05-11-2021 08:50 PM - edited 07-05-2021 01:18 PM
Hi All,
How to check data encryption on the wifi network.
AP --> Controller & AP---> Client
Solved! Go to Solution.
05-12-2021 02:54 AM
For client encryption to AP check the SSID -> Security -> Layer 2 Security settings. If it's set to None, then the traffic is unencrypted. Static WEP is on paper an encryption, but has been cracked for many years and is actually worse now than no encryption. WPA2 or WPA3 are the current recommendations.
For CAPWAP encryption, go to Wireless -> select an AP -> Advanced tab and check of the Data Encryption is checked. If unchecked, then the traffic between AP and WLC is unencrypted.
05-11-2021 09:21 PM
Depends on the AP, the controller and the firmware used.
05-12-2021 01:13 AM
Hi Leo,
By which command we can verify the settings ?
05-11-2021 10:57 PM
AP to client and vice-versa can be encrypted using WPA2.
capwap Data DTLS can be used to encrypt AP to WLC and vice-versa.
05-12-2021 01:13 AM
Hi,
By which command we can verify the settings ?
05-12-2021 01:27 AM
check the wlan config for wifi security in use.
to check data dtls config -show ap link-encryption {all | Cisco_AP}
05-12-2021 01:29 AM
What model of WLC?
What firmware is the controller running on?
05-12-2021 01:36 AM
Model : 5508
Firmware : 8.3.141.0
AP Model : AIR-CAP2702I-E-K9 & AIR-AP2802I-E-K9
05-12-2021 02:54 AM
For client encryption to AP check the SSID -> Security -> Layer 2 Security settings. If it's set to None, then the traffic is unencrypted. Static WEP is on paper an encryption, but has been cracked for many years and is actually worse now than no encryption. WPA2 or WPA3 are the current recommendations.
For CAPWAP encryption, go to Wireless -> select an AP -> Advanced tab and check of the Data Encryption is checked. If unchecked, then the traffic between AP and WLC is unencrypted.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide