WPA Configuration Example WebUI

Slides:



Advertisements
Similar presentations
Introduction to the WatchGuard AP Device
Advertisements

Designing for Pervasive Network Security. Designing for Security Our aim in this section will be to concentrate on how campus Networks can be designed.
Doc.: IEEE /0598r0 Submission May 2012 Steve Grau, Juniper NetworksSlide 1 Layer 3 Setup with Dynamic VLAN Assignment Date: Authors:
Application Guide For Mesh AP – MAP-3120
WHG Product Training Oct 2011 For authorized partners only
CONFIDENTIAL © Copyright Aruba Networks, Inc. All rights reserved AOS & CPPM INTEGRATION CONFIGURATION & TESTING EAP TLS & EAP PEAP by Abilash Soundararajan.
Filtering and Security By Mohammad Shanehsaz June 2004.
802.1X Configuration Terena 802.1X workshop the Netherlands, Amsterdam, March 30 th Paul Dekkers.
Wireless. Module Objectives By the end of this module participants will be able to: Explain the differences between thick and thin access points List.
Network Access and 802.1X Klaas Wierenga SURFnet
1 Objectives Wireless Access IPSec Discuss Network Access Protection Install Network Access Protection.
© 2003, Cisco Systems, Inc. All rights reserved. FWL 1.0—8-1 Security Olga Torstensson Halmstad University.
Wireless Technologies Networking Essentials Chapter 12 – Part 2 Fall, 2012.
© 2007 Cisco Systems, Inc. All rights reserved.ICND1 v1.0—3-1 Wireless LANs Understanding WLAN Security.
Wireless Network Security Lab Last Update Copyright 2011 Kenneth M. Chipps Ph.D.
Chapter 3 Application Level Security in Wireless Network IWD2243 : Zuraidy Adnan : Sept 2012.
1 © 2005 Cisco Systems, Inc. All rights reserved. 111 © 2004, Cisco Systems, Inc. All rights reserved. CNIT 221 Security 1 ver.2 Module 7 City College.
Atlanta-Fulton Public Library Wireless Network Ali Nabavi Project Manager Information Technology Fulton County Government.
Module 9: Planning Network Access. Overview Introducing Network Access Selecting Network Access Connection Methods Selecting a Remote Access Policy Strategy.
Firewall policies Configuration->Security->Access Control->Policies: Add User role Configuration->Security->Access Control-> User Roles: Add Server group.
Certified Wireless Network Administrator (CWNA) PW0-105 Chapter Network Security Architecture.
Altai Certification Training Backend Network Planning
Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 1 NGWC – Central Webauth (CWA) using ISE 3850 and 5760 Viten Patel – RTP Wireless.
Lesson 20-Wireless Security. Overview Introduction to wireless networks. Understanding current wireless technology. Understanding wireless security issues.
High-quality Internet for higher education and research Paul Dekkers April 4th, Turkey.
1 © 2005 Cisco Systems, Inc. All rights reserved. 111 © 2004, Cisco Systems, Inc. All rights reserved.
Environment => Office, Campus, Home  Impact How, not Whether A Checklist for Wireless Access Points.
© Aastra – 2012 SIP-DECT 4.0 RFP 43 WLAN June 2012.
Wireless Authentication & 802.1X By Gareth Ayres.
© 2006 Cisco Systems, Inc. All rights reserved. Optimizing Converged Cisco Networks (ONT) Module 6: Implement Wireless Scalability.
20 November 2015 RE Meyers, Ms.Ed., CCAI CCNA Discovery Curriculum Review Networking for Home and Small Businesses Chapter 7: Wireless Technologies.
Chapter 9: Implementing the Cisco Adaptive Security Appliance
7.4 Update - ISE Session.
Enterprise High Speed Access Point Brand & Marketing MGMT Dept DrayTek Corp VigorAP900.
1 Objectives Wireless Access IPSec Discuss Network Access Protection Install Network Access Protection.
Cisco Discovery Home and Small Business Networking Chapter 7 – Wireless Networking Jeopardy Review v1.1 Darren Shaver Kubasaki High School – Okinawa,
© 2003, Cisco Systems, Inc. All rights reserved. FWL 1.0— © 2003, Cisco Systems, Inc. All rights reserved.
Module Overview Overview of Wireless Networks Configure a Wireless Network.
ArubaOS-Switch Tunneled Node
Securing Cisco Wireless Enterprise Networks (WISECURE)
Implementing Network-Edge Security with 802.1x
Wireless Ethernet Programming
Wireless LAB Test Preparation Guide
3GPP meeting Wireless LAN access
Wireless Network Setting (Windows XP)
Change of VLAN for Wired Guest
Holistic view of 802.1x integration & optimization
SECURE WIRELESS NETWORK IN IŞIK UNIVERSITY ŞİLE CAMPUS
Security of a Local Area Network
Download Exact HP HPE6-A29 Exam Questions With Answers - HPE6-A29 Dumps PDF Realexamdumps.com
2018 Real Huawei H Exam Questions Killtest
Cisco Real Exam Dumps IT-Dumps
Free Dumps With Real Exam Question Answers | Free Update
Stellar Enterprise WLAN Global Overview
On and Off Premise Secure Access
UNIFIED WIRELESS NETWORK
Wireless LAN Security 4.3 Wireless LAN Security.
D-Link Business Wireless LAN Solution
IEEE i Dohwan Kim.
SY604 NAT PPPoE Configuration
UT Gert Meijerink Service Departement for Information Technology, Library and Education (ITBE) TERENA 2004.
SurfCFCC Secure Wireless Access For Students, Faculty, and Staff.
UNIFIED WIRELESS NETWORK
Agenda Create certificates for the GlobalProtect Portal, internal gateway, and external gateway. Attach certificates to a SSL-TLS Service Profile. Configure.
Agenda Comware 5 and Comware 7 device based AAA:
UNIFIED WIRELESS NETWORK
LM 5. Wireless Network Security
What’s New In WatchGuard Wi-Fi Cloud v8.6
Presentation transcript:

