
Matrox Maevex Series – Firmware Updater 9
Store a certificate file on the device for IEEE 802.1X EAP-TLS
The 802.1X is a standard used to control access to a network for devices and PCs. Maevex uses
the EAP-TLS protocol used by 802.1X to securely identify a device prior to its authorization
to join the network
To enable using your device on a 802.1X EAP-TLS network, you need to first upload a
certificate file to the device using the firmware updater on a regular network (without any
802.1X authentication). This step is required for the EAP-TLS protocol to work.
Make sure the certificate file is named
eaptls_cert.pem
and placed in the firmware update
package. For more information, see “Certificate file”, page 10.
During the firmware update process, the following progress status message will display:
Updating “EAP TLS certificate”
.
The firmware updater will verify the
eaptls_cert.pem
file for structural compliance and deploy
it to the right location for the selected devices.
Configure the device for deployment on a 802.1X EAP-TLS network
Prior to joining the 802.1X network, the device has no IP address assigned to it. PowerStream
Plus allows the administrator to configure a device to use 802.1X EAP-TLS for its network
on-boarding.
1
Deploy the Maevex device on a regular network without any 802.1X authentication.
2
Using the firmware updater, store the certificate file on the device (needs to be done by
the administrator). For more information, see “Store a certificate file on the device for
IEEE 802.1X EAP-TLS”, page 9.
3
From PowerStream Plus, enable 802.1X EAP-TLS and configure the appropriate settings
in the
Network
page of the device settings. That is, select the
Enable EAP-TLS
option and
choose the
EAPOL version
from the drop-down list (these have to be done by the
administrator). The EAPOL version information will be provided along with the
Note:
You can upload the same certificate to multiple devices. However, if separate
certificates are required for the devices, you must configure each device individually.
Note:
When running the firmware updater, ensure the
Reset configuration
option is
not
selected
.
Note:
If the content in the
eaptls_cert.pem
file doesn’t meet the requirements, the following
message displays:
“EAP TLS CERTIFICATE: file eaptls_cert.pem is invalid or corrupt”
. If this
happens, verify the structure and the contents of the file.