-9" (for example, 0x11AA22BB33) for each Key used. or • Enter 5 ASCII characters (case sensitive) ranging from "a-z", "A-Z" and "0-9" (for example, MyKey) for each Key used. If you select WEP-128: • Enter 26 hexadecimal digits in the range of "A-F", "a-f" and "0-9" (for example, 0x00112233445566778899AABBCC) for each Key used. or • Enter 13 ASCII characters (case sensitive) ranging from "a-z", "A-Z" and "0-9" (for example, MyKey12345678) for each Key used. NWA/WAC/WAX Series User's Guide 143

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304

Chapter 13 AP Profile
NWA/WAC/WAX Series User’s Guide
143
The following table describes the labels in this screen.
Table 59
Configuration > Object > AP Profile > SSID > Security List > Add/Edit Security Profile
LABEL
DESCRIPTION
General Settings
Profile Name
Enter up to 31 alphanumeric characters for the profile name. This name is only visible in
the Web Configurator and is only for management purposes. Spaces and underscores
are allowed.
Security Mode
Select a security mode from the list:
none
,
enhanced-open
,
wep
,
wpa2
,
wpa2-mix
or
wpa3
.
enhanced-open
uses Opportunistic Wireless Encryption (OWE) which encrypts the
wireless connection when possible.
Authentication Settings
Enterprise
Select this to enable 802.1x secure authentication with a RADIUS server.
ReAuthentication
Timer
Enter the interval (in seconds) between authentication requests. Enter a 0 for unlimited
time.
Personal
This field is available when you select the
wpa2
,
wpa2-mix
or
wpa3
security mode.
Select this option to use a Pre-Shared Key (PSK) with WPA2 encryption or Simultaneous
Authentication of Equals (SAE) with WPA3 encryption.
Pre-Shared Key
Enter a pre-shared key of between 8 and 63 case-sensitive ASCII characters (including
spaces and symbols) or 64 hexadecimal characters.
Transition Mode
Enable this for backwards compatibility. This option is only available if the
Security Mode
is
wpa3
or
enhanced-open
. This creates two virtual APs (VAPs) with a primary (
wpa3
or
enhanced-open
) and fallback (
wpa2
or
none
) security method.
If the
Security Mode
is
wpa3
, enabling this will force
Management Frame Protection
to be
set to
Optional
. If this is disabled or if the
Security Mode
is
enhanced-open
,
Management
Frame Protection
will be set to
Required
.
Cipher Type
Select an encryption cipher type from the list.
auto
- This automatically chooses the best available cipher based on the cipher in
use by the wireless client that is attempting to make a connection.
aes
- This is the Advanced Encryption Standard encryption method. It is a more
recent development over TKIP and considerably more robust. Not all wireless clients
may support this.
Idle Timeout
Enter the idle interval (in seconds) that a client can be idle before authentication is
discontinued.
Authentication Type
Select a WEP authentication method. Choices are
Open
or
Share
key.
Key Length
Select the bit-length of the encryption key to be used in WEP connections.
If you select
WEP-64
:
Enter 10 hexadecimal digits in the range of “A-F”, “a-f” and “0-9” (for example,
0x11AA22BB33) for each
Key
used.
or
Enter 5 ASCII characters (case sensitive) ranging from “a-z”, “A-Z” and “0-9” (for
example, MyKey) for each
Key
used.
If you select
WEP-128
:
Enter 26 hexadecimal digits in the range of “A-F”, “a-f” and “0-9” (for example,
0x00112233445566778899AABBCC) for each
Key
used.
or
Enter 13 ASCII characters (case sensitive) ranging from “a-z”, “A-Z” and “0-9” (for
example, MyKey12345678) for each
Key
used.