Enterasys Networks RBT-4102 manual Features, Policy

Page 18

Features

Features

The features and benefits of the RBT‐4102 include the following:

Local network connection via 10/100 Mbps Ethernet ports or 54 Mbps wireless interface (supporting up to 255 mobile users per radio).

IEEE 802.11a, 802.11b, and 802.11g compliant.

Rogue AP Detection provides the ability to scan the airwaves and collect information about access points in the area. This feature detects neighboring access points and access points not authorized to participate in the network.

Advanced security features, such as WEP, WPA (Wi‐ Fi Protected Access), AES, WPA2, SNMPv3, as well as manageability features that include Enterasys NetSight Console, NetSight Policy Manager and NetSight Inventory Manager support, secure web management, secure Telnet management, and a CLI interface.

Two external antenna connectors are provided for use with both indoor and outdoor antennas. Point‐to‐point and point‐to‐multipoint connections are also supported.

Provides seamless roaming within the IEEE 802.11a, 802.11b, and 802.11g WLAN environment.

Automatically selects the available channel at power‐up.

Allows you to configure up to seven Virtual Access Points (VAPs) on each radio interface each with its own set of authentication and security parameters.

Supports Cabletron Discovery Protocol (CDP).

Supports Spectralink Voice Priority (SVP).

Supports policy classification rules via the Enterasys Netsight Policy Manager.

Policy

A policy‐based network architecture allows network administrators to map network services to identified users, machines, peripherals and other network entities. A role‐based network access policy consists of three tiers:

Classification rules make up the first or bottom tier. The rules apply to devices in the policy environment, such as switches, routers and the Enterasys RoamAbout 4102. The rules are designed to be implemented at or near the user’s point of entry to the network. The rules are typically at Layer 2, 3, or 4 of the ISO network model.

The middle tier is Services, which allows multiple classification rules to be aggregated. Services can include e‐mail and Internet access.

Roles, or Behavioral Profiles make up the top tier. The roles assign services to various business functions or departments, such as executive, sales, and engineering.

To implement most roles, policy‐based networking requires authentication such as MAC address or 802.1X using EAP‐TLS, EAP‐TTLS, or EAP‐PEAP. Authorization information, attached to the authentication response, determines the application of the access policy. One way to communicate the authorization information is to include the Policy Name in a RADIUS Filter‐ID attribute. A security administrator can also define a role to be implemented in the absence of an authentication and authorization.

The RBT‐4102 supports the policy classification rules via the Enterasys Policy Profile MIB.

