4-12
C
HAPTER
4: S
YSTEM
C
ONFIGURATION
Local MAC: The MAC address of the associating station is compared against
the local database stored on the access point. Use the Local MAC
Authentication section of this web page to set up the local database, and
configure all access points in the wireless network service area with the same
MAC address database.
RADIUS MAC: The MAC address of the associating station is sent to a
configured RADIUS server for authentication. When using a RADIUS
authentication server for MAC address authentication, the server must first be
configured on the RADIUS page (see “RADIUS” on page 4-8). The database of
MAC addresses and filtering policy must be defined in the RADIUS server. The
MAC address of the associating station is used for both the username and
password. For example, an associating station with a MAC address of
12-34-56-78-9A-BC would use a username and password of “12345678abc.”
The username and password sent to the server will use the format defined by
“radius-server radius-mac-format” (See
“RADIUS Client” on page 5-64
), which
has a default setting of “no-delimiter.”
You can enable 802.1X as optionally supported or as required to enhance the
security of the wireless network. (Default: Disable)
Disable: The access point does not support 802.1X authentication for any
wireless client. After successful wireless association with the access point, each
client is allowed to access the network.
Supported: The access point supports 802.1X authentication only for clients
initiating the 802.1X authentication process (i.e., the access point does not
initiate 802.1X authentication). For clients initiating 802.1X, only those
successfully authenticated are allowed to access the network. For those clients
not initiating 802.1X, access to the network is allowed after successful wireless
association with the access point. The 802.1X supported mode allows access
for clients not using WPA or WPA2 security.
Required: The access point enforces 802.1X authentication for all associated
wireless clients. If 802.1X authentication is not initiated by a client, the access
point will initiate authentication. Only those clients successfully authenticated
with 802.1X are allowed to access the network.
NOTE:
MAC addresses on the RADIUS server can be entered in four different
formats (see “radius-server radius-mac-format” on page 5-68).
NOTE:
If 802.1X is enabled on the access point, then RADIUS setup must be
completed (See “RADIUS” on page 8.)
Summary of Contents for 3CRWE876075 / WL-546
Page 6: ...6...
Page 14: ...1 6 CHAPTER 1 INTRODUCTION...
Page 40: ...3 12 CHAPTER 3 INITIAL CONFIGURATION...
Page 68: ...4 28 CHAPTER 4 SYSTEM CONFIGURATION Figure 32 WDS and Spanning Tree Settings...
Page 254: ...5 152 CHAPTER 5 COMMAND LINE INTERFACE...
Page 258: ...6 4 CHAPTER 6 TROUBLESHOOTING...