Chapter 1: Configuration
Configuring security
Page
1-128
Attribute
Meaning
Authentication Mode
Operators may use this field to select from among the following
authentication modes:
Disabled—the AP requires no SMs to authenticate. (Factory default).
Authentication Server —the AP/BHM requires any SM/BHS that attempts
registration to be authenticated in Wireless Manager before registration.
AP PreShared Key - The AP/BHM acts as the authentication server to its
SMs/BHS and will make use of a user-configurable pre-shared authentication
key. The operator enters this key on both the AP/BHM and all SMs/BHS
desired to register to that AP/BHM. There is also an option of leaving the
AP/BHM and SMs/BHS at their default setting of using the “Default Key”.
Due to the nature of the authentication operation, if you want to set a
specific authentication key, then you MUST configure the key on all of the
SMs/BHS and reboot them BEFORE enabling the key and option on the
AP/BHM. Otherwise, if you configure the AP/BHM first, none of the SMs/BHS
is able to register.
RADIUS AAA - When RADIUS AAA is selected, up to 3 Authentication
Server (RADIUS Server) IP addresses and Shared Secrets can be
configured. The IP address(s) configured here must match the IP
address(s) of the RADIUS server(s). The shared secret(s) configured
here must match the shared secret(s) configured in the RADIUS
server(s). Servers 2 and 3 are meant for backup and reliability, not for
splitting the database. If Server 1 doesn’t respond, Server 2 is tried, and
then server 3. If Server 1 rejects authentication, the SM is denied entry
to the network, and does not progress trying the other servers.
Authentication Server
DNS Usage
The management DNS domain name may be toggled such that the name of
the authentication server only needs to be specified and the DNS domain
name is automatically appended to that name.
Authentication Server
1 to 5
Enter the IP address or server name of the authentication server (RADIUS or
WM) and the Shared Secret configured in the authentication server. When
Authentication Mode RADIUS AAA is selected, the default value of Shared
Secret is “CanopySharedSecret”. The Shared Secret may consist of up to 32
ASCII characters.
Radius Port
This field allows the operator to configure a custom port for RADIUS server
communication. The default value is
1812
.
Authentication Key
128-bit
This authentication key is a 32-character hexadecimal string used when
Authentication Mode is set to AP PreShared Key. By default, this key is set
to 0xFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF.
Select Key 128-bit
This option allows operators to choose which authentication key is used:
Use Key above means that the key specified in Authentication Key is used
for authentication
Use Default Key means that a default key (based off the SM’s MAC address)
is used for authentication
Summary of Contents for PMP 450 AP
Page 51: ...Chapter 1 Configuration Quick link setup Page 1 23 ...
Page 155: ...Chapter 1 Configuration Configuring security Page 1 127 ...
Page 163: ...Chapter 1 Configuration Configuring security Page 1 135 ...
Page 164: ...Chapter 1 Configuration Configuring security Page 1 136 ...
Page 193: ...Chapter 1 Configuration Configuring radio parameters Page 1 165 ...
Page 194: ...Chapter 1 Configuration Configuring radio parameters Page 1 166 ...
Page 195: ...Chapter 1 Configuration Configuring radio parameters Page 1 167 ...
Page 206: ...Chapter 1 Configuration Configuring radio parameters Page 1 178 ...
Page 210: ...Chapter 1 Configuration Configuring radio parameters Page 1 182 ...
Page 636: ...Chapter 5 Troubleshooting Logs Page 5 16 Figure 95 SM Authorization log ...