SonicWall TZW firewalls have an embedded wireless radio, which allows them to be configured to broadcast a SSID and have users connect to the firewall’s WLAN network. The firewall can also act as a wireless station (client), where the TZW connects to another Access Point broadcasting an SSID.
When the TZ wireless device is operating in Access Point mode and is broadcasting an SSID, SonicWall recommends that the Authentication Type be set to WPA3/WPA2-PSK (Transition mode). Or, if you have access to NPS (RADIUS Server), use WPA3/WPA2-EAP instead.
If you are not using a virtual access point
Navigate to Device > Internal Wireless > Security and select WPA3/WPA2-PSK as the authentication type.
Enter a strong Pre-Shared Key, leveraging the guidance on password best practices found in NIST Special Publication 800-63B, ISO/IEC EN 27002:2022, ISO/IEC EN 24760, IEC EN 62443-4-2, and ETSI EN 303 645.
SonicWall TZ Series wireless starts broadcasting the SSID, and the Pre-Shared Key is used by clients connecting to the SSID Wireless Network.
If you are using a virtual access point
On the Advanced tab go to the Virtual Access Point Profile Settings section and select the Authentication Type from the drop-down list.
Add the new created virtual access point object to the Virtual Access Points Groups – Internal Wireless AP Group.
Navigate to Device > Internal Wireless > Settings.
The TZ wireless firewall will start broadcasting the SSID. and the Pre-Shared Key will be used by clients connecting to the SSID and wireless network.