User's Guide

Table Of Contents
AirTight Management Console Configuration
91
Authentication
Type
Higher layer authentication types that clients can use while connecting to
the SSID. Authen
tication types do not determine the classification of APs,
but are used to raise an event if a client uses non
-allowed authentication
type. The system raises this event only if the system sees authentication
protocol handshake frames.
'Any' is the default value. You can select one
or more options from PEAP, EAP
-TLS, LEAP, EAP-TTLS, EAP-FAST,
and EAP-SIM after deselecting 'Any'.
AP
Capabilities
Additional capabilities of the APs. If you select any of these advanced
capabilities, the classification logic
allows APs with and without these
capabilities. 'Any' is the default value. You can
select one or more
Turbo/Super techniques used by Atheros to get higher throughputs
Turbo, 802.11n, and SuperAG, after deselecting 'Any'.
MFP/802.11w
Indicates whether MFP/802.11w is enabled or disabled on the SSID. 'Any'
is the default value. You can select an option from MFP/802.11w enabled
or MFP/802.11 disabled, after deselecting 'Any'.
Allowed
Networks
Select the network(s) where wireless traffic on the SSID is to be mapped
through Authorized APs. Select Any to allow wireless traffic on this SSID
to be mapped to any network. Alternatively, you can deselect Any and
choose from networks that are discovered automatically by the system or
add new networks that are not yet discovered by the system.
Allowed AP
Vendors
Allowed AP vendors whose APs are allowed to be connected to the SSID
or network. 'Any' is the default value. You can select one or more vendors
from a predefined list of AP vendors. Deselect 'Any' to be able to
select
specific vendors.
Apply this
Policy
Template to
current
location
Select the check box
to apply the policy template to the selected location.
Unless this check box is selected, the WLAN will not be evaluated against
this policy template.
5.
Click Save.
Edit Policy Template
You can edit a policy template only at a location where the policy template has been defined.
To edit a policy template, do the following.
1.
Go to Configuration>WIPS>Authorized WLAN Policy.
2.
Select the location from the location tree where the policy template has been defined.
3.
Click the link for the policy template in the policy list. The Edit Template for an Authorized 802.11
SSID dialog box appears. Make changes to the fields on this dialog box as required. Refer to the
following table to define the properties of the policy templates related to authorized SSIDs.
Field
Description
Authorized
SSID
Name of the existing or new authorized SSID or network name. The
existing SSID template list is built using the data received from sensors.
Template
Name
Name of the authorized policy template.
Description
Short description to identify the policy template.
This is Guest
SSID
Select this check box if this SSID is a guest SSID.
Network
The network protocol of the SSID. 'Any' is the default value. You can