381| Wireless Intrusion Prevention DellPowerConnect W- Series ArubaOS 6.2 | User Guide
Configuring Intrusio n Protection
Intrusion protection features support containment of an AP or a client. In the case of an AP, we will attempt to
disconnect allclient t hat areconnected or attempting to connect to the AP. In the case of a client, the client's
association to an AP is targeted. The following containment mechanisms are supported:
lDeauthentication containment: An AP or client is contained by disrupting its asso ciation on the wireless
interface.
lTarpit containment: AnA P is contained by luringclients that are attempting to associate with it to a tarpit. The
tarpit can be on the same channel as the AP being co ntained,o r on a different channel(see "Working with Tarpit
Shielding"on page 392).
lWiredco ntainment:A n AP or client is contai nedby disrupting its connection on the wired interface.
The WIP featuresupports separate enforcement policies that use the underlying containment mechanismsto
contain an AP or a client that do not conform to the policy. These policies are discussed in the sections that follow.

Understand ing Infrastructure Intrusion Protec tion

Table1 07 presents a summary of the infrastructurei ntrusionprotect ion features with their related commands, traps,
and syslog identifications. Details of each feature follow the table.
Feature Command Trap Syslog ID
"Protecting40MHz
802.11High
Throughput Devices"
onpage 382
idsunauthoriz ed-device-profile
protect-ht-40mhz
wlsxAPDeauthContainment
wlsxClientDeauthContainment
wlsxTarpitContainment
106005,106006,
126102,126103,
126108,127102,
127103,127108
"Protecting802.11n
HighTh roughput
Devices"on page 382
idsunauthoriz ed-device-profile
protect-high-throughput
wlsxAPDeauthContainment
wlsxClientDeauthContainment
wlsxTarpitContainment
106005,106006,
126102,126103,
126108,127102,
127103,127108
"ProtectingA gainst
AdhocNetwork s"on
page382
idsunauthoriz ed-device-profile
protect-adhoc-network
wlsxAPDeauthContainment
wlsxClientDeauthContainment
wlsxTarpitContainment
106005,106006,
126012,126102,
126103,126108,
127102,127103,
127108
"ProtectingA gainst
AP Impersonation" on
page382
idsi mpersonation-profile
protect-ap-impersonation
wlsxAPDeauthContainment
wlsxClientDeauthContainment
wlsxTarpitContainment
106005,106006,
126102,126103,
126108,127102,
127103,127108
"ProtectingA gainst
MisconfiguredAPs"
onpage 382
idsunauthoriz ed-device-profile
protect-misconfigured-ap
wlsxAPDeauthContainment
wlsxClientDeauthContainment
wlsxTarpitContainment
106005,106006,
126102,126103,
126108,127102,
127103,127108
"ProtectingS SIDs"on
page382
idsunauthoriz ed-device-profile
protect-ssid
wlsxAPDeauthContainment
wlsxClientDeauthContainment
wlsxTarpitContainment
106005,106006,
126102,126103,
126108,127102,
127103,127108
"ProtectingA gainst
Rogue Containment"
idsunauthoriz ed-device-profile
rogue-containment
wlsxAPDeauthContainment
wlsxClientDeauthContainment
106005,106006,
126102,126103,

Table10 7:

InfrastructureProtection Summary