HP Cloud Network Manager Software Roaming, Termination, Authenticatio, Server, Load, Balancing

Page 28

Data pane item

Description

 

Select an appropriate value for Tx key from Tx KEY.

 

Enter an appropriate WEP KEY and reconfirm.

 

 

802.11r

To enable 802.11r roaming, select Enabled from 802.11r ROAMING. Selecting

ROAMING

this enables fast BSS transition.

 

The fast BSS transition mechanism minimizes the delay when a client transitions

 

from one BSS to another within the same cluster.

 

 

TERMINATION

To terminate the EAP portion of 802.1X authentication on the AP instead of the

 

RADIUS Server, set TERMINATION to Enabled.

 

Enabling TERMINATION can reduce network traffic to the external RADIUS

 

Server by terminating the authorization protocol on the AP. By default, for 802.1X

 

authorization, the client conducts an EAP exchange with the RADIUS Server,

 

and the AP acts as a relay for this exchange.

 

When TERMINATIONTermination is enabled, the AP acts as an authentication

 

server and terminates the outer layers of the EAP and relays only the innermost

 

layer to the external RADIUS Server.

 

NOTE: If you are using LDAP for authentication, ensure that AP termination is

 

configured to support EAP.

 

 

AUTHENTICATIO

Select any of the following options from AUTHENTICATION SERVER 1:

N SERVER 1 and

 

 

AUTHENTICATIO

Select an authentication server from the list if an external server is already

N

configured.

SERVER 2

Select New to configure any of the following servers as an external server:

 

RADIUS Server

 

LDAP Server

For information on configuring external servers, see Configuring an external server for authentication on page 49.

To use an internal server, select Internal server and add the clients that are required to authenticate with the internal RADIUS Server. Click Users to add the users.

If an external server is selected, you can also configure another authentication server.

LOAD

Set this to Enabled if you are using two RADIUS authentication servers, to

BALANCING

balance the load across these servers.

 

 

REAUTH

Specify a value for REAUTH INTERVAL. When set to a value greater than zero,

INTERVAL

APs periodically reauthenticate all associated and authenticated clients.

 

 

BLACKLISTING

To enable blacklisting of the clients with a specific number of authentication fail-

 

ures, select Enabled from BLACKLISTING and specify a value for MAX

 

AUTHENTICATION FAILURES. The users who fail to authenticate the number

 

of times specified in MAX AUTHENTICATION FAILURES field are dynamically

 

blacklisted.

 

 

ACCOUNTING

To enable accounting, select Enabled from ACCOUNTING. On setting this

 

option to Enabled, APs post accounting information to the RADIUS server at the

 

specified ACCOUNTING INTERVAL.

 

 

AUTHENTICATIO

To enable authentication survivability, set AUTHENTICATION SURVIVABILITY

N

to Enabled. Specify a value in hours for CACHE TIMEOUT to set the duration

SURVIVABILITY

after which the authenticated credentials in the cache expires. When the cache

 

