HP Cloud Network Manager Software manual Configuring a Wlan Ssid for guest access, Walled garden

Page 57

Types of captive portal

Cloud Network Manager supports the following types of Captive portal authentication:

Internal Captive portal — An internal server is used for hosting the captive portal service. It supports the following types of authentication:

n Internal Authenticated — When Internal Authenticated is enabled, a guest user who is pre-provisioned in the user database has to provide authentication details.

n Internal Acknowledged —When Internal Acknowledged is enabled, a guest user has to accept the terms and conditions to access the internet.

External Captive portal— For external Captive portal authentication, an external portal on the cloud or on a server outside the enterprise network is used.

Walled garden

Administrators can also control the resources that the guest users can access and the amount of bandwidth or air time they can use at any given time. When an external Captive portal is used, administrators can configure a walled garden, which determines access to the URLs requested by the guest users. In a hotel environment, the unauthenticated users are allowed to navigate to a designated login page (for example, a hotel website) and all its contents. Users who do not sign up for the internet service can view only the “allowed” websites (typically hotel property websites).

Administrators can allow or block access to specific URLs by creating a whitelist and blacklist. When users attempt to navigate to other Websites, which are not in the whitelist of the walled garden profile, users are redirected to the login page. If the requested URL is on the blacklist, it is blocked. If it appears on neither list, the request is redirected to the external Captive portal.

Configuring a WLAN SSID for guest access

To create an SSID for guest access:

1.Select Wireless Configuration > Networks and then click Create New. The CREATE A NEW NETWORK data pane is displayed.

2.Enter a name that uniquely identifies a wireless network in NAME (SSID).

3.Select the PRIMARY USAGE as Guest.

4.Click the SHOW ADVANCED OPTIONS link. The advanced options for configuration are displayed.

5.Enter the required values for the following configuration parameters:

Table 24: WLAN SSID configuration parameters for guest network

Data pane item

Description

BROADCAST/MULTICAST

Select any of the following values under Broadcast filtering:

 

All — When set to All, the AP drops all broadcast and multicast frames

 

except DHCP and ARP.

 

ARP — When set to ARP, the AP converts ARP requests to unicast and

 

sends frames directly to the associated client.

 

Disabled — When set to Disabled, all broadcast and multicast traffic is

 

forwarded.

 

 

DTIM INTERVAL

The DTIM INTERVAL indicates the DTIM period in beacons, which can be

 

configured for every WLAN SSID profile. The DTIM interval determines how

 

often the AP should deliver the buffered broadcast and multicast frames to

 

associated clients in the powersave mode. The default value is 1, which

 

means the client checks for buffered data on the AP at every beacon. You can

 

also configure a higher DTIM value for power saving.

 

 

