
Parameter Description
Security Level
Type
1. Select an appropriate value for WEP key size from the
WEP key size drop-down list. You can specify 64-bit or
128-bit .
2. Select an appropriate value for Tx key from the Tx Key
drop-down list. You can specify 1, 2, 3, or 4.
3. Enter an appropriate WEP key and reconfirm.
802.11r
roaming
To enable 802.11r roaming, select Enabled from the 802.11r roaming drop-
down. Selecting this checkbox enables fast BSS transition.
The Fast BSS Transition mechanism minimizes the delay when a client
transitions from one BSS to another within the same cluster.
Enterprise,
Personal, and Open
security levels.
Termination To terminate the EAP portion of 802.1X authentication on the OAW-IAP
instead of the RADIUS server, set Termination to Enabled.
Enabling Termination can reduce network traffic to the external RADIUS
server by terminating the authorization protocol on the OAW-IAP. By
default, for 802.1X authorization, the client conducts an EAP exchange with
the RADIUS server, and the OAW-IAP acts as a relay for this exchange.
When Termination is enabled, the OAW-IAP by itself acts as an
authentication server and terminates the outer layers of the EAP protocol,
only relaying the innermost layer to the external RADIUS server.
NOTE: If you are using LDAP for authentication, ensure that AP termination
is configured to support EAP.
Enterprise security
level
Authentication
server 1 and
Authentication
server 2
Select any of the following options from the Authentication server 1 drop-
down list:
l Select an authentication server from the list if an external servers are
already configured.
l Select New to configure any of the following servers as an external
server:
l RADIUSServer
l LDAP Server
l CPPMServer for AirGroup CoA
For information on configuring external servers, see Configuring an
External Server for Authentication on page 144.
l To use an internal server, select Internal server and add the clients that
are required to authenticate with the internal RADIUS server. Click the
Users link to add the users. For information on adding a user, see User
Management on page 128.
If an external server is selected, you can also configure another
authentication server.
Enterprise,
Personal, and Open
security levels.
Load balancing Set this to Enabled if you are using two RADIUS authentication servers, so
that the load across the two RADIUSservers is balanced.
Enterprise,
Personal, and Open
security levels.
Reauth interval Specify a value for Reauth interval. When set to a value greater than zero,
APs periodically reauthenticate all associated and authenticated clients.
Enterprise,
Personal, and Open
security levels.
Blacklisting
To enable blacklisting of the clients with a specific number of authentication
failures, select Enabled from the Blacklisting drop-down list and specify a
value for Max authentication failures. The users who fail to authenticate the
number of times specified in Max authentication failures field are
dynamically blacklisted.
Enterprise,
Personal, and Open
security levels.
Table 18:
Configuration Parameters for WLANSecurity Settings
AOS-W Instant 6.3.1.1-4.0 | User Guide Wireless Network Profiles | 93
Kommentare zu diesen Handbüchern