Dell W-Series 207 Instant 6.4.3.1-4.2 User Guide - Page 108

Authentication server 1, Internal server, Users, Enterprise, Personal, Enabled, Reauth interval

Page 108 highlights

Table 22: Configuration Parameters for WLAN Security Settings in an Employee or Voice Network Parameter Description Security Level Type reduce the number of exchange packets between the W-IAP and authentication server. NOTE: Instant supports the configuration of primary and backup authentication servers in an EAP termination enabled SSID. NOTE: If you are using LDAP for authentication, ensure that AP termination is configured to support EAP. Authentication server 1 and Authentication server 2 Select any of the following options from the Authentication server 1 drop-down list: l Select an authentication server from the list if an external server is already configured. To modify the server parameters, click Edit. l Select New to add a new server. For information on configuring external servers, see Configuring an External Server for Authentication on page 164. l To use an internal server, select Internal server and add the clients that are required to authenticate with the internal RADIUS server. Click the Users link to add the users. For information on adding a user, see Managing W-IAP Users on page 152. If an external server is selected, you can also configure another authentication server. Enterprise , Personal, and Open security levels. Load balancing Set this to Enabled if you are using two RADIUS authentication servers, so that the load across the two RADIUS servers is balanced. For more information on the dynamic load balancing mechanism, see Dynamic Load Balancing between Two Authentication Servers on page 164. Enterprise , Personal, and Open security levels. Reauth interval Specify a value for Reauth interval. When set to a value greater than zero, APs periodically reauthenticate all associated and authenticated clients. If the reauthentication interval is configured: l On an SSID performing L2 authentication (MAC or 802.1X authentication)-When reauthentication fails, the clients are disconnected. If the SSID is performing only MAC authentication and has a pre-authentication role assigned to the client, the client will get a post-authentication role only after a successful reauthentication. If reauthentication fails, the client retains the pre-authentication role. l On an SSID performing both L2 and L3 authentication (MAC with captive portal authentication)-When reauthentication succeeds, the client retains the role that is already assigned. If reauthentication fails, a pre-authentication role is assigned to the client. l On an SSID performing only L3 authentication (captive portal authentication)- When reauthentication succeeds, a pre-authentication role is assigned to the client that is in a post-authentication role. Due to this, the clients are required to go through captive portal to regain access. Enterprise , Personal, and Open security levels. 108 | Wireless Network Profiles Dell Networking W-Series Instant 6.4.3.1-4.2.0.0 | User Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392
  • 393
  • 394
  • 395
  • 396
  • 397
  • 398
  • 399
  • 400
  • 401
  • 402
  • 403

108
| Wireless Network Profiles
Dell Networking W-Series Instant 6.4.3.1-4.2.0.0 | User Guide
Parameter
Description
Security
Level
Type
reduce the number of exchange packets between the W-IAP and authentication
server.
NOTE:
Instant supports the configuration of primary and backup authentication
servers in an EAP termination enabled SSID.
NOTE:
If you are using LDAP for authentication, ensure that AP termination is
configured to support EAP.
Authentication
server 1 and
Authentication
server 2
Select any of the following options from the
Authentication server 1
drop-down
list:
l
Select an authentication server from the list if an external server is already
configured. To modify the server parameters, click
Edit
.
l
Select
New
to add a new server.
For information on configuring external servers, see
Configuring an External
Server for Authentication on page 164
.
l
To use an internal server, select
Internal server
and add the clients that are
required to authenticate with the internal RADIUS server. Click the
Users
link to
add the users. For information on adding a user, see
Managing W-IAP Users on
page 152
.
If an external server is selected, you can also configure another authentication
server.
Enterprise
,
Personal
,
and
Open
security
levels.
Load
balancing
Set this to
Enabled
if you are using two RADIUS authentication servers, so that the
load across the two RADIUS servers is balanced. For more information on the
dynamic load balancing mechanism, see
Dynamic Load Balancing between Two
Authentication Servers on page 164
.
Enterprise
,
Personal
,
and
Open
security
levels.
Reauth
interval
Specify a value for
Reauth interval
. When set to a value greater than zero, APs
periodically reauthenticate all associated and authenticated clients.
If the reauthentication interval is configured:
l
On an SSID performing L2 authentication (MAC or 802.1X authentication)—When
reauthentication fails, the clients are disconnected. If the SSID is performing only
MAC authentication and has a pre-authentication role assigned to the client, the
client will get a post-authentication role only after a successful reauthentication.
If reauthentication fails, the client retains the pre-authentication role.
l
On an SSID performing both L2 and L3 authentication (MAC with captive portal
authentication)—When reauthentication succeeds, the client retains the role that
is already assigned. If reauthentication fails, a pre-authentication role is
assigned to the client.
l
On an SSID performing only L3 authentication (captive portal authentication)—
When reauthentication succeeds, a pre-authentication role is assigned to the
client that is in a post-authentication role. Due to this, the clients are required to
go through captive portal to regain access.
Enterprise
,
Personal
,
and
Open
security
levels.
Table 22:
Configuration Parameters for WLAN Security Settings in an Employee or Voice Network