Access Point WEP Setup

Cisco,com

© 2003, Cisco Systems, Inc. All rights re

From the Security Setup screen, click on Radio Data Encryption (WEP) to launch the WEP configuration screen.

© 2003, Cisco Systems, Inc. All rights re

To configure WEP, an encryption type must be chosen by checking the appropriate box.

■ Open (default): Allows any device, regardless of its WEP settings, to authenticate and then attempt to communicate with the access point.

■ Shared Key: The access point sends a plain text, shared-key query to any device attempting to communicate with the access point. This query can leave the device open to a known-text attack from intruders, however, and is therefore not as secure as the Open setting.

Network-EAP: The access point uses the Extensible Authentication Protocol (EAP) to interact with an EAP-compatible RADIUS server on your network to provide authentication for wireless client devices.

The standard 802.11 WEP can be used without using EAP or an authentication server, allowing for data encryption between the clients and the access point. Using 802.11 WEP does not encrypt all data on the network. Only the data sent between the client and the access point will be encrypted.

© 2003, Cisco Systems, Inc. All rights re

© 2003, Cisco Systems, Inc. All rights re

■ Transmit With Key: These buttons allow you to select the key this access point will use when transmitting data. Only one key can be selected at a time. All set keys can be used to receive data. The selected key must already be set before it can be specified as the Transmit key.

■ Encryption Key: These fields allow you to enter the WEP keys. Type ten hexadecimal digits (any combination of 0-9, a-f, or A-F) for 40-bit WEP keys. Type 26 hexadecimal digits (any combination of 0-9, a-f, or A-F) for 128-bit WEP keys. To protect WEP key security, existing WEP keys do not appear in the entry fields. You can write over existing keys, but you cannot edit or delete them.

■ Key Size: Use this setting to set the keys to either 40 or 128-bit WEP. If "not set" appears for this selection, the key has not been set.

Note You cannot delete a key by selecting "not set." You may use the Restore Defaults button to remove all WEP Keys.

© 2003, Cisco Systems, Inc. All rights re

Uses of data Encryption by Stations are:

■ No Encryption (default): The access point communicates only with client devices that are not using WEP.

■ Optional: Client devices can communicate with the access point either with or without WEP.

■ Full Encryption: Client devices must use WEP when communicating with the access point. Clients not using WEP are not allowed to communicate.

If using Network-EAP as the authentication method then a key must be set in the WEP Key 1 slot. This is the key that is used for multicast packets and is sent during the authentication process.

The access point is not restricted to use of only 40-bit or 128-bit keys and any combination of 40-bit and 128-bit keys may be used.

Static WEP key encryption may be enabled on the Cisco IOS AP from the Security> Encryption Manager screen.

Under Encryption Modes, select WEP Encryption and either Optional or Mandatory WEP Encryption

For additional encryption protection when using Cisco client cards, you may also enable Message Integrity Check (MIC) and Per Packet Keying (TKIP). These features minimize the vulnerability of the WEP protocol to either Man-in-the-middle (inductive) key attacks or passive key attacks.

Under Encryption Keys, enter the Encryption Key in hexadecimal format and select the appropriate Key Size and select the Transmit Key index.

Note that, if using a dynamic key derivation (802.1X) mechanism, it is necessary to enter a key under Encryption Key for broadcast only, the unicast key will be derived for each client using the 802.1X mechanism.

© 2003, Cisco Systems, Inc. All rights reserved. AWLF v3.1—9-27

To fully configure WEP, an authentication method should be specified by checking the appropriate box.

■ Open (default): Allows any device, regardless of its WEP settings, to authenticate and then attempt to communicate with the access point.

■ Shared Key: The access point sends a plain text, shared-key query to any device attempting to communicate with the access point. This query can leave the device open to a known-text attack from intruders, however, and is therefore not as secure as the Open setting.

■ Network-EAP: The access point uses the Extensible Authentication Protocol (EAP) to interact with an EAP-compatible RADIUS server on your network to provide authentication for wireless client devices.

By default, Open authentication is enabled, which, if WEP key is enabled, will permit authentication only be devices which have the correct WEP key configured.

WPA (Authenticated Key Mgmt)

WiFi Protected Access (WPA) is the WiFi Alliance standards-based mechanism to create secure and interoperable WLAN networks. WPA provides a mechanism to authenticate keys for use in 802.11 environments as well as providing enhancements to WEP encryption to increase the robustness of the security protocol.

To enable WPA on an access point, an appropriate Cipher (or combination of ciphers) must be chosen. TKIP is the cipher used for WPA compliant devices. The following are valid WPA ciphers:

Also note that when using WPA encryption on an access point, Encryption Key 1 must not be used- as the WPA key negotiation mechanism uses this key position in the AP to transfer authentication data to the client.

In order to enable WPA Authentication on the AP, after enabling the Encryption mechanism which supports WPA, the SSID must be configured to use a form of Authenticated Key Management.

For the selected SSID, under the Authenticated Key Management section, select WPA and select the appropriate dropdown menu selection, either Mandatory for WPA-only clients, or Optional for coexistence between WPA and legacy WEP clients.

