User`s guide
Configuration
2-10 Planning and Managing Your Wireless Network
Authorization
Authorizationisthemethodforprovidinguserswithspecificrightstothenetworkbyassociating
attribute‐value(AV)pairstotheuser.AAAauthorizationworksbyassemblingasetofattributes
thatdescribewhattheuserisauthorizedtoperform.Theseattributesarecomparedtothe
informationcontainedinalocal
databaseoronaRADIUSserverforagivenuserandtheresultis
returnedtotheRoamAboutswitchtodeterminetheuser’sactualcapabilitiesandrestrictions.
Youcanconfigure attributes,suchasthetimeofdayorspecificVLANaccess.Youcanalsocontrol
accessusingsecurityaccesscontrollists
(ACLs),MobilityProfiles
TM
,andLocationPolicies.
SecurityACLspermitordenytrafficbasedonIPprotocol,IPaddressesand,optionally,TCP or
UDPport.Theyalsocanbeusedtosetclass‐of‐service(CoS)valuesinapacket.MobilityProfiles
containattributestoallowordenyaccesstospecificpartsofthe
networkforaspecificuseror
groupofusers.LocationPoliciesareanorderedlistoflocationpolicyrulesbasedonauserglob,
VLAN,and/orports.ALocationPolicycanbeconfiguredifyouneedtooverridetheconfigured
AAAuserauthorizationattributeslocallyforaspecificRoamAboutswitch.
Accounting
Accountingcollectsandsendsinformationusedforbilling,auditing,andreporting—forexample,
useridentities,connectionstartandstoptimes,thenumberofpacketsreceivedandsent,andthe
numberofbytestransferred.Youcantracksessionsthroughaccountinginformationstoredlocally
oronaremoteRADIUSserver.Asnetworkusersroam
throughoutthenetwork,accounting
recordstrackthemandtheirnetworkusage.
System and Administration Configuration
AMobilityDomainisacollectionofRoamAboutswitchesthatworktogethertosupportroaming
users.OneoftheRoamAboutswitchesisdefinedasaseeddevice,whichdistributesinformation
totheotherRoamAboutswitchesdefinedintheMobilityDomain.
AMobilityDomainallowsuserstoroamgeographicallyfromoneRoamAbout
switchtoanother
withoutlosingnetworkconnectivity.UsersconnectasamemberofaVLANthroughtheir
authorizedidentities.
YoucanaddswitchestoanetworkplanasmembersofaMobilityDomainorasstandalone
switches.Afteraswitchisadded,youcanmoveitintooroutofa
MobilityDomain.
YoucancreatethefollowingtypesofRoamAboutswitches:
•RBT‐8400
•RBT‐8200
•RBT‐8100
•RBT‐8110
PerformthefollowingtaskstocreateandinitiallyconfigureaRoamAboutswitch:
1. ConfigurebasicRoamAboutswitchproperties.
2. ConfigureRoamAboutswitchconnectioninformation.
3. Configurebootinformation.