Psion Teklogix 9160 G2 Manual de usuario Pagina 140

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 436
  • Tabla de contenidos
  • SOLUCIÓN DE PROBLEMAS
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 139
Chapter 10: Configuring Security
Security Modes
116 Psion Teklogix 9160 G2 Wireless Gateway User Manual
Cipher Suites
Select the cipher you want to use:
TKIP
CCMP (AES)
•Both
Temporal Key Integrity Protocol
(
TKIP
) is the default.
TKIP provides a more secure encryption solution than WEP keys. The TKIP process more frequently changes
the encryption key used and better ensures that the same key will not be re-used to encrypt data (a weakness of
WEP). TKIP uses a 128-bit “temporal key” shared by clients and access points. The temporal key is combined
with the client's MAC address and a 16-octet initialization vector to produce the key that will encrypt the data.
This ensures that each client station uses a different key to encrypt data. TKIP uses RC4 to perform the encryp-
tion, which is the same as WEP. But TKIP changes temporal keys every 10,000 packets and distributes them,
thereby greatly improving the security of the network.
Counter mode/CBC-MAC Protocol
(
CCMP
) is an encryption method for IEEE
802.11i
that uses the
Advanced Encryption Algorithm
(
AES
). It uses a CCM combined with Cipher Block Chaining Counter mode
(CBC-CTR) and Cipher Block Chaining Message Authentication Code (CBC-MAC) for encryption and message
integrity.
When both TKIP and CCMP are selected, both TKIP and AES clients can associate with the access point. Cli-
ent stations configured to use WPA with RADIUS must have one of the following to be able to associate with the
AP:
A valid TKIP RADIUS IP address and valid shared Key.
A valid CCMP (AES) IP address and valid shared Key.
Clients not configured to use WPA with RADIUS will not be able to associate with AP.
By default both TKIP and CCMP are selected. When both TKIP and CCMP are selected, client stations config-
ured to use WPA with RADIUS must have one of the following:
A valid TKIP RADIUS IP address and RADIUS Key.
A valid CCMP (AES) IP address and RADIUS Key.
Table 10.9 WPA Enterprise Security Settings
Field Description
Vista de pagina 139
1 2 ... 135 136 137 138 139 140 141 142 143 144 145 ... 435 436

Comentarios a estos manuales

Sin comentarios