Netgear WNDAP660 Reference Manual - Page 10

Wireless IDS/IPS, Auto Uplink™ - firmware

Page 10 highlights

ProSafe Premium 3 x 3 Dual-Band Wireless-N Access Point WNDAP660 • QoS. Quality of Service (QoS) support lets you configure parameters that affect traffic flowing from the wireless access point to the client station and traffic flowing from the client station to the wireless access point: - The QoS settings let you prioritize traffic, such as voice and video traffic, so that packets do not get dropped. - The QoS policies let you configure classifications (match clauses) and apply traffic to eight priority queues based on IP precedence, DSCP, MAC address, IP address, and other information that might be present in Layer 2 and Layer 3 packet headers. • Wireless IDS/IPS. The wireless intrusion detection system (IDS) and intrusion prevention system (IPS) can detect and prevent a variety of wireless attacks. Attacks are covered by preconfigured policy rules. When an attack occurs, the wireless access point can notify a network administrator though an email. • Hotspot support. You can allow all HTTP (TCP, port 80) requests to be captured and redirected to the URL you specify. • Rogue AP and ad hoc network detection. Rogue AP filtering and ad hoc network detection ensure that unknown APs and networks are not given access to any part of the secured wireless and wired LAN. • Access control. MAC address filtering can ensure that only trusted wireless stations can use the wireless access point to gain access to the wireless and wired LAN. • Security profiles. When using multiple BSSIDs, you can configure unique security settings (encryption, SSID, and so on) for each BSSID. • Hidden mode. The SSID is not broadcast, assuring that only clients configured with the correct SSID can connect. • Secure Telnet command-line interface. The secure Telnet command-line interface (CLI) enables direct secure access over the serial port and easy scripting of configuration of multiple wireless access points across an extensive network through the Ethernet interface. A Secure Shell (SSH) client is required. • Upgradeable firmware. Firmware is stored in a flash memory. You can upgrade it easily, using only your web browser, and you can upgrade it remotely. You can also use the command-line interface. • Configuration backup. Configuration settings can be backed up to a file and restored. • Secure and economical operation. Adjustable power output allows more secure or economical operation. • PoE support. Using Power over Ethernet (PoE), any 802.3af-compliant midspan or end-span sources can supply power to the wireless access point over one or two Ethernet ports. The wireless access point can receive all required power on one Ethernet port from a single PoE source. However, with two Ethernet ports and two PoE sources, power redundancy ensures that if one Ethernet port is down, the other Ethernet port can still supply all power to the wireless access point for continued operation. • Autosensing Ethernet connection with Auto Uplink™ interface. Connects to 10/100/1000 Mbps IEEE 802.3 Ethernet networks. • LED indicators. Power/Test, Active, LAN, and WLAN for each radio mode are easily identified. Introduction 10

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174

Introduction
10
ProSafe Premium 3 x 3 Dual-Band Wireless-N Access Point WNDAP660
QoS
. Quality of Service (QoS) support lets you configure parameters that affect traffic
flowing from the wireless access point to the client station and traffic flowing from the
client station to the wireless access point:
-
The QoS settings let you prioritize traffic, such as voice and video traffic, so that
packets do not get dropped.
-
The QoS policies let you configure classifications (match clauses) and apply traffic to
eight priority queues based on IP precedence, DSCP, MAC address, IP address, and
other information that might be present in Layer 2 and Layer 3 packet headers.
Wireless IDS/IPS
. The wireless intrusion detection system (IDS) and intrusion prevention
system (IPS) can detect and prevent a variety of wireless attacks. Attacks are covered by
preconfigured policy rules. When an attack occurs, the wireless access point can notify a
network administrator though an email.
Hotspot support
. You can allow all HTTP (TCP, port 80) requests to be captured and
redirected to the URL you specify.
Rogue AP and ad hoc network detection
.
Rogue AP filtering and ad hoc network
detection ensure that unknown APs and networks are not given access to any part of the
secured wireless and wired LAN.
Access control
.
MAC address filtering can ensure that only trusted wireless stations can
use the wireless access point to gain access to the wireless and wired LAN.
Security profiles
.
When using multiple BSSIDs, you can configure unique security
settings (encryption, SSID, and so on) for each BSSID.
Hidden mode
. The SSID is not broadcast, assuring that only clients configured with the
correct SSID can connect.
Secure Telnet command-line interface
. The secure Telnet command-line interface
(CLI) enables direct secure access over the serial port and easy scripting of configuration
of multiple wireless access points across an extensive network through the Ethernet
interface. A Secure Shell (SSH) client is required.
Upgradeable firmware
. Firmware is stored in a flash memory. You can upgrade it easily,
using only your web browser, and you can upgrade it remotely. You can also use the
command-line interface.
Configuration backup
. Configuration settings can be backed up to a file and restored.
Secure and economical operation
. Adjustable power output allows more secure or
economical operation.
PoE support
. Using Power over Ethernet (PoE), any 802.3af-compliant midspan or
end-span sources can supply power to the wireless access point over one or two
Ethernet ports. The wireless access point can receive all required power on one Ethernet
port from a single PoE source. However, with two Ethernet ports and two PoE sources,
power redundancy ensures that if one Ethernet port is down, the other Ethernet port can
still supply all power to the wireless access point for continued operation.
Autosensing Ethernet connection with
Auto Uplink™
interface
. Connects to
10/100/1000 Mbps IEEE 802.3 Ethernet networks.
LED indicators
. Power/Test, Active, LAN, and WLAN for each radio mode are easily
identified.