Intermec CV30 CV30 Fixed Mount Computer User's Manual - Page 64

Configuring TLS Security With Profile Wizard, EAT/Token Card

Page 64 highlights

Chapter 3 - Configuring the CV30 7 Select Prompt for password to have the user enter this password each time to access the protocol, or select Use following password to use the protocol without entering a password each time you use the CV30. 8 Tap Get Certificates to obtain or import server certificates. For help with certificates, see "Loading a Certificate" on page 61. 9 Tap Additional Settings to assign an inner PEAP authentication and set options for server certificate validation and trust. 10 From the Inner PEAP Authentication list, choose EAP/MSCHAP-V2, EAT/Token Card, or EAP/MD5-Challenge. 11 Check Validate Server Certificate to verify the identity of the authentication server based on its certificate when using PEAP. 12 Tap Root CA, select a root certificate, and then tap OK. 13 Enter the Common Names of trusted servers. 14 Tap OK. Configuring TLS Security With Profile Wizard EAP-TLS is a protocol based on the Transport Layer Security (TLS) protocol widely used to secure web sites. This protocol requires both the user and authentication server to have certificates for mutual authentication. To configure TLS security 1 In the Profile Wizard, select the Security page. 2 For 8021x Security, choose TLS. 3 For Association, choose Open, WPA, WPA2, or Network EAP. 4 For Encryption, choose TKIP or AES if you selected WPA2 for association, or WEP or CKIP if you selected Network EAP for association. 5 For Subject Name, type a unique subject name for this protocol. 6 For User Name, type a unique user name for this protocol. 54 CV30 Fixed Mount Computer User's Manual

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100

Chapter 3 — Configuring the CV30
54
CV30 Fixed Mount Computer User’s Manual
7
Select
Prompt for password
to have the user enter this
password each time to access the protocol, or select
Use
following password
to use the protocol without entering a
password each time you use the CV30.
8
Tap
Get Certificates
to obtain or import server certificates.
For help with certificates, see
“Loading a Certificate” on
page 61
.
9
Tap
Additional Settings
to assign an inner PEAP
authentication and set options for server certificate validation
and trust.
10
From the
Inner PEAP Authentication
list, choose
EAP/MS-
CHAP-V2
,
EAT/Token Card
, or
EAP/MD5-Challenge
.
11
Check
Validate Server Certificate
to verify the identity of the
authentication server based on its certificate when using
PEAP.
12
Tap
Root CA
, select a root certificate, and then tap
OK
.
13
Enter the Common Names of trusted servers.
14
Tap
OK
.
Configuring TLS Security With Profile Wizard
EAP-TLS is a protocol based on the Transport Layer Security
(TLS) protocol widely used to secure web sites. This protocol
requires both the user and authentication server to have
certificates for mutual authentication.
To configure TLS security
1
In the Profile Wizard, select the
Security
page.
2
For
8021x Security
, choose
TLS
.
3
For
Association
, choose
Open
,
WPA
,
WPA2
, or
Network
EAP
.
4
For
Encryption
, choose
TKIP
or
AES
if you selected WPA2
for association, or
WEP
or
CKIP
if you selected Network
EAP for association.
5
For
Subject Name
, type a unique subject name for this
protocol.
6
For
User Name
, type a unique user name for this protocol.