WPA Configuration Example WebUI VLAN Configuration->Network->VLANs: Add Firewall policies Configuration->Security->Access Control->Policies: Add User role Configuration->Security->Access Control-> User Roles: Add AP system profile Configuration->All Profiles->AP-> AP System Profile: Add Define Authentication Server Configuration->Security->Authentication-> Severs: <Server Type>: Add AP Group Configuration-> AP Configuration: New Server group Configuration->Security->Authentication-> Severs->Server Group: Add Assign VAP to AP Group Configuration->AP Configuration: <AP-Group-Name>: Edit 802.1x Authentication Profile Configuration->All Profiles->Wireless LAN-> 802.1x Authentication Profile: Add AAA Profile Configuration->All Profiles-> Wireless LAN->AAA Profile: Add SSID Profile Configuration->All Profiles-> Wireless LAN->SSID Profile: Add Virtual AP Profile Configuration->All Profiles-> Wireless LAN->Virtual AP profile: Add Non-Profile Configuration Security Profile Configuration WLAN Configuration AP Configuration

WPA Configuration Example CLI VLAN vlan 200 Firewall policies ip access-list session "EmployeeAccess" any any any permit queue low AP system profile ap system-profile Sunnyvale_APs lms-ip 192.168.252.1 bkup-lms-ip 192.168.250.1 User role user role Employee access-list session EmployeeAccess Define Authentication Server aaa authentication-server RADIUS01 . . . AP Group ap-group Sunnyvale_APs Server group aaa server-group EmployeeRADIUS auth-server RADIUS01 Assign VAP to AP Group ap-group Sunnyvale_APs virtual-ap Employee_VAP ap-system-profile 802.1x Authentication Profile aaa authentication dot1x EmployeeDot1x termination eap-type eap-peap AAA Profile aaa profile Employee_AAA dot1x-default-role logon authentication-dot1x EmployeeDot1x SSID Profile wlan ssid-profile Employee_SSID essid “corp” opmode wpa2-aes Virtual AP Profile wlan virtual-ap Employee_VAP aaa-profile Employee_AAA ssid-profile Employee_SSID vlan 200 forward-mode tunnel Non-Profile Configuration Security Profile Configuration WLAN Configuration AP Configuration

Captive Portal Configuration Example WebUI VLAN Configuration->Network->VLANs: Add Firewall policies Configuration->Security->Access Control->Policies: Add User role Configuration->Security->Access Control-> User Roles: Add AP system profile Configuration->All Profiles->AP-> AP System Profile: Add Define Authentication Server Configuration->Security->Authentication-> Severs: <Server Type>: Add AP Group Configuration-> AP Configuration: New Server group Configuration->Security->Authentication-> Severs->Server Group: Add Assign VAP to AP Group Configuration->AP Configuration: <AP-Group-Name>: Edit Captive Portal Authentication Configuration->All Profiles->Wireless LAN-> Captive Portal Authentication Profile: Add +Server Group == <Server Group> SSID Profile Configuration->All Profiles-> Wireless LAN->SSID Profile: Add AAA Profile Configuration->All Profiles-> Wireless LAN->AAA Profile: Add Virtual AP Profile Configuration->All Profiles-> Wireless LAN->Virtual AP profile: Add Assign Captive Portal Profile Configuration->Security->Access Control-> User Roles: <Guest Role>: Edit Non-Profile Configuration Security Profile Configuration WLAN Configuration AP Configuration

Captive Portal Configuration Example CLI VLAN vlan 900 Firewall policies ip access-list session ”GuestAccess" any any any permit queue low AP system profile ap system-profile Sunnyvale_APs lms-ip 192.168.252.1 bkup-lms-ip 192.168.250.1 User role User-role guest access-list session GuestAccess Define Authentication Server aaa authentication-server GuestAuthServer . . . AP Group ap-group Sunnyvale_APs Server group aaa server-group GuestAuthServers auth-server GuestAuthServer Assign VAP to AP Group ap-group Sunnyvale_APs virtual-ap Employee_VAP ap-system-profile Captive Portal Authentication Profile aaa authentication captive-portal GuestCP server-group “internal” SSID Profile wlan ssid-profile Guest_SSID essid “guest” opmode opensystem Virtual AP Profile wlan virtual-ap Guest_VAP aaa-profile Guest_AAA ssid-profile Guest_SSID vlan 900 forward-mode tunnel AAA Profile aaa profile Guest_AAA initial-role logon Assign Captive Portal Profile User-role guest captive-portal GuestCP Non-Profile Configuration Security Profile Configuration WLAN Configuration AP Configuration

WEP Configuration Example WebUI VLAN Configuration->Network->VLANs: Add Firewall policies Configuration->Security->Access Control->Policies: Add User role Configuration->Security->Access Control-> User Roles: Add AP system profile Configuration->All Profiles->AP-> AP System Profile: Add AP Group Configuration-> AP Configuration: New Assign VAP to AP Group Configuration->AP Configuration: <AP-Group-Name>: Edit SSID Profile Configuration->All Profiles-> Wireless LAN->SSID Profile: Add Virtual AP Profile Configuration->All Profiles-> Wireless LAN->Virtual AP profile: Add Non-Profile Configuration Security Profile Configuration WLAN Configuration AP Configuration

WEP Configuration Example CLI VLAN vlan 200 Firewall policies ip access-list session "EmployeeAccess" any any any permit queue low AP system profile ap system-profile Sunnyvale_APs lms-ip 192.168.252.1 bkup-lms-ip 192.168.250.1 User role user role Employee access-list session EmployeeAccess AP Group ap-group Sunnyvale_APs Assign VAP to AP Group ap-group Sunnyvale_APs virtual-ap Employee_VAP ap-system-profile SSID Profile wlan ssid-profile WEP_SSID wepkey1 deadbeef99 opmode static-wep Virtual AP Profile wlan virtual-ap WEP_VAP ssid-profile WEP_SSID vlan 210 forward-mode tunnel Non-Profile Configuration Security Profile Configuration WLAN Configuration AP Configuration