D-Link UAP Software User Manual
12/10/09
Page 54 Virtual Access Point Settings 34CSFP6XXUAP-SWUM100-D13
WPA PERSONAL
WPA Personal is a Wi-Fi Alliance IEEE 802.11i standard, which includes AES-CCMP and TKIP mechanisms. The Personal
version of WPA employs a pre-shared key (instead of using IEEE 802.1X and EAP as is used in the Enterprise WPA security
mode). The PSK is used for an initial check of credentials only.
This security mode is backwards-compatible for wireless clients that support the original WPA.
Table 18: WPA Personal
Field Description
WPA Versions Select the types of client stations you want to support:
WPA. If all client stations on the network support the original WPA but none support the newer
WPA2, then select WPA.
WPA2. If all client stations on the network support WPA2, we suggest using WPA2 which provides
the best security per the IEEE 802.11i standard.
WPA and WPA2. If you have a mix of clients, some of which support WPA2 and others which
support only the original WPA, select both of the check boxes. This lets both WPA and WPA2 client
stations associate and authenticate, but uses the more robust WPA2 for clients who support it. This
WPA configuration allows more interoperability, at the expense of some security.
Cipher Suites Select the cipher suite you want to use:
• TKIP
• CCMP (AES)
• TKIP and CCMP (AES)
Both TKIP and AES clients can associate with the AP. WPA clients must have one of the following
to be able to associate with the AP:
• A valid TKIP key
• A valid AES-CCMP key
Clients not configured to use a WPA Personal will not be able to associate with the AP.
Key The Pre-shared Key is the shared secret key for WPA Personal. Enter a string of at least 8 characters
to a maximum of 63 characters. Acceptable characters include upper and lower case alphabetic
letters, the numeric digits, and special symbols such as @ and #.
Broadcast Key
Refresh Rate
Enter a value to set the interval at which the broadcast (group) key is refreshed for clients associated
to this VAP.
The valid range is 0–86400 seconds. A value of 0 indicates that the broadcast key is not refreshed.