Configuring Authentication For Access Points - Cisco 2100 Series Configuration Manual

Wireless lan controller
Hide thumbs Also See for 2100 Series:
Table of Contents

Advertisement

Chapter 7
Controlling Lightweight Access Points
Information similar to the following appears:
Cisco AP Identifier.............................. 0
Cisco AP Name.................................. HReap
...
AP User Mode..................................... AUTOMATIC
AP User Name..................................... globalap
...
Note

Configuring Authentication for Access Points

You can configure 802.1X authentication between a lightweight access point and a Cisco switch. The
access point acts as an 802.1X supplicant and is authenticated by the switch using EAP-FAST with
anonymous PAC provisioning.
This feature is supported on the following hardware:
You can configure global authentication settings that all access points inherit as they join the controller.
This includes all access points that are currently joined to the controller and any that join in the future.
If desired, you can override the global authentication settings and assign unique authentication settings
for a specific access point.
Observe the following flow for configuring authentication for access points:
1.
OL-17037-01
If this access point is configured for global credentials, the AP User Mode fields shows
"Automatic." If the global credentials have been overwritten for this access point, the AP User
Mode field shows "Customized."
Cisco Aironet 1130, 1140, 1240, and 1250 series access points
All controller platforms running in local, hybrid-REAP, monitor, or sniffer mode. Bridge mode is
not supported.
In hybrid-REAP mode, you cannot configure local switching with 802.1X authentication;
Note
you can configure central switching only.
All Cisco switches that support authentication
Refer to the Release Notes for Cisco Wireless LAN Controllers and Lightweight Access
Note
Points for Release 5.2 for a list of supported switch hardware and minimum supported
software.
If the access point is new, do the following:
Boot the access point with the installed recovery image.
a.
If you choose not to follow this suggested flow and instead enable 802.1X authentication on the
b.
switch port connected to the access point prior to the access point joining the controller, enter
the following command:
lwapp ap dot1x username username password password
Configuring Authentication for Access Points
Cisco Wireless LAN Controller Configuration Guide
7-9

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

4400 series

Table of Contents