Cisco Cisco WAP571E Wireless-AC N Premium Dual Radio Outdoor Access Point Manual De Mantenimiento

Descargar
Página de 192
Wireless
Networks
Cisco WAP571/E Administration Guide
94
5
lowercase alphabetic letters, numbers, and special characters) are used 
and how long the string is. If the WPA-PSK complexity check feature is 
enabled, the key is not accepted unless it meets the minimum criteria. See 
 for information on configuring the complexity check.
Broadcast Key Refresh Rate—The interval at which the broadcast (group) 
key is refreshed for clients associated with this VAP. 
The default is 300 seconds. The valid range is from 0 to 86400 seconds. A 
value of 0 indicates that the broadcast key is not refreshed. 
WPA Enterprise
WPA Enterprise with RADIUS is an implementation of the Wi-Fi Alliance IEEE 
802.11i standard, which includes CCMP (AES), and TKIP encryption. The 
Enterprise mode requires the use of a RADIUS server to authenticate users.
This security mode is backwards-compatible with wireless clients that support 
the original WPA.
These parameters configure WPA Enterprise:
WPA Versions—The types of client stations to be supported:
-
WPA-TKIP—The network has some client stations that only support 
original WPA and TKIP security protocol. Note that selecting only WPA-
TKIP for the access point is not allowed as per the latest WiFi Alliance 
requirement.
-
WPA2-AES—All client stations on the network support WPA2 version 
and AES-CCMP cipher/ security protocol. This WPA version provides 
the best security per the IEEE 802.11i standard. As per the latest WiFi 
Alliance requirement, the AP has to support this mode all the time.
MFP (Management Frame Protection) —Provides security for the 
otherwise unprotected and unencrypted 802.11 management frames. This 
field is visible only when WPA2 security and CCMP fields are enabled. The 
following three check box values can be configured for it. The default is 
Capable.
-
Not Required
-
Capable
-
Required
Enable pre-authentication—If for WPA Versions you select only WPA2 or 
both WPA and WPA2, you can enable pre-authentication for WPA2 clients.