Authentication methods in infrastructure mode

In infrastructure mode, VOCOM is connected to a wireless infrastructure network.

A wireless infrastructure is defined by the network name (SSID), authentication method, and encryption type. It consists of one or more access points broadcasting the same SSID, together forming a single wireless network.

VOCOM supports three authentication methods in infrastructure mode:

  • EAP-PEAP (Enterprise)
  • Pre-shared key (PSK)
  • EAP-TLS (Enterprise)

EAP-PEAP (Enterprise)

EAP-PEAP is a certificate-based authentication method. It uses server or root (CA) certificates to authenticate the wireless network (access point) to the client, and a user-specific username and password to authenticate the client to the network.

All you need is to have the VOCOM device connected to your computer, either through a USB cable or through the VOCOM access point.

Note: When using WPA-Enterprise, a certificate must be installed in the VOCOM device. Make sure to get the required CA certificate in advance from your IT department.

Configure VOCOM for EAP-PEAP (Enterprise)

  1. Open VOCOM Configurator. Select your VOCOM device.

  2. Go to Configuration > Infrastructure.

  3. Select an available wireless network.

  4. Set Authentication to EAP-PEAP (Enterprise).

  5. Select the required encryption (Applicable only to VOCOM II devices).
  • WPA2 is selected by default and works in most cases.
  • Use WPA + WPA2 if your network still uses the legacy WPA standard.
  • Note: WEP is not supported by VOCOM due to cybersecurity policy.
  • Note: VOCOM 2+ devices do not support the WPA standard due to cybersecurity policies.

7. Enter Username and Password.

8. Click Load Certificate and select the company-provided CA certificate.

9. Click Save to store the configuration.

10. Click Restart to apply the changes.

Pre-shared key (PSK)

Pre-shared key (PSK) is the most common and simplest Wi-Fi security setup. The network is protected with a single password (the Wi-Fi password) used for authentication. PSK is typically used in home networks and small offices.

To configure the VOCOM device for PSK is fairly simple. All you need is to have the device connected to your computer, either through a USB cable or through the VOCOM access point.

Configure VOCOM for PSK (pre-shared key)

  1. Open VOCOM Configurator. Select our VOCOM device.

  2. Go to Configuration > Infrastructure.

  3. Select an available wireless network.
    If you are currently connected to the VOCOM access point, available networks may not be listed. In that case, enter the SSID manually in the Network Name field.

  4. Set Authentication to Pre-Shared Key (PSK).

  5. Enter the Wi-Fi password in the Password field.

  6. Click Save to store the configuration.

  7. Click Restart to apply the configuration.


After the restart, you can disconnect the USB cable or switch your computer’s Wi-Fi connection back to your intended network (if you were connected to the VOCOM access point).

EAP-TLS (Enterprise)

The setup for EAP-TLS is very similar to EAP-PEAP. The key difference is that EAP-TLS requires a client certificate in addition to the CA certificate.

Before you start, make sure you have the following:

  • A client certificate issued by your IT department for EAP-TLS authentication.
    VOCOM supports PKCS12 client certificates (file extension .p12 or .pfx).

  • The certificate password (used to import the PKCS12 file).

  • The identity/username associated with the certificate.

Configure VOCOM for EAP-TLS (Enterprise)

 

1. Open VOCOM Configurator. Select your VOCOM device.

2. Go to Configuration > Infrastructure.

3. Select an available wireless network.

4. Set Authentication to EAP-TLS(Enterprise).

5. Enter Username.

6. Click Load Certificate and select the company-provided CA certificate and the client certificate. Often, these certificates are bundled into a container protected with a dedicated password.

7. Click Save to store the configuration.

8. Click Restart to apply the changes.