Dell PowerConnect W Clearpass 100 Software Betriebsanweisung Seite 114

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 296
  • Inhaltsverzeichnis
  • FEHLERBEHEBUNG
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 113
114114 | Wired Profiles
Dell PowerConnect W-Series Aruba Instant 6.2.1.0-3.3 | User Guide
l Select the Assign pre-authentication role check box to add a pre-authentication role that allows some
access to the users before the client authentication.
l Select the Enforce Machine Authentication check box, to configure access rights to clients based on
whether the client device supports machine authentication. Select the Machine auth only and User auth
only rules. Machine Authentication is only supported on Windows devices and devices such as iPads.
If Enforce Machine Authentication is enabled, both the device and the user must be authenticated for
the role assignment rule to apply.
2. Click Finish.
In the CLI
To configure access rules for a wired profile:
(Instant Access Point)(config)# wired-port-profile <profile-name>
(Instant Access Point)(wired ap profile<name>)# access-rule-name
(Instant Access Point)(wired ap profile<name>)# end
(Instant Access Point)(wired ap profile<name>)# commit apply
To configure role assignment rules:
(Instant Access Point)(config)# wired-port-profile <profile-name>
(Instant Access Point)(wired ap profile<name>)# set-role <attribute>{{equals| not-equal|
starts-with| ends-with| contains}<operator> <role>| value-of}
(Instant Access Point)(wired ap profile<name>)# end
(Instant Access Point)(wired ap profile<name>)# commit apply
To configure a pre-authentication role:
(Instant Access Point)(config)# wired-port-profile <profile-name>
(Instant Access Point)(wired ap profile<name>)# set-role-pre-auth <pre-authentication-role>
(Instant Access Point)(wired ap profile<name>)# end
(Instant Access Point)(wired ap profile<name>)# commit apply
To configure machine and user authentication roles:
(Instant Access Point)(config)# wired-port-profile <profile-name>
(Instant Access Point)(wired ap profile<name>)# set-role-machine-auth <machine-authentication-
only> <user-authentication-only>
(Instant Access Point)(wired ap profile<name>)# end
(Instant Access Point)(wired ap profile<name>)# commit apply
To configure unrestricted access:
(Instant Access Point)(config)# wired-port-profile <profile-name>
(Instant Access Point)(wired ap profile<name>)# set-role-unrestricted
(Instant Access Point)(wired ap profile<name>)# end
(Instant Access Point)(wired ap profile<name>)# commit apply
Understanding Hierarchical Deployment
AnOAW-IAP-130 series or RAP-3WN AP (with more than one wired port) can be connected to the downlink wired
port of another OAW-IAP (ethX). AnOAW-IAP with a single Ethernet port (like OAW-IAP-90 or OAW-IAP-100 series
devices) can be provisioned to use Ethernet bridging, so that Ethernet 0 port is converted to a downlink wired port.
You can also form anOAW-IAP network by connecting the downlink port of an AP to other APs. Only one AP in the
network uses its downlink port to connect to the other APs. This AP (called the root AP) acts as the wired device for
the network, provides DHCP service and an L3 connection to the ISP uplink with NAT. The root AP is always the
master of the Instant network. In a single Ethernet port platform deployment, the root AP must be configured to use
the 3G uplink.
A typical hierarchical deployment consists of the following:
Seitenansicht 113
1 2 ... 109 110 111 112 113 114 115 116 117 118 119 ... 295 296

Kommentare zu diesen Handbüchern

Keine Kommentare