09-11-2008 07:08 AM - edited 07-03-2021 04:27 PM
Hi All,
I want to setup a WLAN that uses EAP-TLS.
WiFi PC <-----> LWAP <------> WLC <----> Radius Server
Under the Layer 2 tab for security on the WLC what option do I use for the following :-
Layer 2 Security (I am assuming WPA+WPA2 as that what the laptops will be using)
Auth Key Mgmt ?
I am a bit confused by the 802.1x in both of these fields, one for Layer two Security and one for Auth Key Mgmt?
Many thx indeed guys,
Ken
Solved! Go to Solution.
09-11-2008 01:12 PM
You would choose Layer 2 Security: WPA+WPA2
Then on the WPA+WPA2 Parameters choose WPA2 Policy with WPA2 Encryption. Under Auth Key Mgmt choose 802.1x.
Now if you require the use of WPA Policy, then also choose TKIP for that.
Then for your AAA Server tab choose your radius servers.
That is it.
09-11-2008 01:12 PM
You would choose Layer 2 Security: WPA+WPA2
Then on the WPA+WPA2 Parameters choose WPA2 Policy with WPA2 Encryption. Under Auth Key Mgmt choose 802.1x.
Now if you require the use of WPA Policy, then also choose TKIP for that.
Then for your AAA Server tab choose your radius servers.
That is it.
09-11-2008 11:25 PM
Thx fella :)
I chose 802.1x+cckm for fast roaming. Any caveats to this, as we will be testing 7921 phones on this test WLAN also?
Many thx
Ken
09-12-2008 03:25 AM
It shouldn't be a problem. Here is the 7921 delpoyment guide that you should also look at.
http://www.cisco.com/en/US/docs/voice_ip_comm/cuipph/7921g/6_0/english/deployment/guide/7921dply.pdf
09-12-2008 03:31 AM
Thx very much mate :)
09-12-2008 03:40 AM
Not a problem... with 1.2(1) you can validate the server certificate.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide