Cisco Systems CISCO881SECK9 manual Cisco IOS Command Line Interface, Configuring the Radio

Page 49

Chapter 4 Basic Wireless Device Configuration

Configuring Wireless Settings

Cisco IOS Command Line Interface

To configure the Autonomous wireless device, use the Cisco IOS CLI tool and perform these tasks:

Configuring the Radio, page 4-5

Configuring Wireless Security Settings, page 4-5

Configuring Wireless Quality of Service, page 4-8(Optional)

Configuring the Radio

Configure the radio parameters on the wireless device to transmit signals in autonomous or Cisco Unified mode. For specific configuration procedures, see Chapter 9, “Configuring Radio Settings”.

Configuring Wireless Security Settings

Configuring Authentication, page 4-5

Configuring WEP and Cipher Suites, page 4-6

Configuring Wireless VLANs, page 4-6

Configuring Authentication

Authentication types are tied to the Service Set Identifiers (SSIDs) that are configured for the access point. To serve different types of client devices with the same access point, configure multiple SSIDs.

Before a wireless client device can communicate on your network through the access point, the client device must authenticate to the access point by using open or shared-key authentication. For maximum security, client devices should also authenticate to your network using MAC address or Extensible Authentication Protocol (EAP) authentication. Both authentication types rely on an authentication server on your network.

To select an authentication type, see Authentication Types for Wireless Devices at: http://www.cisco.com/en/US/docs/routers/access/wireless/software/guide/SecurityAuthenticationTypes

.html.

To set up a maximum security environment, see RADIUS and TACACS+ Servers in a Wireless Environment at: http://www.cisco.com/en/US/docs/routers/access/wireless/software/guide/SecurityRadiusTacacs_1.htm l.

Configuring Access Point as Local Authenticator

To provide local authentication service or backup authentication service for a WAN link failure or a server failure, you can configure an access point to act as a local authentication server. The access point can authenticate up to 50 wireless client devices using Lightweight Extensible Authentication Protocol (LEAP), Extensible Authentication Protocol-Flexible Authentication via Secure Tunneling (EAP-FAST), or MAC-based authentication. The access point performs up to 5 authentications per second.

You configure the local authenticator access point manually with client usernames and passwords because it does not synchronize its database with RADIUS servers. You can specify a VLAN and a list of SSIDs that a client is allowed to use.

Cisco 880 Series Integrated Services Router Software Configuration Guide

 

OL-22206-01

4-5

 

 

 

