09-26-2004 05:48 PM - edited 07-04-2021 10:01 AM
Dear Sir,
I would like to auto generate a new session key every 30 minutes running LEAP using AP 1200 Local RADIUS authentication? How can I configure it? I noticed there is a session timeout option under Security-->Local RADIUS Server-->User Group, is this the locaiton for me to specify the duration of a session key? Does it mean that I have to define a User Group and tie the users under it in order to have dynamic encryption key every 30 minutes? Does the user need to login the authentication prompt every 30 minutes? Can it be transparent to the user?
What is the difference between Session Timeout and Lockout?
Thank you.
Regards,
Delon
09-30-2004 12:30 PM
Hope the following link helps...
http://www.cisco.com/en/US/tech/tk583/tk642/technologies_tech_note09186a0080093c81.shtml
10-09-2004 01:08 AM
You can configure the following:
interface Dot11Radio0
dot1x reauth-period 1800
broadcast-key change 1800
Now all users will reauthenticate every 1800 seconds and subsequently renew their unicast session key. Also the broadcast key will be renewed every half hour.
If anybody knows a more elegant solution I would like to hear about it.
Casper
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide