HP Cloud Network Manager Software Blacklisting clients manually

Page 55

1.Select Wireless Configuration > System.

2.Select WISPr. The WISPr details are displayed.

3.Enter the ISO Country Code for the WISPr Location ID in the ISO COUNTRY CODE box.

4.Enter the E.164 Area Code for the WISPr Location ID in the E.164 AREA CODE box.

5.Enter the operator name of the Hotspot in the OPERATOR NAME box.

6.Enter the E.164 Country Code for the WISPr Location ID in the E.164 COUNTRY CODE box.

7.Enter the SSID/Zone section for the WISPr Location ID in the SSID/ZONE box.

8.Enter the name of the Hotspot location in the LOCATION NAME box. If no name is defined, the name of the AP to which the user is associated is used.

9.Click Save Settings to apply the changes.

The WISPr RADIUS attributes and configuration parameters are specific to the RADIUS server used by your ISP for the WISPr authentication. Contact your ISP to determine these values. You can find a list of ISO and ITU country and area codes at the ISO and ITU websites (www.iso.org and http://www.itu.int).

A Boingo smart client uses a NAS identifier in the format <CarrierID>_<VenueID> for location identification. To support Boingo clients, ensure that you configure the NAS identifier parameter in the RADIUS server profile for the WISPr server.

Blacklisting clients

The client blacklisting denies connection to the blacklisted clients. When a client is blacklisted, it is not allowed to associate with an AP in the network. If a client is connected to the network when it is blacklisted, a deauthentication message is sent to force client disconnection.

This section describes the following procedures:

Blacklisting clients manually on page 55

Blacklisting users dynamically on page 55

Blacklisting clients manually

Manual blacklisting adds the MAC address of a client to the blacklist. These clients are added into a permanent blacklist. These clients are not allowed to connect to the network unless they are removed from the blacklist.

Adding a client to the blacklist

To add a client to the blacklist manually:

1.Navigate to Wireless Configuration > Security > BLACKLISTING.

2.Click New and enter the MAC address of the client to be blacklisted in ENTER A NEW MAC ADDRESS.

3.Click Ok. The BLACKLISTED SINCE field displays the time at which the current blacklisting has started for the client.

To delete a client from the manual blacklist, select the MAC Address of the client under the MANUAL BLACKLISTING, and then click Delete.

Blacklisting users dynamically

The clients can be blacklisted dynamically when they exceed the authentication failure threshold or when a blacklisting rule is triggered as part of the authentication process.

Authentication failure blacklisting

When a client takes time to authenticate and exceeds the configured failure threshold, it is automatically blacklisted by an AP.

55 Wireless configuration

HP Cloud Network Manager User Guide

Image 55
Contents HP Cloud Network Manager User Guide Acknowledgments Document 5998-5742, edition 1 JulyContents Wireless configuration Advanced configuration tasks Captive portal for guest access Reports Maintenance Conventions About this guideIntended audience Related documentsCloud Network Manager overview About Cloud Network ManagerSupported APs Cloud Network Manager UI Activating your Cloud Network Manager subscriptions Cloud Network Manager user interfaceActivating your HP Cloud Network Manager account Search Tabs Notifications Help Data pane User interfaceTabs SearchHelp NotificationsData pane Feedback SupportOverview MonitoringData pane item Description AP details Access pointsData pane item ClientsRemote Console System pane Section DescriptionEvent log Setting notification alerts Importing existing configuration from AP Wireless configurationInitial AP configuration Wireless network profilesConfiguring Wlan settings Understanding wireless network profilesNetwork types Voice Guest Utilization Content FilteDisable Ssid DMO ChannelLocal Probe Configuring Vlan settings for a Wlan Ssid profileCan be Used Without Uplink MAX ClientsKEY Configuring security settings for a Wlan Ssid profileManagement KEY Management Server AuthenticatioRoaming TerminationConfiguring access rules for a Wlan Ssid profile Editing a Wlan Ssid profile General configuration tasksDeleting a Wlan Ssid profile Modifying the AP name Basic configuration tasksConfiguring an NTP server Configuring VC IP addressConfiguring time zone Configuring a preferred bandConfiguring LED display Additional configuration tasksConfiguring VC Vlan Configuring auto join modeEnabling dynamic CPU management Advanced configuration tasksDisabling inter-user bridging Preventing local routing between clientsCustomizing AP parameters Configuring radio profiles for an APConfiguring Arrm assigned radio profiles for an AP Configuring radio profiles manually for APObtaining IP address Configuring uplink Vlan for an APSelect Administrator assigned in 2.4 GHz and 5 GHz Band Mode DescriptionArrm overview Advanced radio resource managementHP MotionAware Airtime fairness modeAP control Monitoring the network with Arrm Configuring Arrm on an APArrm metrics MA Neighbor SLB ModeMotion Aware CalculatingChannels PowerCustomize ValidIntrusion detection system Configuring radio settings for an APOS fingerprinting Detecting and classifying rogue APsDetection level Detection policy Off Low Medium HighOff Low High Settings fieldProtection level Protection policy Understanding authentication methods AuthenticationContainment methods Wireless configuration Internal Radius server Supported authentication serversRadius server authentication with VSA External Radius serverAuthentication termination on AP Configuring authentication serversConfiguring an external server for authentication Retry Count Shared KEY TimeoutShared KEY RetypeClick Save Server Configuring dynamic Radius proxy parametersEnabling dynamic Radius proxy Configuring 802.1X authentication for a network profileConfiguring MAC authentication with 802.1X authentication Configuring MAC authentication for a network profileConfiguring WISPr authentication Blacklisting clients manually Blacklisting clientsBlacklisting users dynamically Session firewall based blacklisting Captive portal for guest accessConfiguring blacklist duration Understanding captive portalSelect the Primary Usage as Guest Configuring a Wlan Ssid for guest accessTypes of captive portal Walled gardenDynamic Multicast Content FilteringInactivity Timeout Multicast TransmissionUplink MAX Clients Threshold Can be Used WithoutLocal Probe Request Configuring internal captive portal for guest network Creating a captive portal profile Configuring external captive portal for a guest networkSelect any one of the following types of authentication External captive portal profilesFailure URLUSE Https Captive PortalType Configuring captive portal roles for an SsidRule Type SplashInternal Configuring walled garden accessExternal Configuring local and local, L3 Dhcp scopes Dhcp configurationDisabling captive portal authentication Configuring Dhcp scopesExcluded Address VlanNetwork NET MaskSelect Wireless Configuration Services Rtls ServicesConfiguring an AP for Rtls support Configuring Dhcp server for client IP assignmentBonjour support configuration Configuring OpenDNS credentialsBonjour support overview Bonjour support with Cloud Network Manager Bonjour support solutionBonjour support services Bonjour support featuresSelect Wireless Configuration Services Bonjour Support Integrating an AP with Palo Alto Networks firewall Configuring an AP for PAN integrationIntegration with Cloud Network Manager Uplink interfaces Uplink configurationWi-Fi uplink Configuring a Wi-Fi uplink profileEthernet uplink Configuring PPPoE uplink profileSetting an uplink priority Uplink preferences and switchingEnforcing uplinks Layer-3 mobility overview Switching uplinks based on internet availabilityFrom PRE-EMPTION, select Enabled Mobility and client managementConfiguring L3-mobility Snmp and logging Configuring L3 mobility domainConfiguring enterprise domains Enterprise domainCreating community strings for SNMPv1 and SNMPv2 Configuring SnmpConfiguring community string for Snmp Snmp parameters for APConfiguring Snmp traps Configuring a syslog serverCreating community strings for SNMPv3 Select Wireless Configuration System Logging Configuring Tftp dump serverLogging level Description Creating a report ReportsDeleting a report Firmware MaintenanceSubscription keys User management Device managementAcronyms and abbreviations TerminologyAbbreviation Expansion Term GlossaryDefinition DST Term DefinitionEAP POE Through a wireless connection

Cloud Network Manager Software specifications

HP Cloud Network Manager is a robust software solution designed to simplify and enhance the management of network infrastructure in cloud environments. As organizations increasingly shift toward cloud computing, they require comprehensive tools to oversee complex network deployments. HP Cloud Network Manager rises to this challenge, offering a powerful suite of features aimed at optimizing performance, automating tasks, and ensuring reliable connectivity.

One of the main features of HP Cloud Network Manager is its intuitive dashboard, which provides users with real-time insights into network operations. This centralized interface allows administrators to monitor the status of various components, identify potential issues, and respond swiftly to anomalies. With advanced analytics capabilities, the software empowers users to make data-driven decisions that enhance network efficiency.

Another critical feature of this software is its automation capabilities. HP Cloud Network Manager simplifies routine network management tasks, such as configuration, provisioning, and software updates, allowing IT teams to focus on strategic initiatives rather than mundane maintenance. Automation reduces the risk of human error and accelerates deployment times, significantly increasing operational agility.

The software also supports multi-cloud environments, enabling organizations to manage their network resources across different cloud platforms seamlessly. This flexibility is essential for businesses that utilize various cloud providers and wish to maintain a unified network strategy. Coupled with its compatibility with open standards, HP Cloud Network Manager facilitates integration with existing IT ecosystems, ensuring a smooth transition to advanced cloud solutions.

Security is a top priority in today's digital landscape, and HP Cloud Network Manager includes integrated security features to protect network assets. It provides visibility into traffic patterns, helping to detect and mitigate potential threats before they become significant issues. Enhanced security protocols ensure that sensitive data remains protected during transit and at rest, aligning with compliance requirements.

Finally, HP Cloud Network Manager is built on cutting-edge technologies, including artificial intelligence and machine learning, which enable proactive network management. These technologies predict network behavior, assisting administrators in optimizing resources and anticipating potential challenges. As a result, organizations can achieve enhanced reliability and performance from their network infrastructure.

In summary, HP Cloud Network Manager is an essential tool for businesses looking to improve their cloud network management capabilities. With its powerful features, supportive technologies, and commitment to security, it stands out as a reliable solution for navigating the complexities of modern network environments.