User's Guide

Table Of Contents
AirTight Management Console User Guide
48
Opportunistic Key Caching
Select the check box to enable client fast handoffs using opportunistic
key caching method. Note that the key caching works
within the same
subnet only and not across subnets.
Pre
-authentication
Select the
Pre-Authentication check box to enable client fast
handoffs using the Pre
-Authentication method.
NAS ID
This field is used when a network access server (NAS) serves as a
single point to access network resources. Generally, a NAS supports
hundreds of simultaneous users. When a RADIUS client connects to
a NAS, the NAS sends access request packets to the RADIUS
server. These packets must contain either the NAS IP address or the
NAS identifier. The NAS ID or the NAS
-Identifier is used to
authenticate RADIUS clients with the RADIUS server.
You can specify a string for the NAS ID. The default value is %m
-%s,
where
%m represents the Ethernet MAC address of the AP and %s
represents the SSID of the WLAN. This corresponds to the NAS
-
Identifier attribute on the RADIUS server. The attribute ID for the
NAS
-Identifier RADIUS attribute is 32.
Ensure that the NAS ID is not
the same as the shared secret
configured for the RADIUS server in the RADIUS Authentication
section.
Enable dynamic VLANs
Select the check box to enable the AP to accept the VLAN for the
current user from the RADIUS server. When dynamic VLANs are
enabled, BYOD, firewall, portal and NAT features are disabled
for the
Wi
-Fi profile.
When the check box is selected, you can ente
r a list of dynamic
VLANs in the box adjoining this check box. The list of dynamic VLANs
must be a comma
-separated list of VLAN IDs. If the RADIUS server
does not return a VLAN ID or returns a VLAN ID that is not in the list
of dynamic VLANs configured in
the Wi-Fi profile, the AirTight AP
redirects the user traffic to the default VLAN (that is, the VLAN ID
specified in the Wi-Fi profile network settings).
Fields in the Authentication Tab-Primary RADIUS Server area
Server IP
Enter the IP Address of the
primary RADIUS server here.
Port Number
Enter the port number at which primary RADIUS server listens for
client requests.
Shared Secret
Enter the secret shared between the primary RADIUS server and the
AP.
Fields in the
Authentication Tab- Secondary RADIUS Server area
Server IP
Enter the IP Address of the secondary RADIUS server here.
Port Number
Enter the port number at which secondary RADIUS server listens for
client requests.
Shared Secret
Enter the secret shared between the secondary RADIUS
server and
the AP.
Field in the
Accounting Tab