Netgear WG102 User Manual Page 97

  • Download
  • Add to my manuals
  • Print
  • Page
    / 118
  • Table of contents
  • TROUBLESHOOTING
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 96
Reference Manual for the NETGEAR ProSafe 802.11g Wireless Access Point WG102
Wireless Networking Basics B-13
202-10064-02, June 2005
Figure B-4: 802.1x Authentication Sequence
In the illustration above, the Supplicant could be a WPA/WPA2-enabled wireless adapter with
supplicant software, the Authenticator would be a WPA/WPA2-enabled AP, and the
Authenticating Server would be a RADIUS server.
The AP sends Beacon Frames with WPA/WPA2 information element to the stations in the service
set. Information elements include the required authentication method (802.1x or Pre-shared key)
and the preferred cipher suite (WEP, TKIP, or AES). Probe Responses (AP to station) and
Association Requests (station to AP) also contain WPA information elements.
1. Initial 802.1x communications begin with an unauthenticated supplicant (client device)
attempting to connect with an authenticator (802.11 access point). The client sends an
EAP-start message. This begins a series of message exchanges to authenticate the client.
2. The access point replies with an EAP-request identity message.
3. The client sends an EAP-response packet containing the identity to the authentication server.
The access point responds by enabling a port for passing only EAP packets from the client to
an authentication server located on the wired side of the access point. The access point blocks
all other traffic, such as HTTP, DHCP, and POP3 packets, until the access point can verify the
client's identity using an authentication server (for example, RADIUS).
Page view 96
1 2 ... 92 93 94 95 96 97 98 99 100 101 102 ... 117 118

Comments to this Manuals

No comments