Page 91 / 132 Scroll up to view Page 86 - 90
S
ECURITY
4-47
WEP
WEP is the basic mechanism to transmit your data securely over a wireless
network. Matching encryption keys must be set up on your BARRICADE
and and each of your wireless client devices.
Parameter
Description
WEP Mode
Select 64-bit or 128-bit key to use for encryption.
Key Entry Method
Select hexadecimal (Hex) or ASCII for the key entry
method.
Key Provisioning
Select Static if there is only one fixed key for encryption. If
you want to select Dynamic, you need to enable 802.1X
function first.
Default Key ID
Choose which key to use as default.
Passphrase
Check the Passphrase check box to generate a key
automatically.
Key 1~4
The BARRICADE supports up to 4 keys. You select the
default key.
Page 92 / 132
C
ONFIGURING
THE
BARRICADE
4-48
You may automatically generate encryption keys or manually enter the
keys. To generate the key automatically with passphrase, check the
Passphrase
box, and enter a string of characters. Select the default key
from the drop-down menu. Click
APPLY
.
Note:
The passphrase can consist of up to 63 alphanumeric characters.
Hexadecimal Keys
A hexadecimal key is a mixture of numbers and letters from A-F and 0-9.
64-bit keys are 10 digits long and can be divided into five two-digit
numbers. 128-bit keys are 26 digits long and can be divided into 13
two-digit numbers.
ASCII Keys
There are 95 printable ASCII characters:
!"#$%&'()*+,-./0123456789:;<=>?
@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_
`abcdefghijklmnopqrstuvwxyz{|}~
Having selected and recorded your key, click
Save Settings
to proceed, or
Cancel
to go back.
Page 93 / 132
S
ECURITY
4-49
WPA/WPA2
WPA/WPA2 is a security enhancement that strongly increases the level of
data protection and access control for existing wireless LAN. Matching
authentication and encryption methods must be set up on your
BARRICADE and wireless client devices to use WPA/WPA2. To use
WPA, your wireless network cards must be equipped with software that
supports WPA. A security patch from Microsoft is available for free
download (for XP only).
Parameter
Description
Cipher Suite
The security mechanism used in WPA for encryption.
Select TKIP+AES (WPA/WPA2) or AES WPA2 Only.
Authentication
Select 802.1X or Pre-shared Key for the authentication
method.
-
802.1X: for the enterprise network with a RADIUS
server.
-
Pre-shared key: for the SOHO network environment
without an authentication server.
Pre-shared key type
Select the key type to be used in the Pre-shared Key.
Pre-shared Key
Type the key here.
Group Key Re_Keying
The period of renewing the broadcast/multicast key.
Page 94 / 132
C
ONFIGURING
THE
BARRICADE
4-50
WPA
WPA addresses all known vulnerabilities in WEP, the original, less secure
40 or 104-bit encryption scheme in the IEEE 802.11 standard. WPA also
provides user authentication, since WEP lacks any means of
authentication. Designed to secure present and future versions of IEEE
802.11 devices, WPA is a subset of the IEEE 802.11i specification.
WPA replaces WEP with a strong new encryption technology called
Temporal Key Integrity Protocol (TKIP) with Message Integrity Check
(MIC). It also provides a scheme of mutual authentication using either
IEEE 802.1X/Extensible Authentication Protocol (EAP) authentication
or pre-shared key (PSK) technology. The passphrase can consist of up to
32 alphanumeric characters.
WPA2
Launched in September 2004 by the Wi-Fi Alliance, WPA2 is the certified
interoperable version of the full IEEE 802.11i specification which was
ratified in June 2004. Like WPA, WPA2 supports IEEE 802.1X/EAP
authentication or PSK technology. It also includes a new advanced
encryption mechanism using the Counter-Mode/CBC-MAC Protocol
(CCMP) called the Advanced Encryption Standard (AES).
WPA and WPA2 Mode Types
Click
Save Settings
to proceed, or
Cancel
to change your settings.
WPA
WPA2
Enterprise Mode
Authentication:
IEEE 802.1X/EAP
Encryption:
TKIP/MIC
Authentication:
IEEE 802.1X/EAP
Encryption:
AES-CCMP
SOHO Mode
Authentication:
PSK
Encryption:
TKIP/MIC
Authentication:
PSK
Encryption:
AES-CCMP
Page 95 / 132
S
ECURITY
4-51
802.1X
If 802.1X is used in your network, then you should enable this function for
the BARRICADE. This screen allows you to set the 802.1X parameters.
802.1X is a method of authenticating a client wireless connection. Enter
the parameters below to connect the BARRICADE to the Authentication
Server.
Parameter
Description
802.1X Authentication
Enable or disable the authentication function.
Session Idle Timeout
This is the time (in seconds) that a session will sit inactive
before terminating. Set to 0 if you do not want the session
to timeout. (Default: 300 seconds)
Re-Authentication
Period
The interval time (in seconds) after which the client will
be asked to re-authenticate. For example, if you set this to
30 seconds, the client will have to re-authenticate every 30
seconds. Set to 0 for no re-authentication.
(Default: 3600 seconds)
Quiet Period
This is the interval time (in seconds) for which the
BARRICADE will wait between failed authentications.
(Default: 60 seconds)
Server Type
Sets the authentication server type.
Server IP
Set the IP address of your RADIUS server.

Rate

3.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top