Dell PowerConnect W-IAP92 Dell Instant 6.1.3.4-3.1.0.0 User Guide - Page 57

Network-based, Allow any to all destinations, Edit Rule, New Rule, Role-based, Unrestricted

Page 57 highlights

Table 9 Conditions for Adding a Voice Network- Security Tab (Continued) If then, You select the Open security level 1. Select the required MAC authentication from the MAC authentication drop-down list. Available options are- Enabled and Disabled  When Enabled, user must configure at least one RADIUS server for authentication server. See "MAC Authentication" on page 127 for further details. 2. Authentication server 1- Select the required Authentication server option from the drop-down list. Available options are:  New- If you select this option, then an external radius server has to be configured to authenticate the users. For information on configuring an external RADIUS server, see Chapter 10, "Authentication" . 3. Reauth interval- When set to a value greater than zero, the Access Points will periodically reauthenticate all associated and authenticated clients. 4. Blacklisting- Select Enabled if you want clients to be blacklisted after a certain number of authentication failures. 5. Max authentication failures- Users who fail to authenticate the number of times specified here will be dynamically blacklisted. The maximum value for this entry is 10. NOTE: Navigate to PEF > Blacklisting in the WebUI to specify the duration of the blacklisting on the Blacklisting tab of the PEF window. 6. Internal users- If you select this option, then users who are required to authenticate with the internal RADIUS server must be added. Click the Users link to add the users. For information on adding a user, "Adding a User" on page 235. 7. Click Upload Certificate and browse to upload a certificate file for the internal server. See "Certificates" on page 129 for more information. 8. Use the Access Rules page to specify optional access rules for this network.  Network-based- Set the slider to Network-based if you want the same rules to apply to all users. The Allow any to all destinations access rule is enabled by default. This rule allows traffic to all destinations. Instant Firewall treats packets based on the first rule matched. For more information, see Chapter 14, "Instant Firewall" . To edit the default rule: a. Select the rule and then click Edit. b. Select appropriate options in the Edit Rule window and click OK. To define an access rule: a. Click New. b. Select appropriate options in the New Rule window. c. Click OK.  Role-based- Select Role-based if you want to specify per-user access rules. See "Creating a New User Role" on page 137 for more information.  Unrestricted- Select this to set no restrictions on access based on destination or type of traffic. Dell PowerConnect W-Series Instant Access Point 6.1.3.4-3.1.0.0 | User Guide Wireless Network | 57

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246

Dell PowerConnect W-Series Instant Access Point 6.1.3.4-3.1.0.0
| User Guide
Wireless Network
|
57
8.
Use the Access Rules page to specify optional access rules for this network.
Network-based—
Set the slider to
Network-based
if you want the same rules to apply to all users. The
Allow any to all destinations
access rule is enabled by default. This rule allows traffic to all destinations.
Instant Firewall treats packets based on the first rule matched. For more information, see
Chapter 14,
“Instant Firewall”
.
To edit the default rule:
a.
Select the rule and then click
Edit
.
b.
Select appropriate options in the
Edit Rule
window and click
OK.
To define an access rule:
a.
Click
New
.
b.
Select appropriate options in the
New Rule
window.
c.
Click
OK.
Role-based—
Select
Role-based
if you want to specify per-user access rules. See
“Creating a New User
Role” on page
137
for more information.
Unrestricted—
Select this to set no restrictions on access based on destination or type of traffic.
You select the
Open
security level
1.
Select the required MAC authentication from the
MAC authentication
drop-down list. Available options are— Enabled and Disabled
When
Enabled
, user must configure at least one RADIUS server for
authentication server. See
“MAC Authentication” on page 127
for further
details.
2.
Authentication server 1—
Select the required Authentication server
option from the drop-down list. Available options are:
New
— If you select this option, then an external radius server has to be
configured to authenticate the users. For information on configuring an
external RADIUS server, see
Chapter 10, “Authentication”
.
3.
Reauth interval—
When set to a value greater than zero, the Access
Points will periodically reauthenticate all associated and authenticated
clients.
4.
Blacklisting—
Select
Enabled
if you want clients to be blacklisted after a
certain number of authentication failures.
5.
Max authentication failures—
Users who fail to authenticate the number
of times specified here will be dynamically blacklisted. The maximum
value for this entry is 10.
NOTE:
Navigate to
PEF > Blacklisting
in the WebUI to specify the duration of
the blacklisting on the Blacklisting tab of the PEF window.
6.
Internal users—
If you select this option, then users who are required to
authenticate with the internal RADIUS server must be added. Click the
Users link to add the users. For information on adding a user,
“Adding a
User” on page 235
.
7.
Click
Upload Certificate
and browse to upload a certificate file for the
internal server. See
“Certificates” on page 129
for more information.
Table 9
Conditions for Adding a Voice Network— Security Tab (Continued)
If
then,