Dell PowerConnect W-AirWave 7.6 Configuration Manual page 47

Hide thumbs Also See for PowerConnect W-AirWave 7.6:
Table of Contents

Advertisement

Field
Allowed Band
VLAN
Forward Mode
Deny Time Range
Mobile IP
HA Discovery on
Association
DoS Prevention
Station Blacklisting
Blacklist Time
Authentication Failure
Blacklist Time
Dell PowerConnect W-AirWave 7.6 | Configuration Guide
Default
Description
This profile defines your WLAN by enabling or disabling the bandsteering, fast
roaming, and DoS prevention features. It defines radio band, forwarding mode and
blacklisting parameters, and includes references an AAA Profile, an EDCA
Parameters AP Profile and a High-throughput SSID profile.
All
Select whether this WLAN is to support 802.11a, 802.11g, or both.
Enter the VLAN or range of VLANs to be supported with this WLAN.
Define whether this WLAN is to support tunnel, bridge, or split-mode IP
Tunnel
forwarding.
None
Define the time range restrictions for the roles in this WLAN, if any.
Enable or disable mobile IP functions. This setting specifies whether the controller
is the home agent for a client. When enabled, this setting detects when a mobile
Yes
client has moved to a foreign network and determines the home agent for a
roaming client.
Enable or disable HA discovery on Association. In normal circumstances a
controller performs an HA discovery only when it is aware of the client's IP
address which it learns through the ARP or any L3 packet from the client. This
limitation of learning the client's IP and then performing the HA discovery is not
effective when the client performs an inter switch move silently (does not send any
data packet when in power save mode). This behavior is commonly seen with
No
various handheld devices, Wi-Fi phones, etc. This delays HA discovery and
eventually resulting in loss of downstream traffic if any meant for the mobile client.
With HA discovery on association, a controller can perform a HA discovery as soon
as the client is associated. By default, this feature is disabled. You can enable this
on virtual APs with devices in power-save mode and requiring mobility. This option
will also poll for all potential HAs.
No
Enable or disable DoS prevention functions, as defined in virtual AP profiles.
Enable or disable DoS prevention functions, as defined in virtual AP profiles. The
blacklisting option can be used to prevent access to clients that are attempting to
breach the security.
When a client is blacklisted in the Dell PowerConnect W system, the client is not
Yes
allowed to associate with any AP in the network for a specified amount of time. If a
client is connected to the network when it is blacklisted, a de-authentication
message is sent to force the client to disconnect. While blacklisted, the client
cannot associate with another SSID in the network.
If station blacklisting is enabled, specify the time in seconds for which blacklisting
is enabled. When a client is blacklisted in the Dell PowerConnect W system, the
3600
client is not allowed to associate with any AP in the network for a specified
amount of time.
You can configure a maximum authentication failure threshold in seconds for each
of the following authentication methods:
802.1x
l
MAC
l
Captive portal
3600
l
VPN
l
When a client exceeds the configured threshold for one of the above methods, the
client is automatically blacklisted by the controller, an event is logged, and an
SNMP trap is sent. By default, the maximum authentication failure threshold is set
Configuration Reference | 41

Advertisement

Table of Contents
loading

Table of Contents