Dell PowerConnect W-AirWave 7.4
| User Guide
Using RAPIDS and Rogue Classification |
171
Filtered rogues are dropped from the system before they are processed through the rules engine. This can speed
up overall performance but will eliminate all visibility into these types of devices.
Rogue Containment Options
Using RAPIDS, AMP can shield rogue devices from associating to Cisco WLC controllers (versions 4.2.114 and
later), and Dell PowerConnect W-Series controllers (running AOS versions 3.x and later). AMP will alert you to
the appearance of the rogue device and identify any mismatch between controller configuration and the desired
configuration.
Table 97
shows the Containment Options section of the RAPIDS > Setup page.
1. Navigate to the RAPIDS > Setup page.
2. From the Containment Options section, select Yes in the Manage rogue AP containment field. Once this is
done, the Contained Rogue classification will appear as an option in the classification drop down menu as
shown in
Figure 119
.
Additionally, once this option been enabled, the option to manage contained APs in Monitor-Only mode
becomes available. Containment in Monitor-Only mode means configuration changes will still be pushed to
the controller, even though it is in monitor-only mode.
Table 96
RAPIDS > Setup > Filtering Options
Field
Default
Description
Ignore Ad-hoc rogues
No
Filters rogues according to ad-hoc status.
Ignore Rogues by Signal
Strength
No
Filters rogues according to signal strength. Since anything below the established
threshold will be ignored and possibly dangerous, Dell PowerConnect W does
not recommend enabling this setting. Instead, incorporate signal strength into
the classification rules on the RAPIDS > Rules page.
Ignore Rogues Discovered by
Remote APs
No
Filters rogues according to the remote AP that discovers them. Enabling this
option causes AirWave to drop all rogue discovery information coming from
remote APs.
Ignore IDS Events from
Remote APs
No
Filters IDS Events discovered by remote APs.
NOTE: WMS Offload is not required to manage containment in AMP.
Table 97
RAPIDS > Setup > Containment Options Fields and Default Values
Field
Default
Description
Manage rogue AP
Containment
Yes
Rogue APs on Cisco WLC and Dell PowerConnect W-Series controllers as
defined by the Rules engine will be classified as a Contained Rogue. AMP pushes
the containment status of a rogue device to the controller and the controller
takes the appropriate action. For the rogue device to be contained, you may need
to configure containment on the controller.
Manage rogue AP
containment in monitor-only
mode
No
If disabled, AMP will display the desired containment settings but will not push
them to devices. This may result in mismatches in device classifications. This
can be useful for administrators that want to see what RAPIDS would push to the
controller without making any changes to their network.
If enabled, AMP will push the desired containment settings to the controllers in
Monitor-Only mode, as well as the devices in Managed mode.
Maximum number of APs to
contain a rogue
3
Sets the maximum number of APs that will contain a rogue on Cisco WLC
controllers.
Summary of Contents for PowerConnect W-Airwave
Page 1: ...Dell PowerConnect W AirWave 7 4 User Guide ...
Page 106: ...106 Configuring and Using Device Groups in AirWave Dell PowerConnect W AirWave 7 4 User Guide ...
Page 256: ...256 Creating Running and Emailing Reports Dell PowerConnect W AirWave 7 4 User Guide ...
Page 310: ...310 Index Dell PowerConnect W AirWave 7 4 User Guide ...