Cisco Systems CISCO881SECK9 Security Types, Security Type Description Security Features Enabled

Page 51

Chapter 4 Basic Wireless Device Configuration

Configuring Wireless Settings

Read Without VLANs, encryption settings (WEP and ciphers) apply to an interface, such as the 2.4-GHz radio, and you cannot use more than one encryption setting on an interface. For example, when you create an SSID with static WEP with VLANs disabled, you cannot create additional SSIDs with WPA authentication because the SSIDs use different encryption settings. If you find that the security setting for an SSID conflicts with the settings for another SSID, you can delete one or more SSIDs to eliminate the conflict.

Security Types

Table 4-1describes the four security types that you can assign to an SSID.

Table 4-1

Types of SSID Security

 

 

 

 

 

Security Type

 

Description

Security Features Enabled

 

 

 

 

No security

 

This is the least secure option. You should use this option

None.

 

 

only for SSIDs in a public space and you should assign it to

 

 

 

a VLAN that restricts access to your network.

 

 

 

 

 

Static WEP key

 

This option is more secure than no security. However, static

Mandatory WEP. Client devices cannot

 

 

WEP keys are vulnerable to attack. If you configure this

associate using this SSID without a WEP

 

 

setting, you should consider limiting association to the

key that matches the wireless device key.

 

 

wireless device based on MAC address, see Cipher Suites

 

 

 

and WEP at:

 

 

 

http://www.cisco.com/en/US/docs/routers/access/wireless/

 

 

 

software/guide/SecurityCipherSuitesWEP.html.

 

 

 

Or

 

 

 

If your network does not have a RADIUS server, consider

 

 

 

using an access point as a local authentication server.

 

 

 

See Using the Access Point as a Local Authenticator for

 

 

 

instructions:

 

 

 

http://www.cisco.com/en/US/docs/routers/access/wireless/

 

 

 

software/guide/SecurityLocalAuthent.html.

 

 

 

 

 

Cisco 880 Series Integrated Services Router Software Configuration Guide

 

OL-22206-01

4-7

 

 

 

Image 51
Contents Americas Headquarters Page Audience ObjectiveConvention Description Boldface font OrganizationConventions ChaptersSearching Cisco Documents Related DocumentationObtaining Documentation and Submitting a Service Request General Description Cisco 880 Series ISRModels of the Cisco 880 Series ISRs Battery-backed-up Real-Time Clock Common FeaturesPort 10/100 FE LAN Switch 802.11b/g/n Wireless LANC886VA-W Selecting Feature SetsLicensing C881WC887VA-W C881GWMB memory MB Flash Flash size MemoryC887GW On Board Memory 1st core 2nd coreSteady on= link LED OverviewColor Description Indication FE/GE LAN/WANPppok VpnokImages supported Power SupplyMR2 Minimum software version needed to support AP802Software Minimum version TBDOL-22206-01 Software Modes Wireless Device OverviewManagement Options Root Access Point Network Configuration ExamplesAccess point Central Unit in an All-Wireless NetworkBasic Router Configuration Default Configuration Interface PortsRouter Interface Port Label Basic Router Configuration Default Configuration Information Needed for Configuration Example Configuring Command-Line AccessCommand Purpose Line aux console tty vty line-numberExample Command PurposeHostname name Specifies the name for the router Example Configuring Global ParametersConfiguring WAN Interfaces Terminal, use the followingController vdsl Configuring a Fast Ethernet WAN InterfaceConfiguring a VDSL2 WAN Interface No shutdown ExitShutdown Shutdown No shutdown Exit1shows an ATM WAN or Ethernet WAN network topography Configuring Adsl ModeConfiguring Adsl Auto Mode Configuring CPE and Peer Adsl ModeVerifying CPE to Peer Connection for Adsl Configuring the ATM CPE Side No shutdown Interface atm0.1 point-to-pointPvc name vpi/vci Virtual-template inarp no Adsl Configuration ExampleCommand Purpose Step Configures a static map for an ATMNo fair-queue ATM Verifying Adsl ConfigurationConfiguring the Fast Ethernet LAN Interfaces Configuring the Wireless LAN InterfaceVerifying CPE to Peer Connection for Adsl Configuring a Loopback Interface Configuring Static Routes Verifying ConfigurationAnother way to verify the loopback interface is to ping it Example Verifying ConfigurationConfiguring Routing Information Protocol Configuring Dynamic RoutesNo auto-summary Router eigrp as-number Configuring Enhanced Interior Gateway Routing ProtocolBasic Router Configuration Configuring Dynamic Routes OL-22206-01 Basic Wireless Device Configuration Interface wlan-ap0 Starting a Wireless Configuration SessionWireless Device Control-Shift-6 x Router Disconnect Service-module wlan-ap 0 sessionCisco Express Setup Configuring Wireless SettingsConfiguring Access Point as Local Authenticator Cisco IOS Command Line InterfaceConfiguring the Radio Configuring Wireless Security SettingsAssigning SSIDs Configuring WEP and Cipher SuitesSecurity Type Description Security Features Enabled Security TypesInstructions WPA9 Configuring Wireless Quality of ServiceEAP1 PEAP3, EAP-TLS4, EAP-FAST5, EAP-TTLS6, EAP-GTC7Software Prerequisites Configuring the Access Point in Hot Standby ModePreparing for the Upgrade Upgrading to Cisco Unified SoftwarePerforming the Upgrade Secure an IP Address on the Access PointConfirm that the Mode Setting is Enabled Downgrading the Software on the Access Point Upgrading AP bootloaderSecurity Links Recovering Software on the Access PointWireless Overview Network Design LinksAdministering Links Why Migrate to the Cisco Unified Wireless Network?LWAPP1 Wireless LAN Controllers Home.html Lwapp Wireless LAN Access Points

