102
System configuration management
a Pairwise Master Key (PMK) that is used to generate other keys for
unicast data encryption. This key and other client information form a
Security Association that the access point names and holds in a cache.
•
Preauthentication: Each time a client roams to another access point,
it has to be fully reauthenticated. This authentication process is time
consuming and can disrupt applications running over the network.
WPA2 includes a mechanism, known as preauthentication, that lets
clients roam to a new access point and be quickly associated. The first
time a client is authenticated to a wireless network, it has to be fully
authenticated. When the client is about to roam to another access point
in the network, the access point sends preauthentication messages
to the new access point that include the client’s security association
information. Then, when the client sends an association request to the
new access point, the client is known to be already authenticated, so it
proceeds directly to key exchange and association.
To configure WPA, click Security under Radio A or Radio G. Select one of
the VAP interfaces by clicking More. Select one of the WPA options in the
Authentication Setup table, and then configure the parameters displayed
beneath the table.
Configuring WPA
The WPA configuration parameters are described as follows:
Encryption—You must enable data encryption to enable all types of
encryption (WEP, TKIP, or AES) in the access point.
Preauthentication—When using WPA2 over 802.1X, preauthentication can
be enabled, which lets clients roam to a new access point and be quickly
associated without performing full 802.1X authentication. (Default: Disabled)
BAP120
Using the Nortel Business Access Point 120
NN47921-301
01.01
Standard
1.0
August 2006
Copyright © 2006, Nortel Networks
Nortel Networks Confidential
.
Summary of Contents for 120
Page 1: ...BAP120 Using the Nortel Business Access Point 120 NN47921 301 ...
Page 129: ......