Image 49
Contents Americas Headquarters Page Audience ObjectiveConventions OrganizationChapters Convention Description Boldface fontSearching Cisco Documents Related DocumentationObtaining Documentation and Submitting a Service Request Cisco 880 Series ISR General DescriptionModels of the Cisco 880 Series ISRs Port 10/100 FE LAN Switch Common Features802.11b/g/n Wireless LAN Battery-backed-up Real-Time ClockLicensing Selecting Feature SetsC881W C886VA-WC881GW C887VA-WMB memory MB Flash C887GW MemoryOn Board Memory 1st core 2nd core Flash sizeColor Description Indication LED OverviewFE/GE LAN/WAN Steady on= linkPppok VpnokImages supported Power SupplySoftware Minimum version Minimum software version needed to support AP802TBD MR2OL-22206-01 Software Modes Wireless Device OverviewManagement Options Root Access Point Network Configuration ExamplesAccess point Central Unit in an All-Wireless NetworkBasic Router Configuration Interface Ports Default ConfigurationRouter Interface Port Label Basic Router Configuration Default Configuration Information Needed for Configuration Command Purpose Configuring Command-Line AccessLine aux console tty vty line-number ExampleExample Command PurposeConfiguring WAN Interfaces Configuring Global ParametersTerminal, use the following Hostname name Specifies the name for the router ExampleConfiguring a VDSL2 WAN Interface Configuring a Fast Ethernet WAN InterfaceNo shutdown Exit Controller vdslShutdown Shutdown No shutdown Exit1shows an ATM WAN or Ethernet WAN network topography Configuring Adsl ModeConfiguring CPE and Peer Adsl Mode Configuring Adsl Auto ModeVerifying CPE to Peer Connection for Adsl No shutdown Interface atm0.1 point-to-point Configuring the ATM CPE SidePvc name vpi/vci Command Purpose Step Adsl Configuration ExampleConfigures a static map for an ATM Virtual-template inarp noNo fair-queue ATM Verifying Adsl ConfigurationConfiguring the Wireless LAN Interface Configuring the Fast Ethernet LAN InterfacesVerifying CPE to Peer Connection for Adsl Configuring a Loopback Interface Verifying Configuration Configuring Static RoutesAnother way to verify the loopback interface is to ping it Example Verifying ConfigurationConfiguring Routing Information Protocol Configuring Dynamic RoutesNo auto-summary Router eigrp as-number Configuring Enhanced Interior Gateway Routing ProtocolBasic Router Configuration Configuring Dynamic Routes OL-22206-01 Basic Wireless Device Configuration Interface wlan-ap0 Starting a Wireless Configuration SessionWireless Device Control-Shift-6 x Router Disconnect Service-module wlan-ap 0 sessionCisco Express Setup Configuring Wireless SettingsConfiguring the Radio Cisco IOS Command Line InterfaceConfiguring Wireless Security Settings Configuring Access Point as Local AuthenticatorAssigning SSIDs Configuring WEP and Cipher SuitesSecurity Types Security Type Description Security Features EnabledInstructions EAP1 Configuring Wireless Quality of ServicePEAP3, EAP-TLS4, EAP-FAST5, EAP-TTLS6, EAP-GTC7 WPA9Preparing for the Upgrade Configuring the Access Point in Hot Standby ModeUpgrading to Cisco Unified Software Software PrerequisitesSecure an IP Address on the Access Point Performing the UpgradeConfirm that the Mode Setting is Enabled Downgrading the Software on the Access Point Upgrading AP bootloaderWireless Overview Recovering Software on the Access PointNetwork Design Links Security LinksWhy Migrate to the Cisco Unified Wireless Network? Administering LinksLWAPP1 Wireless LAN Controllers Home.html Lwapp Wireless LAN Access Points

CISCO881SECK9 specifications

The Cisco Systems CISCO881SECK9 is a robust and flexible router designed to cater to the needs of small to medium-sized businesses and branch offices. It is part of the Cisco 8800 series, known for its powerful performance, security features, and advanced functionalities, making it suitable for various networking applications.

One of the standout features of the CISCO881SECK9 is its integrated security capabilities. With a built-in Cisco IOS Firewall and comprehensive security features such as intrusion prevention systems (IPS), secure virtual private network (VPN) services, and support for advanced encryption protocols, businesses can confidently protect their data and communications. This level of security is crucial in today’s cyber threat landscape, where data breaches and cyberattacks can have severe implications.

Another key characteristic of the CISCO881SECK9 is its support for multiple WAN connectivity options, including Ethernet, DSL, and 3G/4G cellular connections. This versatility allows organizations to choose their preferred internet connection method, providing reliable and continuous connectivity. The device also supports load balancing across multiple WAN links, which helps optimize bandwidth utilization and enhance the overall network performance.

The router also features a range of integrated services, including voice, video, and data services, which are essential for modern business operations. With support for Voice over IP (VoIP) and video conferencing, the CISCO881SECK9 ensures that organizations can maintain effective communication and collaboration among employees, partners, and clients. This dual functionality enhances productivity while simplifying network management.

In terms of performance, the CISCO881SECK9 is equipped with advanced Quality of Service (QoS) features that prioritize critical applications and ensure optimal performance even during peak traffic periods. This capability is particularly important for businesses that rely on real-time applications such as video conferencing and VoIP, ensuring high-quality service delivery.

Moreover, the router's scalability allows organizations to grow without needing to overhaul their entire network infrastructure. It supports various expansion modules, providing flexibility to add additional features and capabilities as business needs evolve.

With its combination of security, performance, and integrated services, the Cisco Systems CISCO881SECK9 stands out as a reliable choice for enterprises looking to enhance their networking capabilities while ensuring a secure and scalable infrastructure. Its thoughtful design, robust features, and adaptability make it suitable for a wide range of business applications, enabling companies to thrive in a fast-paced digital landscape.