
Figure 87 Adding anOAW-IAP in VisualRF
PSK-based and Certificate-based Authentication
On the DHCP server, two formats for option 43 are supported:
l <organization>,<ams-ip>,<ams-key>— If you choose this format, the OAW-IAP authenticates the OmniVista
Management Platform server using the Pre-Shared Key (PSK) login process.
l <organization>,<ams-domain>— If you choose this format, the OAW-IAP resolves the OmniVista domain
name into one or two IP address as OmniVista Primary or OmniVista Backup, and then OAW-IAP will start a
certificate-based authentication with OmniVista Management platform server, instead of the PSK login. When
the OmniVista Management platform domain name is used, the OAW-IAP performs certificate-based
authentication with OmniVista Management platform server. The OAW-IAP initiates an SSL connection with the
OmniVista server. The OmniVista server verifies the signature and public key certificate from the OAW-IAP. If
the signature matches, the OmniVista responds to the OAW-IAP with the login request.
Configuring Omnivista
Before configuring the Omnivista, ensure that you have the following information:
l IP address of the Omnivista server.
l Shared key for service authorization, assigned by the Omnivista administrator.
This section describes the following procedures:
l Configuring Organization String on page 260
l Configuring for OmniVista Discovery through DHCP on page 262
l Alternate Method for Defining Vendor-Specific DHCP Options on page 265
Configuring Organization String
The Organization string is a set of colon-separated strings created by the Omnivista administrator to accurately
represent the deployment of each AOS-W Instant system. This string is defined by the installation personnel on the
site.
You can use any of the following strings:
l AMP Role— "Org Admin" (initially disabled)
l AMP User— "Org Admin" (assigned to the role "Org Admin")
AOS-W Instant 6.3.1.1-4.0 | User Guide OmnivistaIntegration and Management | 260
Kommentare zu diesen Handbüchern