Specifications
Security Options 59
Chapter 5
AOS-W Security Options
The following security configuration options are supported in AOS-W:
z Roles
z Policies
z AAA Servers
z Authentication Methods
z VPN Settings
8081 TCP Wireless 
LAN 
Switch
Used internally for captive portal 
authentication (HTTPS). Not 
exposed to wireless users. A 
default self-signed certificate is 
installed after the user explicitly 
selects this port to be open. 
Users in a production 
environment are urged to install a 
certificate from a well known CA 
such as Verisign. Self-signed 
certs are open to 
man-in-the-middle attacks and 
should only be used for testing.
8082 TCP Wireless 
LAN 
Switch
Used internally for single sign-on 
authentication (HTTP). Not 
exposed to wireless users.
8083 TCP Wireless 
LAN 
Switch
Used internally for single sign-on 
authentication (HTTPS). Not 
exposed to wireless users.
8088 TCP Wireless 
LAN 
Switch
Internal
8200 UDP Wireless 
LAN 
Switch
Alcatel Discovery Protocol (ADP)
8211 UDP Wireless 
LAN 
Switch
Internal
TABLE 5-1 Default (Trusted) Open Ports (Continued)
Port 
Number
Protocol Where Used Description










