LevelOne 11g PoE Wireless Access Point UAM authentication Internal, UAM authentication External

Page 27

Setup

UAM

UAM (Universal Access Method) is intended for use in Internet cafes, Hot Spots, and other sites where the Access Point is used to provide Internet Access.

If enabled, then HTTP (TCP, port 80) connections are checked. (UAM only works on HTTP connections; all other traffic is ignored.) If the user has not been authenticated, Internet access is blocked, and the user is re-directed to another web page. Typically, this web page is on your Web server, and explains how to pay for and obtain Internet access.

To use UAM, you need a Radius Server for Authentication. The "Radius Server Setup" must be completed before you can use UAM. The required setup depends on whether you are using “Internal” or “External” authentication.

Internal authentication uses the web page built into the Wireless Access Point.

External authentication uses a web page on your Web server. Generally, you should use External authentication, as this allows you to provide relevant and helpful information to users.

UAM authentication - Internal

1.Ensure the Wireless Access Point can login to your Radius Server.

Add a RADIUS client on RADIUS server, using the IP address or name of the Wireless Access Point, and the same shared key as entered on the Wireless Access Point.

Ensure the Wireless Access Point has the correct address, port number, and shared key for login to your Radius Server. These parameters are entered either on the Security page, or the UAM sub-screen, depending on the security method used.

2.Add users on your RADIUS server as required, and allow access by these users.

3.Client PCs must have the correct Wireless settings in order to associate with the Wireles Access Point.

4.When an associated client tries to use HTTP (TCP, port 80) connections, they will be re- directed to a user login page.

5.The client (user) must then enter the user name and password, as defined on the Radius Server. (You must provide some system to let users know the correct name and password to use.)

6.If the user name and password is correct, Internet access is allowed. Otherwise, the user remains on the login page.

Clients which pass the authentication are listed as “xx:xx:xx:xx:xx:xx WEB authentication” in the log table, and station status would show as “Authenticated” on the station list table.

If a client fails authentication, “xx:xx:xx:xx:xx:xx WEB authentication failed” shown in the log, and station status is shown as “Authenticating” on the station list table.

UAM authentication - External

1.Ensure the Wireless Access Point can login to your Radius Server.

Add a RADIUS client on RADIUS server, using the IP address or name of the Wireless Access Point, and the same shared key as entered on the Wireless Access Point.

Ensure the Wireless Access Point has the correct address, port number, and shared key for login to your Radius Server. These parameters are entered either on the Security page, or the UAM sub-screen, depending on the security method used.

23

Image 27
Contents Users Guide Page Table of Contents Overview Command Reference Wireless Access PointOverview General Problems Overview Wireless LAN TerminologyIntroduction Features of your Wireless Access PointAdvanced Features Security FeaturesIntroduction Physical Details Package ContentsRear Panel Requirements InstallationProcedure RequirementsUsing PoE Power over Ethernet Using PoE Power over EthernetPage Overview Access Point SetupSetup using the Windows Utility InstallationButtons Wireless Access PointsPass-phrase just works for Hex and not for Setup ProcedurePassword Dialog Setup using a Web BrowserIf you cant connect Access Control Data Access Control ScreenButtons Data Trusted Wireless Stations Trusted Wireless StationsAdd Security ProfilesSelect None EditIsolation Data Security Profiles ScreenProfile Primary ProfileSecurity System Wireless BandSecurity Profile Screen Profile DataSetup Security Settings None Radius MAC AuthenticationUsing MAC authentication Setup Data Radius-based MAC Authentication Screen Radius-based MAC authentication ScreenUAM authentication External UAM authentication InternalData UAM Screen UAM ScreenSecurity Settings WEP Data WEP Screen WPA Encryption Security Settings WPA-PSKData WPA-PSK Screen Network KeyWhen any membership Pairwise Key UpdateGroup Key Update Update Group keyWPA-802.1x Wireless Security Security Settings WPA-802.1xWPA-802.1x Data WPA-802.1x ScreenEvery Update Report802.1x Wireless Security Security Settings802.1x Data 802.1x ScreenUAM IP Address System ScreenData System Screen IdentificationWins Server Name/IP Address Wireless Mode Wireless ScreensBasic Settings Screen Data Basic Settings ScreenMAC Address field AP ModeBridge Mode Broadcast SsidParameters Options Advanced SettingsData Advanced Settings Screen Basic Rate802.11b PC and Server Configuration Using WEPSecurity Using WPA-PSK 802.1x Using WPA-802.1xWireless Station Configuration Radius Server Configuration802.1x Server Setup Windows 2000 Server Windows 2000 Domain Controller SetupServices Installation Components Screen CA Screen Dhcp server configurationIP Address Screen Certificate Authority Screen Certificate Authority SetupActive Directory Screen Group Policy Screen Service Screen Internet Authentication Service Radius SetupAuthentication Screen Dial-in Screen Remote Access Login for UsersClient Certificate Setup 802.1x Client Setup on Windows XPWireless CA Screen Identifying Information Screen Encryption Settings 802.1x Authentication SetupEnabling Encryption Wireless Networks ScreenProperties Screen Using 802.1x Mode without WPA Operation and Status OperationStatus Screen Security Profiles Access PointWireless Data Status ScreenSystem Up Time 4GHz WirelessStatistics Screen Data Statistics ScreenMulticast Packets ManagementControl Profile Status BandClients Activity Log Data Activity LogData Refresh Button Station ListData Station List Screen Station ListAdmin Login Screen Access Point ManagementData Admin Login Screen LoginAdmin Connections Perform Auto Auto Config/UpdateData Auto Config/Update Screen Configuration on this APAuto Update Restore Config FileData Config File Screen BackupRevert to factory DefaultsData Log Settings Screen Log Settings SyslogEnable Detection Rogue APsData Rogue AP Screen Traps Data Snmp ScreenGeneral ManagersTo perform the Firmware Upgrade Upgrade FirmwareWireless Specifications SpecificationsWireless Access Point Hardware SpecificationsFeature Details Software SpecificationsMessage Log FCC Radiation Exposure Statement FCC StatementTroubleshooting General ProblemsTo Find the Access Points IP Address Wireless Access Point User Guide Checking TCP/IP Settings Windows 9x/ME Windows TCP/IPNormally, no changes need to be made Using Specify an IP Address Using DhcpWindows NT4.0 TCP/IP Checking TCP/IP Settings Windows NT4.0Obtain an IP address from a Dhcp Server Network Configuration Win Checking TCP/IP Settings WindowsUsing a fixed IP Address Use the following IP Address Network Configuration Windows XP Checking TCP/IP Settings Windows XPUsing Dhcp Infrastructure Mode About Wireless LANsWireless LAN Terminology Ad-hoc ModeWPA-802.1x Channels802.1x Command Line Interface Using the CLI TelnetUsing the CLI Serial Port CLI Port Settings Command ReferenceWireless Access Point User Guide Display 11g Beacon Rate Wireless Access Point User Guide Mem -- system memory statistics Set 11g Beacon Rate Appendix C Windows TCP/IP Wireless Access Point User Guide
Related manuals
Manual 94 pages 34.52 Kb