expires, the clients are required to authenticate again. You can specify a value

HP Cloud Network Manager User Guide

Wireless configuration 28

Image 28
Contents HP Cloud Network Manager User Guide Document 5998-5742, edition 1 July AcknowledgmentsContents Wireless configuration Advanced configuration tasks Captive portal for guest access Reports Maintenance About this guide Intended audienceRelated documents ConventionsCloud Network Manager overview About Cloud Network ManagerSupported APs Cloud Network Manager UI Cloud Network Manager user interface Activating your Cloud Network Manager subscriptionsActivating your HP Cloud Network Manager account User interface Search Tabs Notifications Help Data paneSearch TabsHelp NotificationsData pane Support FeedbackOverview MonitoringData pane item Description Access points AP detailsClients Remote Console System paneSection Description Data pane itemEvent log Setting notification alerts Wireless configuration Initial AP configurationWireless network profiles Importing existing configuration from APConfiguring Wlan settings Understanding wireless network profilesNetwork types Voice Guest Content Filte Disable SsidDMO Channel UtilizationConfiguring Vlan settings for a Wlan Ssid profile Can be UsedWithout Uplink MAX Clients Local ProbeKEY Configuring security settings for a Wlan Ssid profileManagement KEY Management Authenticatio RoamingTermination ServerConfiguring access rules for a Wlan Ssid profile Editing a Wlan Ssid profile General configuration tasksDeleting a Wlan Ssid profile Basic configuration tasks Modifying the AP nameConfiguring VC IP address Configuring time zoneConfiguring a preferred band Configuring an NTP serverAdditional configuration tasks Configuring VC VlanConfiguring auto join mode Configuring LED displayAdvanced configuration tasks Disabling inter-user bridgingPreventing local routing between clients Enabling dynamic CPU managementConfiguring radio profiles for an AP Configuring Arrm assigned radio profiles for an APConfiguring radio profiles manually for AP Customizing AP parametersConfiguring uplink Vlan for an AP Select Administrator assigned in 2.4 GHz and 5 GHz BandMode Description Obtaining IP addressAdvanced radio resource management Arrm overviewHP MotionAware Airtime fairness modeAP control Monitoring the network with Arrm Configuring Arrm on an APArrm metrics SLB Mode Motion AwareCalculating MA NeighborPower CustomizeValid ChannelsConfiguring radio settings for an AP Intrusion detection systemDetecting and classifying rogue APs OS fingerprintingOff Low Medium High Detection level Detection policyOff Low High Settings fieldProtection level Protection policy Understanding authentication methods AuthenticationContainment methods Wireless configuration Supported authentication servers Radius server authentication with VSAExternal Radius server Internal Radius serverAuthentication termination on AP Configuring authentication serversConfiguring an external server for authentication Shared KEY Timeout Shared KEYRetype Retry CountConfiguring dynamic Radius proxy parameters Click Save ServerConfiguring 802.1X authentication for a network profile Enabling dynamic Radius proxyConfiguring MAC authentication for a network profile Configuring MAC authentication with 802.1X authenticationConfiguring WISPr authentication Blacklisting clients manually Blacklisting clientsBlacklisting users dynamically Captive portal for guest access Configuring blacklist durationUnderstanding captive portal Session firewall based blacklistingConfiguring a Wlan Ssid for guest access Types of captive portalWalled garden Select the Primary Usage as GuestContent Filtering Inactivity TimeoutMulticast Transmission Dynamic MulticastUplink MAX Clients Threshold Can be Used WithoutLocal Probe Request Configuring internal captive portal for guest network Configuring external captive portal for a guest network Select any one of the following types of authenticationExternal captive portal profiles Creating a captive portal profileURL USE HttpsCaptive Portal FailureConfiguring captive portal roles for an Ssid Rule TypeSplash TypeInternal Configuring walled garden accessExternal Dhcp configuration Disabling captive portal authenticationConfiguring Dhcp scopes Configuring local and local, L3 Dhcp scopesVlan NetworkNET Mask Excluded AddressServices Configuring an AP for Rtls supportConfiguring Dhcp server for client IP assignment Select Wireless Configuration Services RtlsBonjour support configuration Configuring OpenDNS credentialsBonjour support overview Bonjour support solution Bonjour support with Cloud Network ManagerBonjour support services Bonjour support featuresSelect Wireless Configuration Services Bonjour Support Integrating an AP with Palo Alto Networks firewall Configuring an AP for PAN integrationIntegration with Cloud Network Manager Uplink configuration Wi-Fi uplinkConfiguring a Wi-Fi uplink profile Uplink interfacesConfiguring PPPoE uplink profile Ethernet uplinkSetting an uplink priority Uplink preferences and switchingEnforcing uplinks Switching uplinks based on internet availability From PRE-EMPTION, select EnabledMobility and client management Layer-3 mobility overviewConfiguring L3-mobility Configuring L3 mobility domain Configuring enterprise domainsEnterprise domain Snmp and loggingConfiguring Snmp Configuring community string for SnmpSnmp parameters for AP Creating community strings for SNMPv1 and SNMPv2Configuring Snmp traps Configuring a syslog serverCreating community strings for SNMPv3 Select Wireless Configuration System Logging Configuring Tftp dump serverLogging level Description Reports Creating a reportDeleting a report Firmware MaintenanceSubscription keys Device management User managementAcronyms and abbreviations TerminologyAbbreviation Expansion Term GlossaryDefinition DST Term DefinitionEAP POE Through a wireless connection

Cloud Network Manager Software specifications

HP Cloud Network Manager is a robust software solution designed to simplify and enhance the management of network infrastructure in cloud environments. As organizations increasingly shift toward cloud computing, they require comprehensive tools to oversee complex network deployments. HP Cloud Network Manager rises to this challenge, offering a powerful suite of features aimed at optimizing performance, automating tasks, and ensuring reliable connectivity.

One of the main features of HP Cloud Network Manager is its intuitive dashboard, which provides users with real-time insights into network operations. This centralized interface allows administrators to monitor the status of various components, identify potential issues, and respond swiftly to anomalies. With advanced analytics capabilities, the software empowers users to make data-driven decisions that enhance network efficiency.

Another critical feature of this software is its automation capabilities. HP Cloud Network Manager simplifies routine network management tasks, such as configuration, provisioning, and software updates, allowing IT teams to focus on strategic initiatives rather than mundane maintenance. Automation reduces the risk of human error and accelerates deployment times, significantly increasing operational agility.

The software also supports multi-cloud environments, enabling organizations to manage their network resources across different cloud platforms seamlessly. This flexibility is essential for businesses that utilize various cloud providers and wish to maintain a unified network strategy. Coupled with its compatibility with open standards, HP Cloud Network Manager facilitates integration with existing IT ecosystems, ensuring a smooth transition to advanced cloud solutions.

Security is a top priority in today's digital landscape, and HP Cloud Network Manager includes integrated security features to protect network assets. It provides visibility into traffic patterns, helping to detect and mitigate potential threats before they become significant issues. Enhanced security protocols ensure that sensitive data remains protected during transit and at rest, aligning with compliance requirements.

Finally, HP Cloud Network Manager is built on cutting-edge technologies, including artificial intelligence and machine learning, which enable proactive network management. These technologies predict network behavior, assisting administrators in optimizing resources and anticipating potential challenges. As a result, organizations can achieve enhanced reliability and performance from their network infrastructure.

In summary, HP Cloud Network Manager is an essential tool for businesses looking to improve their cloud network management capabilities. With its powerful features, supportive technologies, and commitment to security, it stands out as a reliable solution for navigating the complexities of modern network environments.