User Profiles - Black Box LWN602A User Manual

Smartpath enterprise wireless system
Hide thumbs Also See for LWN602A:
Table of Contents

Advertisement

Chapter 9: Common Configuration Examples
*NOTE: It is also possible for groups of users to use the same private PSK. For example, you might find it expedient to create a
single private PSK user for visitors. You then e-mail the private PSK user data to the lobby ambassador to hand out to all
visitors that arrive that week. If you set the validity period so that it recurs on a weekly basis, SmartPath EMS and the
SmartPath APs generate a new PSK for that private PSK user each week. With this approach, the SmartPath APs update
the PSK automatically at the start of each new week, and you simply e-mail the new data from SmartPath EMS to the
lobby ambassador to distribute to that week's visitors. (It is important that the system clocks on SmartPath EMS and the
SmartPath APs be synchronized for this to work properly.)

9.4.1 User Profiles

Unlike a traditional PSK SSID, a private PSK SSID can support multiple user profiles. For this example, you create two user profiles,
one for employees with full network access and another for contractors with limited access.
To define a user profile for employees, click Configuration > User Profiles > New, enter the following, leave the other settings as
they are, and then click Save:
Name: Employees(30)
The number 30 is included as part of the user profile name so that you can easily know its attribute.
Attribute Number: 30
The SmartPath AP uses this attribute number to link the user profile to a user group with the same attribute. You can use
any number between 1 and 4095.
Default VLAN: 1
Description: Corporate employees
To define a user profile for contractors with a firewall policy that allows basic network protocols to the public network while
blocking access to the internal network, click Configuration > User Profiles > New, enter the following, leave the other settings as
they are, and then click Save:
Name: Contractors(35)
Attribute Number: 35
Default VLAN: 1
Description: short-term contractors
Expand Firewalls, and enter the following in the IP Firewall Policy section:
From-Access: Click the New icon to open the IP Firewall Policy dialog box, and then enter the following:
Policy Name: contractors-outgoing-IP-policy
Description: Apply to contractor user profiles
Policy Rules:
To add rules permitting only DHCP, DNS, HTTP, and HTTPS to the public network while denying any type of
traffic to the internal network, enter the following (use CTRL-click or SHIFT-click to select multiple services):
Page 120
724-746-5500 | blackbox.com

Advertisement

Table of Contents
loading

This manual is also suitable for:

Lwn602aeLwn602haLwn602hae

Table of Contents