Windows Wifi - WPA2 vs WPA2-PSK option grayed out? what's the difference?

jinjin12

Distinguished
May 30, 2009
46
0
18,530
ok i'm trying to set up my wifi and when i go to the windows wifi options and set up my network, when i choose "WPA2", the options to enter the network key is grayed out. But when i choose WPA2-PSK, i am able to enter the network key and it's not grayed out.

MY question is what's the difference between the 2? why are there two wpa2 options? I know PSK stands for preshared key but I mean when you choose an encryption, you're forced to put a network key, So that means when i choose WPA2, you should allow me to enter the key, not gray it out. WHAts' the point of having 2 WPA options, that's redundant and have one grayed out while the other is not?

Please check my pictures below

Grayed_out.jpg


NOT_GRAYED_OUT.jpg


3_OPTIONS.jpg
 
As you've surmised, WPA2-PSK is for if you want to use a fixed pre-shared key for all devices connecting to your WiFi network.

WPA2 (no PSK) is if you want to use an authentication server. Usually it's businesses which do this, as it allows you to assign a unique key to each individual device. If a device and its key are ever lost or compromised with a pre-shared key, you have to change the key and everyone has to update their device with the new key. With an authentication service, if a device and its key is lost or compromised, you just invalidate that one key and generate a new one for that device. Everyone else's keys are unaffected (and still secure since they're different from the lost one).

When you pick WPA2 (no PSK), the authentication method is probably selected on the Authentication tab.

Edit: BTW, don't use TKIP. It's been cracked. Always use AES only (no AES + TKIP). This does mean some very old WiFi devices which don't support AES cannot connect to your network.
 
Well yea i'm using TKip because i have a 13 year old laptop that needs it, even with WPA-TKIP, this intel pro 2200 wifi card still disconnects frequently. The only way is when i leave the network open or use WEP, and those are beyond terrible so i won't do that. I Rather take the frequent disconnects.

Anyway, so basically that grayed out WPA option is the Radius server right?