57 Wireless configuration

HP Cloud Network Manager User Guide

Image 57
Contents HP Cloud Network Manager User Guide Acknowledgments Document 5998-5742, edition 1 JulyContents Wireless configuration Advanced configuration tasks Captive portal for guest access Reports Maintenance Intended audience About this guideRelated documents ConventionsAbout Cloud Network Manager Cloud Network Manager overviewSupported APs Cloud Network Manager UI Activating your Cloud Network Manager subscriptions Cloud Network Manager user interfaceActivating your HP Cloud Network Manager account Search Tabs Notifications Help Data pane User interfaceTabs SearchNotifications HelpData pane Feedback SupportMonitoring OverviewData pane item Description AP details Access pointsRemote Console System pane ClientsSection Description Data pane itemEvent log Setting notification alerts Initial AP configuration Wireless configurationWireless network profiles Importing existing configuration from APUnderstanding wireless network profiles Configuring Wlan settingsNetwork types Voice Guest Disable Ssid Content FilteDMO Channel UtilizationCan be Used Configuring Vlan settings for a Wlan Ssid profileWithout Uplink MAX Clients Local ProbeConfiguring security settings for a Wlan Ssid profile KEYManagement KEY Management Roaming AuthenticatioTermination ServerConfiguring access rules for a Wlan Ssid profile General configuration tasks Editing a Wlan Ssid profileDeleting a Wlan Ssid profile Modifying the AP name Basic configuration tasksConfiguring time zone Configuring VC IP addressConfiguring a preferred band Configuring an NTP serverConfiguring VC Vlan Additional configuration tasksConfiguring auto join mode Configuring LED displayDisabling inter-user bridging Advanced configuration tasksPreventing local routing between clients Enabling dynamic CPU managementConfiguring Arrm assigned radio profiles for an AP Configuring radio profiles for an APConfiguring radio profiles manually for AP Customizing AP parametersSelect Administrator assigned in 2.4 GHz and 5 GHz Band Configuring uplink Vlan for an APMode Description Obtaining IP addressArrm overview Advanced radio resource managementAirtime fairness mode HP MotionAwareAP control Configuring Arrm on an AP Monitoring the network with ArrmArrm metrics Motion Aware SLB ModeCalculating MA NeighborCustomize PowerValid ChannelsIntrusion detection system Configuring radio settings for an APOS fingerprinting Detecting and classifying rogue APsDetection level Detection policy Off Low Medium HighSettings field Off Low HighProtection level Protection policy Authentication Understanding authentication methodsContainment methods Wireless configuration Radius server authentication with VSA Supported authentication serversExternal Radius server Internal Radius serverConfiguring authentication servers Authentication termination on APConfiguring an external server for authentication Shared KEY Shared KEY TimeoutRetype Retry CountClick Save Server Configuring dynamic Radius proxy parametersEnabling dynamic Radius proxy Configuring 802.1X authentication for a network profileConfiguring MAC authentication with 802.1X authentication Configuring MAC authentication for a network profileConfiguring WISPr authentication Blacklisting clients Blacklisting clients manuallyBlacklisting users dynamically Configuring blacklist duration Captive portal for guest accessUnderstanding captive portal Session firewall based blacklistingTypes of captive portal Configuring a Wlan Ssid for guest accessWalled garden Select the Primary Usage as GuestInactivity Timeout Content FilteringMulticast Transmission Dynamic MulticastCan be Used Without Uplink MAX Clients ThresholdLocal Probe Request Configuring internal captive portal for guest network Select any one of the following types of authentication Configuring external captive portal for a guest networkExternal captive portal profiles Creating a captive portal profileUSE Https URLCaptive Portal FailureRule Type Configuring captive portal roles for an SsidSplash TypeConfiguring walled garden access InternalExternal Disabling captive portal authentication Dhcp configurationConfiguring Dhcp scopes Configuring local and local, L3 Dhcp scopesNetwork VlanNET Mask Excluded AddressConfiguring an AP for Rtls support ServicesConfiguring Dhcp server for client IP assignment Select Wireless Configuration Services RtlsConfiguring OpenDNS credentials Bonjour support configurationBonjour support overview Bonjour support with Cloud Network Manager Bonjour support solutionBonjour support features Bonjour support servicesSelect Wireless Configuration Services Bonjour Support Configuring an AP for PAN integration Integrating an AP with Palo Alto Networks firewallIntegration with Cloud Network Manager Wi-Fi uplink Uplink configurationConfiguring a Wi-Fi uplink profile Uplink interfacesEthernet uplink Configuring PPPoE uplink profileUplink preferences and switching Setting an uplink priorityEnforcing uplinks From PRE-EMPTION, select Enabled Switching uplinks based on internet availabilityMobility and client management Layer-3 mobility overviewConfiguring L3-mobility Configuring enterprise domains Configuring L3 mobility domainEnterprise domain Snmp and loggingConfiguring community string for Snmp Configuring SnmpSnmp parameters for AP Creating community strings for SNMPv1 and SNMPv2Configuring a syslog server Configuring Snmp trapsCreating community strings for SNMPv3 Configuring Tftp dump server Select Wireless Configuration System LoggingLogging level Description Creating a report ReportsDeleting a report Maintenance FirmwareSubscription keys User management Device managementTerminology Acronyms and abbreviationsAbbreviation Expansion Glossary TermDefinition Term Definition DSTEAP POE Through a wireless connection

Cloud Network Manager Software specifications

HP Cloud Network Manager is a robust software solution designed to simplify and enhance the management of network infrastructure in cloud environments. As organizations increasingly shift toward cloud computing, they require comprehensive tools to oversee complex network deployments. HP Cloud Network Manager rises to this challenge, offering a powerful suite of features aimed at optimizing performance, automating tasks, and ensuring reliable connectivity.

One of the main features of HP Cloud Network Manager is its intuitive dashboard, which provides users with real-time insights into network operations. This centralized interface allows administrators to monitor the status of various components, identify potential issues, and respond swiftly to anomalies. With advanced analytics capabilities, the software empowers users to make data-driven decisions that enhance network efficiency.

Another critical feature of this software is its automation capabilities. HP Cloud Network Manager simplifies routine network management tasks, such as configuration, provisioning, and software updates, allowing IT teams to focus on strategic initiatives rather than mundane maintenance. Automation reduces the risk of human error and accelerates deployment times, significantly increasing operational agility.

The software also supports multi-cloud environments, enabling organizations to manage their network resources across different cloud platforms seamlessly. This flexibility is essential for businesses that utilize various cloud providers and wish to maintain a unified network strategy. Coupled with its compatibility with open standards, HP Cloud Network Manager facilitates integration with existing IT ecosystems, ensuring a smooth transition to advanced cloud solutions.

Security is a top priority in today's digital landscape, and HP Cloud Network Manager includes integrated security features to protect network assets. It provides visibility into traffic patterns, helping to detect and mitigate potential threats before they become significant issues. Enhanced security protocols ensure that sensitive data remains protected during transit and at rest, aligning with compliance requirements.

Finally, HP Cloud Network Manager is built on cutting-edge technologies, including artificial intelligence and machine learning, which enable proactive network management. These technologies predict network behavior, assisting administrators in optimizing resources and anticipating potential challenges. As a result, organizations can achieve enhanced reliability and performance from their network infrastructure.

In summary, HP Cloud Network Manager is an essential tool for businesses looking to improve their cloud network management capabilities. With its powerful features, supportive technologies, and commitment to security, it stands out as a reliable solution for navigating the complexities of modern network environments.