Alcatel-Lucent IAP93 Betriebsanweisung Seite 105

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 335
  • Inhaltsverzeichnis
  • FEHLERBEHEBUNG
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 104
105 | Wired Profiles AOS-W Instant 6.3.1.1-4.0 | User Guide
In the AOS-W Instant UI
To configure security parameters for an employee network:
1. Configure the following parameters in the Security tab.
l MAC authentication To enable MAC authentication, select Enabled. The MACauthentication is disabled
by default.
l 802.1X authentication To enable 802.1X authentication, select Enabled.
l MAC authentication fail-thru To enable authentication fail-thru, select Enabled. When this feature is
enabled, 802.1X authentication is attempted when MAC authentication fails. The MAC authentication fail-
thru check box is displayed only when both MAC authentication and 802.1X authentication are Enabled.
l Select any of the following options for Authentication server 1:
n New On selecting this option, an external RADIUS server must be configured to authenticate the users.
For information on configuring an external server, see Configuring an External Server for Authentication on
page 144.Authentication on page 134
n Internal server If an internal server is selected, add the clients that are required to authenticate with the
internal RADIUS server. Click the Users link to add the users. For information on adding a user, see User
Management on page 128.
l Reauth interval Specify the interval at which all associated and authenticated clients must be
reauthenticated.
l Load balancing Set this to Enabled if you are using two RADIUS authentication servers, so that the load
across the two RADIUSservers is balanced.
2. Click Next. The Access tab details are displayed.
In the CLI
To configure security settings for an employee network:
(Instant Access Point)(config)# wired-port-profile <name>
(Instant Access Point)(wired ap profile <name>)# mac-authentication
(Instant Access Point)(wired ap profile <name>)# l2-auth-failthrough
(Instant Access Point)(wired ap profile <name>)# auth-server <name>
(Instant Access Point)(wired ap profile <name>)# server-load-balancing
(Instant Access Point)(wired ap profile <name>)# radius-reauth-interval <Minutes>
(Instant Access Point)(wired ap profile <name>)# end
(Instant Access Point)# commit apply
Configuring Access Rules for a Wired Profile
The Ethernet ports allow third-party devices such as VoIP phones or printers (which support only wired connections)
to connect to the wireless network. You can also configure an Access Control List (ACL) for additional security on
the Ethernet downlink.
If you are creating a new wired profile, complete the WiredSettings and configure VLAN and security parameters,
before defining access rules. For more information, see Configuring Wired Settings on page 102, Configuring VLAN
for a Wired Profile on page 103, and Configuring Security Settings for a Wired Profile on page 104.
You can configure access rules by using the AOS-W Instant UI or CLI.
In the AOS-W Instant UI
To configure access rules:
1. In the Access tab, configure the following access rule parameters.
a. Select any of the following types of access control:
Seitenansicht 104
1 2 ... 100 101 102 103 104 105 106 107 108 109 110 ... 334 335

Kommentare zu diesen Handbüchern

Keine Kommentare