Private Psk User Groups - Black Box LWN602A User Manual

Smartpath enterprise wireless system
Hide thumbs Also See for LWN602A:
Table of Contents

Advertisement

(Click...)
New
New
New
New
* The three addresses "10.0.0.0/8", "172.16.0.0/12", and "192.168.0.0/16" that define private network address space were
created in a previous example. See "Address Objects" in Figure 9-15.
Click "Save" to save the IP firewall policy and return to the User Profile dialog box.
From-Access: contractors-outgoing-IP-policy (This is the firewall policy that you just created.)
To-Access: (nothing)
Default Action: Deny

9.4.2 Private PSK User Groups

You next create two private PSK user groups, one for employees and another for contractors.
To create a private PSK user group for employees, click Configuration > Advanced Configuration > Authentication > Local User
Groups > New, enter the following, and then click Save:
User Group Name: Employees(30)
Including the attribute number in the private PSK user group name and in the user profile name makes it easier to match them
when configuring the SSID.
Description: Corp employees
User Type: Manually created private PSK users
User Profile Attribute: 30
This must be the same number as the user profile "Employees(30)".
VLAN ID: 1
If you leave this field empty, the SmartPath AP applies the VLAN ID set in the Employees(30) user profile, which is already set
as 1. If you set a different VLAN ID here than the one in the user profile, this setting takes precedence over the one in user
profile.
Reauthorization Time: 1800 (default)
This setting is only used when private PSK user accounts are stored on a RADIUS server and a reauthorization interval is not set
on the server for those users. If user accounts are stored on a RADIUS server that returns a reauthorization interval attribute, the
SmartPath APs use that value instead of this one. If user accounts are stored locally on SmartPath APs, the SmartPath APs
ignore this setting.
To create a private PSK user group for contractors, click Configuration > Advanced Configuration > Authentication > Local User
Groups > New, enter the following, and then click Save:
User Group Name: Contractors(35)
Description: Contractors at corp
User Type: Manually created private PSK users
Table 9-3. CTRL-click or SHIFT-click to select multiple services.
Source
Destination*
[-any]
[-any-]
[-any-]
10.0.0.0/8
[-any-]
172.16.0.0/12
[-any-]
192.168.0.0/16
[-any-]
[-any-]
724-746-5500 | blackbox.com
Chapter 9: Common Configuration Examples
Service
Action
DHCP-Server, DNS
Permit
[-any-]
Deny
[-any-]
Deny
[-any-]
Deny
HTTP, HTTPS
Permit
Logging*
(Click)
Off
Apply
Dropped Packets
Apply
Dropped Packets
Click "Apply."
Dropped Packets
Click "Apply."
Both
Apply
Page 121

Advertisement

Table of Contents
loading

This manual is also suitable for:

Lwn602aeLwn602haLwn602hae

Table of Contents