User's Guide
Table Of Contents
- Chapter 1: Introduction
- Chapter 2: Hardware Installation
- Chapter 3: Access Point Configuration
- Chapter 4: Gateway Configuration
- Chapter 5: Bridge Configuration
- Chapter 6: PC Card Installation on a Laptop
- Chapter 7: The RF Manager Function
- Chapter 8: Network Printer Setup
- Chapter 9: Technical Support
3e-531AP Wireless Access Point Chapter 1: Introduction
8 29000125-001 C
DHCP Server and NAT
In AP mode, the 3e-531AP has a DHCP (Dynamic Host Conguration
Protocol) server function that is accessible to the LAN port. If the 3e-
531AP is set up in gateway mode, this DHCP function is available, with
many rewall functions in addition, to both the LAN and WLAN ports.
DHCP is a protocol for assigning dynamic IP addresses.
When the 3e-531AP is in access point mode, the DHCP function is
accessible only from the local LAN port. A local LAN can be established
from the LAN port and can utilize the DHCP function.
If the 3e-531AP is recongured for gateway mode, and the DHCP
function is enabled, the gateway Ethernet uplink interface becomes the
only visible IP address to the Ethernet network. It uses Network Address
Translation (NAT) to forward packets from wireless devices as if they
were coming from the one visible IP address, managing a database of in-
formation in order to sort out and forward the replies to the correct client.
NAT provides an additional layer of security by protecting information
on the wireless LAN from direct access by the Ethernet LAN.
Operator Authentication and Management
Authentication mechanisms may be required within a cryptographic
module to authenticate an operator accessing the module and to verify
that the operator is authorized to assume the requested role and perform
services within that role.
There are two types of operators dened:
• Crypto Ofcer: The Crypto Ofcer user has total control of the
gateway. The Crypto Ofcer can congure the encryption keys
and upload rmware.
• Administrator: The Administrator can view congurations and
logs, can do non-cryptographic functions such as assigning host-
name, domain name, system date/time, TX Pwr Mode/Level and
the like. This user can reboot the gateway if it is deemed neces-
sary.
The Crypto Ofcer initially installs and congures the 3e-531AP after
which the password should be changed from the default password. The
enclosure itself must be physically secured.
Management
After initial setup, maintenance of the system and programming of
security functions are performed by personnel trained in the procedure
using the embedded web-based management screens. For general mainte-
nance, the Administrator logon should be sufcient.
The next chapter covers the basic procedure for setting up the hard-
ware.