1-2 Introduction

Image 18
Contents Enterasys RoamAbout Page Page Enterasys Networks, Inc. Firmware License Agreement Iii Page Enterasys Networks, Inc. Software License Agreement Page General Viii Contents Snmp Appendix a Default Settings Appendix B Troubleshooting IndexXii Firmware Version Support Purpose of This ManualIntended Audience Associated DocumentsGetting Help Convention DescriptionIntroduction OverviewFeatures PolicyApplications Applications Introduction Network Configuration Ad Hoc Wireless LAN no Access Point or Bridge Network TopologiesInfrastructure Wireless LAN Infrastructure Wireless LANInfrastructure Wireless LAN for Roaming Wireless PCs Infrastructure Wireless LAN for RoamingInfrastructure Wireless Bridge Infrastructure Wireless BridgeNetwork Topologies Network Configuration Initial Setup Using the CLI Required ConnectionsLogging Enter no ip dhcp to disable Dhcp Using Web Management Initial Setup Using the CLI ```` Initial Setup Using the CLI Initial Setup Using the CLI Initial Setup Using the CLI Initial Setup Using the CLI Using the Web Interface Using the Command Line Interface CLISnmp Using Web Management to Configure System Information IdentificationDisabled Using the CLI to Configure System InformationEnabled SG SingaporeTCP / IP Settings Using Web Management to Configure TCP/IP TCP / IP Settings Using the CLI to Configure TCP/IP TCP/IP ConfigurationSSH Configuration Ethernet Settings ConfigurationTCP / IP Settings Radius Using Web Management to Configure Radius Radius Attributes Radius Accounting Attribute Description Using the CLI to Configure Radius Authentication Using Web Management to Configure Authentication Using the CLI to Configure Authentication LocalAllowed Using Web Management to Configure Filter Control and VLANs Filter Control and VLANsFilter Control and VLANs Using the CLI to Configure Filter Control and VLANs CLI Commands for Vlan SupportFilter Control and VLANs CLI Commands for Filtering SVP Commands CDP Settings Using Web Management to Configure CDPCDP Settings Using the CLI to Configure CDP Using Web Management to Configure Rogue AP Detection Rogue AP DetectionUsing the CLI to Configure Rogue AP Detection Ssid TT5Using Web Management to Configure Snmp SnmpSnmp Notifications Description Snmp Notifications Security Level Snmp Targets Using the CLI to Configure Snmp CLI Commands for SnmpCLI Commands for Configuring SNMPv3 Users and Groups TPSSnmp CLI Commands for Configuring SNMPv3 Targets CLI Commands for Configuring SNMPv3 Trap FiltersAdministration Changing the PasswordUsing Web Management to Change the Password Using the CLI to Enable and Disable Com Port Using the CLI to Change the PasswordUsing Web Management to Enable and Disable Com Port Enabling and Disabling Com PortUpgrading Firmware Using Web Management to Upgrade Firmware Using the CLI to Upgrade Firmware Using Web Management to Configure System Log System LogLogging Level Descriptions Error Level Using the CLI to Configure System Log Using Web Management to Configure Sntp Using the CLI to Configure Sntp TAIPEI, BeijingWDS and STP Using Web Management to Configure WDS and STP WDS and STP WDS and STP Using the CLI to Configure WDS Using the CLI to Configure STP Radio Signal Characteristics Radio InterfaceRadio Settings Using Web Management to Configure Interface Radio SettingsVlan ID Radius Attributes Number Value Radio Interface Radio Interface Radio Interface Example Not Supported WEPAES-TKIP DynamicAdmission Control No Example Required LongTkip PRE Shared KEYAC1Background Txop Limit 0.000 ms Wi-Fi Multimedia WMM Configuration WMM OperationUsing Web Management to Configure WMM WMM Backoff Wait timesUsing the CLI to Configure WMM Ssid SW-WDSAntenna Admission Control No AC2Video Txop Limit Virtual APs VAPs Configuration Using Web Management to Configure Virtual APsRadio Interface Using the CLI to Configure Virtual APs BIT Encryption WPA-ONLYAdmission Control No Security WEPWired Equivalent Privacy WEP Using Web Management to Configure Security SettingsSecurity Page Authentication 802.1x Authentication Security Security Using the CLI to Configure WPA Pre-Shared Key Using the CLI to Configure WPA over 802.1X SecurityQuality of Service AC1Background LogCwMin LogCwMax Nopassword Allowed Using the CLI to Configure Local MAC AuthenticationNopassword Allowed Local EmptySecurity Using the CLI to Configure Radius MAC Authentication Remote Using the CLI to Configure WEP Shared Key Security Ssid WPA TKIP-WEPShared Using the CLI to Configure WEP over 802.1x Security Ssid ETSAuthentication Parameters Using the CLI to Configure WPA2 Security AESWPA2-ONLY Using the CLI to Configure WPA2 Pre-Shared Key Security WPA2-PSK Status Information Status Menu DescriptionUsing Web Management to View AP Status Status Information Using the CLI to Display AP Status SQAUsing Web Management to View CDP Status Using the CLI to Display CDP Status Using Web Management to View Station Status Status Information Using Web Management to View Neighbor AP Detection Status Gtac LAB R2 Using the CLI to View Neighbor AP Detection StatusIbss DEMOWEP1Using Web Management to View WDS-STP Status Using the CLI to View WDS-STP Status Show bridgeSTP Show bridge link Child StatusRoot Bridge Status NoneUsing Web Management to View Event Logs Using the CLI to View Event Logs RoamAbout 4102#show eventsOct 101551 Status Information Advanced Configuration Default Settings CDP WDS & STP VAP1 Nopassword Preamble Length Long Wireless Interface 802.11b/g Troubleshooting Troubleshooting StepsTroubleshooting Steps Maximum Distance Tables 80 m 264 ftMaximum Distance Tables Troubleshooting Index Radius MAC WDS 4-50bridge 4-52CLI Index-4
Related manuals
Manual 78 pages 58.85 Kb