CISCO881SECK9 specifications

The Cisco Systems CISCO881SECK9 is a robust and flexible router designed to cater to the needs of small to medium-sized businesses and branch offices. It is part of the Cisco 8800 series, known for its powerful performance, security features, and advanced functionalities, making it suitable for various networking applications.

One of the standout features of the CISCO881SECK9 is its integrated security capabilities. With a built-in Cisco IOS Firewall and comprehensive security features such as intrusion prevention systems (IPS), secure virtual private network (VPN) services, and support for advanced encryption protocols, businesses can confidently protect their data and communications. This level of security is crucial in today’s cyber threat landscape, where data breaches and cyberattacks can have severe implications.

Another key characteristic of the CISCO881SECK9 is its support for multiple WAN connectivity options, including Ethernet, DSL, and 3G/4G cellular connections. This versatility allows organizations to choose their preferred internet connection method, providing reliable and continuous connectivity. The device also supports load balancing across multiple WAN links, which helps optimize bandwidth utilization and enhance the overall network performance.

The router also features a range of integrated services, including voice, video, and data services, which are essential for modern business operations. With support for Voice over IP (VoIP) and video conferencing, the CISCO881SECK9 ensures that organizations can maintain effective communication and collaboration among employees, partners, and clients. This dual functionality enhances productivity while simplifying network management.

In terms of performance, the CISCO881SECK9 is equipped with advanced Quality of Service (QoS) features that prioritize critical applications and ensure optimal performance even during peak traffic periods. This capability is particularly important for businesses that rely on real-time applications such as video conferencing and VoIP, ensuring high-quality service delivery.

Moreover, the router's scalability allows organizations to grow without needing to overhaul their entire network infrastructure. It supports various expansion modules, providing flexibility to add additional features and capabilities as business needs evolve.

With its combination of security, performance, and integrated services, the Cisco Systems CISCO881SECK9 stands out as a reliable choice for enterprises looking to enhance their networking capabilities while ensuring a secure and scalable infrastructure. Its thoughtful design, robust features, and adaptability make it suitable for a wide range of business applications, enabling companies to thrive in a fast-paced digital landscape.