Alcatel-Lucent IAP93 Betriebsanweisung Seite 160

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 335
  • Inhaltsverzeichnis
  • FEHLERBEHEBUNG
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 159
3. Under Dynamic Blacklisting:
4. For Auth failure blacklist time, duration in seconds after which the clients that exceed the authentication failure
threshold must be blacklisted.
5. For PEF rule blacklisted time, enter the duration in seconds after which the clients can be blacklisted due to an
ACL rule trigger.
You can configure a maximum number of authentication failures by the clients, after which a client must
be blacklisted. For more information on configuring maximum authentication failure attempts, see
Configuring Security Settings for a WLAN SSID Profile on page 90
To enable session firewall based blacklisting, click New and navigate to WLAN Settings > VLAN >
Security > Access window, and enable the Blacklist option of the corresponding ACL rule.
In the CLI
To dynamically blacklist clients:
(Instant Access Point)(config)# auth-failure-blacklist-time <seconds>
(Instant Access Point)(config)# blacklist-time <seconds>
(Instant Access Point)(config)# end
(Instant Access Point)# commit apply
To view the blacklisted clients:
(Instant Access Point)# show blacklist-client config
Blacklist Time :60
Auth Failure Blacklist Time :60
Manually Blacklisted Clients
----------------------------
MAC Time
--- ----
Dynamically Blacklisted Clients
-------------------------------
MAC Reason Timestamp Remaining time(sec) AP IP
--- ------ --------- ------------------- -----
Dyn Blacklist Count :0
Uploading Certificates
A certificate is a digital file that certifies the identity of the organization or products of the organization. It is also used
to establish your credentials for any web transactions. It contains the organization name, a serial number, expiration
date, a copy of the certificate-holder's public key, and the digital signature of the certificate-issuing authority so that a
recipient can ensure that the certificate is real.
AOS-W Instant supports the following certificate files:
l Auth server or Captive portal server certificate: PEM format with passphrase (PSK)
l CA certificate: PEM or DER format
In the current release, OAW-IAP supports uploading of a customized certificate for internal Captive portal server.
This section describes the following procedures:
l Loading Certificates using AOS-W Instant UI on page 161
l Loading Certificates using AOS-W Instant CLI
l Loading Certificates using Omnivista on page 161
AOS-W Instant 6.3.1.1-4.0 | User Guide Authentication | 160
Seitenansicht 159
1 2 ... 155 156 157 158 159 160 161 162 163 164 165 ... 334 335

Kommentare zu diesen Handbüchern

Keine Kommentare