Cisco AIR-LAP1252AG-A-K9 Software Configuration Guide - Page 150

MAC Address Authentication, Advanced, s RADIUS server, the Cisco Secure Access

Page 150 highlights

Setting Up MAC-Based Authentication Chapter 4 Security Setup Step 8 Step 9 Step 10 Step 11 Step 12 Step 13 Enter the port number the server uses for authentication. The default setting, 1812, is the port setting for Cisco's RADIUS server, the Cisco Secure Access Control Server (ACS), and for many other RADIUS servers. Check your server's product documentation to find the correct port setting. Enter the shared secret used by the server in the Shared Secret entry field. The shared secret on the access point must match the shared secret on the server. Enter the number of seconds the access point should try contacting the primary authentication server in the Timeout entry field. If the primary authentication server does not respond within this time, the access point tries to contact the backup authentication server if one is specified. Select MAC Address Authentication under the server. If you set up a backup authentication server, select MAC Address Authentication under the backup server, also. Click OK. You return automatically to the Setup page. Create a list of allowed MAC addresses for your authentication server. Enter the MAC addresses of all allowed clients as users in the server's database. The "Enabling MAC-Based Authentication in Cisco Secure ACS" section on page 4-35 describes how to create a list of MAC addresses for your RADIUS server. Note Be sure to include your own MAC address in the authentication server's list to avoid losing your connection to the access point. Step 14 You can enable MAC authentication on one or both of the access point radios on the AP Radio Advanced pages. Click Advanced for the internal radio or the radio module in the AP Radio row of the Network Ports section at the bottom of the Setup page. The radio's AP Radio Advanced page appears. Figure 4-12 shows the AP Radio Advanced page for the internal radio. 4-32 Cisco Aironet 1200 Series Access Point Software Configuration Guide OL-2159-03

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284

Chapter 4
Security Setup
Setting Up MAC-Based Authentication
4-32
Cisco Aironet 1200 Series Access Point Software Configuration Guide
OL-2159-03
Step 8
Enter the port number the server uses for authentication. The default setting,
1812
, is the port setting for Cisco
s RADIUS server, the Cisco Secure Access
Control Server (ACS), and for many other RADIUS servers. Check your server
s
product documentation to find the correct port setting.
Step 9
Enter the shared secret used by the server in the Shared Secret entry field. The
shared secret on the access point must match the shared secret on the server.
Step 10
Enter the number of seconds the access point should try contacting the primary
authentication server in the Timeout entry field. If the primary authentication
server does not respond within this time, the access point tries to contact the
backup authentication server if one is specified.
Step 11
Select
MAC Address Authentication
under the server. If you set up a backup
authentication server, select
MAC Address Authentication
under the backup
server, also.
Step 12
Click
OK
. You return automatically to the Setup page.
Step 13
Create a list of allowed MAC addresses for your authentication server. Enter the
MAC addresses of all allowed clients as users in the server
s database. The
Enabling MAC-Based Authentication in Cisco Secure ACS
section on
page 4-35
describes how to create a list of MAC addresses for your RADIUS
server.
Note
Be sure to include your own MAC address in the authentication server
s
list to avoid losing your connection to the access point.
Step 14
You can enable MAC authentication on one or both of the access point radios on
the AP Radio Advanced pages. Click
Advanced
for the internal radio or the radio
module in the AP Radio row of the Network Ports section at the bottom of the
Setup page. The radio
s AP Radio Advanced page appears.
Figure 4-12
shows the
AP Radio Advanced page for the internal radio.