If using a WPA Pre-shared Key (as opposed to using 802.1X authentication), enter the Pre-shared key in either ASCII text (minimum 8 characters) or via a hexadecimal string (64 hex characters). Note that this same pre-shared key must be configured on the WPA client.

Continue reading here: WEP Security Enhancements

Was this article helpful?

0 0

Readers' Questions

  • Dora
    What is a wep key or wpa key?
    18 days ago
  • A WEP (Wired Equivalent Privacy) key or WPA (Wi-Fi Protected Access) key is a security key or passphrase used to authenticate and encrypt data transmitted over a wireless network. Both WEP and WPA keys are used to secure wireless networks. However, WEP is an older and less secure encryption protocol, while WPA and its successor WPA2 provide stronger protection against unauthorized access. The WEP key is a 10 or 26 hexadecimal digit key used to secure a wireless network using the WEP encryption standard. It needs to be entered on both the Wi-Fi router/access point and the client devices to allow them to communicate securely. On the other hand, a WPA key is a password-based security key used for WPA or WPA2 encrypted networks. It is typically a string of characters or a passphrase used to authenticate and encrypt wireless communication. It is important to generate strong and unique WEP or WPA keys to create a secure wireless network, as weak and easily guessable keys can lead to unauthorized access and compromise the security of the network.
    • KARRI STYRMAN
      What is a wep key or wpa key?
      2 months ago
    • A WEP (Wired Equivalent Privacy) key or WPA (Wi-Fi Protected Access) key is a security passphrase or password used to secure a wireless network. It is used to authenticate and encrypt data transmitted between devices connected to a Wi-Fi network. The WEP key is used in older wireless networks, while WPA key is used in newer, more secure networks. Users must enter the correct key to gain access to the wireless network.
      • sigismond mugwort
        What is a wep key or wpa key?
        3 months ago
      • A WEP key (Wired Equivalent Privacy) or WPA key (Wi-Fi Protected Access) is a password or security code used to encrypt a wireless network. It prevents unauthorized users from accessing and potentially manipulating or intercepting the data transmitted over the network. The WEP key is used in older wireless networks, while the WPA key is more advanced and provides better security for modern networks. Both keys are used to authenticate and secure the wireless connection between devices and a Wi-Fi router or access point.
        • AUNE
          What is a wep key or wpa key?
          4 months ago
        • A WEP key (Wired Equivalent Privacy key) or WPA key (Wi-Fi Protected Access key) is a security passphrase or password used to authenticate and secure a wireless network. These keys are used to encrypt the communication between a device and a wireless router or access point, preventing unauthorized access to the network. The WEP key is used for older wireless networks, while the WPA key is used for more modern and secure networks.
          • novella
            What is a wep key or wpa key?
            5 months ago
          • A WEP key (Wired Equivalent Privacy key) is a security code used to encrypt wireless networks. It is used to secure the data that is transmitted between wireless devices and the wireless router. A WPA key (Wi-Fi Protected Access key) is a more secure type of key used to encrypt and decrypt data on a wireless network. It provides an added layer of security over WEP.
            • klaus
              What is a wep key or wpa key?
              6 months ago
            • A WEP (Wired Equivalent Privacy) or WPA (Wi-Fi Protected Access) key is a security code used to secure your wireless network. It is used to authenticate devices that want to connect to the wireless network. The key is usually a long string of random numbers and letters.
              • peggy
                What is a wep key or wpa key?
                7 months ago
              • A WEP key or WPA key is a type of security passphrase used to authenticate wireless network communications. It is used to secure access to a wireless network by scrambling the data that is sent over the air. When a user attempts to connect to a wireless network, they must enter the correct WEP or WPA key in order to gain access and securely connect to the network.
                • Diamond
                  What is a wep key or wpa key?
                  8 months ago
                • A WEP key or WPA key is a type of security passphrase used to authenticate wireless network connections. It encrypts the data sent over the wireless network, making it much more difficult for unauthorized users to gain access to a user's confidential data.
                  • amy frost
                    What is a wep key or wpa key?
                    9 months ago
                  • A WEP key or WPA key is a security password used to protect wireless networks. It is a type of encryption key that is used in wireless networks to protect the network from unauthorized access. WEP stands for Wired Equivalent Privacy and WPA stands for Wi-Fi Protected Access.
                    • tolman puddifoot
                      What is a wep key or wpa key?
                      10 months ago
                    • A WEP (Wired Equivalent Privacy) or WPA (Wi-Fi Protected Access) key is a security code consisting of numbers and/or letters that is used to secure a wireless network. It provides access to the network and keeps out anyone who does not have the correct key.
                      • Domenica Lucciano
                        How to connect to a wep access point?
                        1 year ago
                      • To connect to a WEP access point, first make sure that you have the WEP key and other information such as the SSID, frequency, and authentication method. Then, open the network settings on your device and select the access point you want to connect to. Finally, enter the correct WEP key and click “connect.” If you enter the wrong key, your device will not connect.