Netgear WAC720 Reference Manual - Page 34

Con and Enable Security Profiles, Profiles, Data encryption, Wireless client security separation

Page 34 highlights

ProSAFE Dual-Band Wireless AC Access Point WAC720 WAC730 For information about the types of network authentication that the wireless access point supports, see Configure and Enable Security Profiles on page 35. • Data encryption Select the data encryption that you want to use. The available options depend on the network authentication setting (otherwise, the default is None). The data encryption settings are explained in Configure and Enable Security Profiles on page 35. • Wireless client security separation If this feature is enabled, the associated wireless clients (using the same SSID) are not able to communicate with each other. This feature is useful for hotspots and other public access situations. By default, wireless client separation is disabled. For more information, see Configure and Enable Security Profiles on page 35. • VLAN ID If this feature is enabled and if the network devices (hubs and switches) on your LAN support the VLAN (802.1Q) standard, the default VLAN ID for the wireless access point is associated with each profile. The default VLAN ID needs to match the IDs that are used by the other network devices. For more information, see Configure and Enable Security Profiles on page 35. Some concepts and guidelines regarding the SSID are explained in the following list: • A basic service set (BSS) is a group of wireless stations and a single wireless access point, all using the same security profile or service set identifier (BSSID). The actual identifier in the BSSID is the MAC address of the wireless radio. (A wireless radio can be assigned multiple MAC addresses, one for each security profile.) • An extended service set (ESS) is a group of wireless stations and multiple wireless access points, all using the same identifier (ESSID). • Different wireless access points within an ESS can use different channels. To reduce interference, specify that adjacent wireless access points use different channels. • Roaming is the ability of wireless stations to connect wirelessly when they physically move from one BSS to another one within the same ESS. The wireless station automatically changes to the wireless access point with the least interference or best performance. Wireless Configuration and Security 34

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113

Wireless Configuration and Security
34
ProSAFE Dual-Band Wireless AC Access Point WAC720 WAC730
For information about the types of network authentication that the wireless access point
supports, see
Configure and Enable Security Profiles
on page
35.
Data encryption
Select the data encryption that you want to use. The available options depend on the
network authentication setting (otherwise, the default is None). The data encryption
settings are explained in
Configure and Enable Security Profiles
on page
35.
Wireless client security separation
If this feature is enabled, the associated wireless clients (using the same SSID) are not
able to communicate with each other. This feature is useful for hotspots and other public
access situations. By default, wireless client separation is disabled. For more information,
see
Configure and Enable Security Profiles
on page
35.
VLAN ID
If this feature is enabled and if the network devices (hubs and switches) on your LAN
support the VLAN (802.1Q) standard, the default VLAN ID for the wireless access point is
associated with each profile. The default VLAN ID needs to match the IDs that are used
by the other network devices. For more information, see
Configure and Enable Security
Profiles
on page
35.
Some concepts and guidelines regarding the SSID are explained in the following list:
A basic service set (BSS) is a group of wireless stations and a single wireless access
point, all using the same security profile or service set identifier (BSSID). The actual
identifier in the BSSID is the MAC address of the wireless radio. (A wireless radio can be
assigned multiple MAC addresses, one for each security profile.)
An extended service set (ESS) is a group of wireless stations and multiple wireless
access points, all using the same identifier (ESSID).
Different wireless access points within an ESS can use different channels. To reduce
interference, specify that adjacent wireless access points use different channels.
Roaming is the ability of wireless stations to connect wirelessly when they physically
move from one BSS to another one within the same ESS. The wireless station
automatically changes to the wireless access point with the least interference or best
performance.