Configuring User Encryption 217Nortel WLAN Security Switch 2300 Series Configuration GuideConfiguring Encryption for MAC ClientsThe following example shows how to configure WSS Software to provide PSK authentication and TKIP or 40-bit WEPencryption for MAC clients:1 Create an authentication rule that sends all MAC users of SSID voice to the local database forauthentication and authorization. Type the following command:23x0# set authentication mac ssid voice * localsuccess: configuration saved.2 Configure a MAC user group named wpa-for-mac that assigns all MAC users in the group to VLAN blue.Type the following command:23x0# set mac-usergroup wpa-for-mac attr vlan-name bluesuccess: configuration saved.3 Add MAC users to MAC user group wpa-for-mac. Type the following commands:23x0# set mac-user aa:bb:cc:dd:ee:ff group wpa-for-macsuccess: configuration saved.23x0# set mac-user a1:b1:c1:d1:e1:f1 group wpa-for-macsuccess: configuration saved.4 Verify the AAA configuration changes. Type the following command:23x0# show aaaDefault Valuesauthport=1812 acctport=1813 timeout=5 acct-timeout=5retrans=3 deadtime=0 key=(null) author-pass=(null)Radius ServersServer Addr Ports T/o Tries DeadState-------------------------------------------------------------------Server groupsset authentication mac ssid voice * localmac-usergroup wpa-for-macvlan-name = bluemac-user aa:bb:cc:dd:ee:ffGroup = wpa-for-macmac-user a1:b1:c1:d1:e1:f1Group = wpa-for-mac5 Create a service profile named wpa-wep-for-mac for SSID voice. Type the following command:23x0# set service-profile wpa-wep-for-mac