Siemens EF 711 Series Betriebsanweisung Seite 206

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 492
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 205
Configuring WLAN Services
Configuring Privacy
SCALANCE WLC711
6-10 C79000-G8976-C260-03, 07/2012, User Guide, V8.11
A per-packet key mixing function that shares a starting key between devices, and then
changes their encryption key for every packet or after the specified re-key time interval
expires.
The Counter-Mode/CBC-MAC Protocol (CCMP), a new mode of operation for a block cipher
that enables a single key to be used for both encryption and authentication. The two
underlying modes employed in CCM include:
Counter mode (CTR) that achieves data encryption
Cipher Block Chaining Message Authentication Code (CBC-MAC) to provide data
integrity
The following is an overview of the WPA authentication and encryption process:
1. The wireless device client associates with Wireless AP.
2. Wireless AP blocks the client's network access while the authentication process is carried out
(the SCALANCE IWLAN Controller sends the authentication request to the RADIUS
authentication server).
3. The wireless client provides credentials that are forwarded by the SCALANCE IWLAN
Controller to the authentication server.
4. If the wireless device client is not authenticated, the wireless client stays blocked from
network access.
5. If the wireless device client is authenticated, the SCALANCE IWLAN Controller distributes
encryption keys to the Wireless AP and the wireless client.
6. The wireless device client gains network access via the Wireless AP, sending and receiving
encrypted data. The traffic is controlled with permissions and policy applied by the
SCALANCE IWLAN Controller.
Wireless 802.11n APs and WPA Authentication
Note:
If you configure a WLAN Service to use either WEP or TKIP authentication, any Wireless 802.11n AP
associated to a VNS using that service will be limited to legacy AP performance rates
If a VNS is configured to use WPA authentication, any Wireless 802.11n AP within that VNS will
do the following:
WPA v.1 — If WPA v.1 is enabled, the Wireless 802.11n AP will advertise only TKIP as an
available encryption protocol.
WPA v.2 — If WPA v.2 is enabled, the Wireless 802.11n AP will do the following:
If WPA v.1 is enabled, the Wireless 802.11n AP will advertise TKIP as an available
encryption protocol.
Note:
If WPA v.2 is enabled, the Wireless 802.11n AP does not support the Auto option.
If WPA v.1 is disabled, the Wireless 802.11n AP will advertise the encryption cipher AES
(Advanced Encryption Standard).
Note:
The security encryption for some network cards must not to be set to WEP or TKIP to achieve a data rate
beyond 54 Mbps.
Seitenansicht 205
1 2 ... 201 202 203 204 205 206 207 208 209 210 211 ... 491 492

Kommentare zu diesen Handbüchern

Keine Kommentare