background image

Chapter 2 System Application 

 

 

Figure 1 

Single-cell Wireless Network Topology 

 

Multiple APs in Separate Networks  

Multiple APs can coexist as separate networks in the same site 

without interference by using different ESS_IDs. 

E.g. In an exhibition, where each company’s network is 

independent 

Figure 2 

 Multi-APs with different ESS_IDs in Separate 

Networks Topology 

 

Summary of Contents for WA3001

Page 1: ...WA3001 Indoor AP Wireless Access Point USER GUIDE Release 1 1 Doc Code L3 DW09 1000 02 010 00 UTStarcom Inc...

Page 2: ......

Page 3: ...ject to the following United States Government Legend All technical data and computer software is commercial in nature and developed solely at private expense Software is delivered as Commercial Compu...

Page 4: ......

Page 5: ...uncontrolled environment This device and its antenna must not be co located or operating in conjunction with any other antenna or transmitter MPE Statement Safety Information Your device contains a lo...

Page 6: ...ed and found to comply with the limits for a class B digital device pursuant to part 15 of the FCC Rules These limits are designed to provide reasonable protection against harmful interference in a re...

Page 7: ...For the following equipment WA3001 Access Point 0984 Is herewith confirmed to comply with the requirements set out in the Council Directive on the Approximation of the Laws of the Member States relati...

Page 8: ...EN 300 328 V 1 4 1 2003 04 EN 301 489 1 V 1 3 1 2001 09 EN 301 489 17 V 1 1 1 2000 09 EN 50371 2002 EN 60950 2000...

Page 9: ......

Page 10: ...le APs in Separate Networks 6 Multiple APs within a Network 7 Extension of Wired Network 7 Repeater Mode CardBus Adapter 8 Point to Point Mode 8 Point to Multiple Points Mode 9 Repeater AP Combined Ne...

Page 11: ...Router Mode Introduction 23 Logon the System 28 Save and Reboot 30 5 Web based Configuration 33 Guide Configuration 36 Wireless Port Configuration 39 DHCP Server Configuration 45 WAN Interface Config...

Page 12: ...System Information 77 Changing Password 78 Managing File System 79 Debug Configuration 82 7 Performance Statistics 85 Interface Statistics 85 DHCP Server Statistics 87 DHCP Relay Statistics 91 RADIUS...

Page 13: ...EXEC Commands 117 Debug 117 Enable 117 Clear 118 End 118 Exit 118 History 119 Logout 119 Ping 119 Quit 120 Show 120 Tree 120 Write Memory 120 Privileged EXEC Commands 121 Configure 121 Copy Config to...

Page 14: ...cs 125 Clear RADIUS 125 Clear MAC 126 Clear NAT 126 Clear NAT Translation 126 Kill 126 Reboot 127 Auto config Enable Disable 127 Global Config Commands 127 AP Mode 127 ARP Entry 128 Broadcast Limit 12...

Page 15: ...1x Max Req 134 Dot1x Quiet Period 134 Dot1x Re Authenticate 135 Dot1x Re Authentication 136 Dot1x Re Authperiod 137 Dot1x Server Timeout 137 Dot1x Supplicant Timeout 138 Dot1x TX Period 139 Dynamic Us...

Page 16: ...able Disable 146 NAT Interface 147 NAT Map 147 NAT Mode 148 NAT Pool 148 NAT Redirect 148 NAT Timeout 149 Operator Access level 149 Operator Add Delete 150 Operator Password 151 PPPoE Auto Connect Dis...

Page 17: ...t 157 RADIUS Server Timeout 158 SNMP Client 158 SNMP Server Community 159 SNMP Server Contact 159 SNMP Server Enable Disable 159 SNMP Server Location 160 SNMP Server Sysname 160 SNMP Server Trap Enabl...

Page 18: ...isable 166 VLAN Tag Enable 167 VLAN Visitor Default Vid 167 Webserver 167 Wireless Port 168 DHCP pool Configuration Mode 168 DNS Server 168 Excluded Address 169 Gateway 170 Lease 171 Network 172 Manua...

Page 19: ...nnel 176 DTIM Interval 177 Power 177 RTS CTS Threshold 178 SSID 178 Tx Rate 179 Wireless Mode 179 WDS Mode Enable Disable 180 WDS Peer MAC 180 WEP Encryption Enable Disable 181 WEP Encryption Key 181...

Page 20: ...sable 185 IP Filter Enable Disable 186 IP Filter Client 186 Port Filter 186 IAPP Mode 187 Enable Disable 187 ESP Enable Disable 187 Mode 187 Map 188 Secret 188 Debug Mode 189 Ping 189 Debug Module 189...

Page 21: ...tack Debug 194 Show Ipstack Debug 194 Show 195 Show ARP 195 Show Console 195 Show DHCP Client 196 Show DHCP Service 196 Show DHCP Binding 197 Show DHCP Relay 197 Show DHCP Server 198 Show DHCP Statist...

Page 22: ...ADIUS Configuration 204 Show RADIUS Statistics 204 Show Sms User 204 Show SMS Online User 205 Show Wireless Port 205 Show System 205 Show Telnet 206 Show SNMP Server Configuration 207 Show AP Mode 207...

Page 23: ...xiv Show VLAN Binding 210 Show IAPP Configuration 211 10 Troubleshooting 213 11 Technical Specifications 215 12 Acronyms and Abbreviations 219...

Page 24: ...6 Repeater Point to Multi points Mode Network Topology 9 Figure 7 Repeater AP Combined Network Topology 10 Figure 8 WA3001 Front View 12 Figure 9 WA3001 Side View 1 13 Figure 10 WA3001 Side View 2 14...

Page 25: ...29 Dynamic User Configuration Interface 62 Figure 30 Static User Configuration Interface 64 Figure 31 ARP Configuration Interface 65 Figure 32 Route Configuration Interface 66 Figure 33 Table 5 1 Rou...

Page 26: ...on 83 Figure 45 Interface Statistics 86 Figure 46 DHCP Server Statistics 88 Figure 47 DHCP Relay Statistics 92 Figure 48 RADIUS Client Statistics 94 Figure 49 ARP Table 96 Figure 50 Route Table 97 Fig...

Page 27: ...uration Specification 47 Table 9 WAN Interface Configuration Specification 50 Table 10 LAN Interface Specification 53 Table 11 Radius Client Configuration Specification 54 Table 12 802 1x Configuratio...

Page 28: ...xix Table 18 RADIUS Client Statistics Window Description 94 Table 19 Online User Information Window Description 98 Table 20 Troubleshooting 213 Table 21 WA3001 AP Technical Specifications 215...

Page 29: ......

Page 30: ...transmission within the public network WA3001 is the premier choice for WISP Hotspot Network Solutions because of its user friendly design high speed data transmission rate of up to 54Mbps additional...

Page 31: ...t supports Type III PC card One hot pluggable CardBus socket supports Type II PC card One RS 232 port for management and console Compliance IEEE 802 3X duplex 10BaseT 100BaseTX ports IEEE802 3u 100Bas...

Page 32: ...11g Supports four adjustable RF power levels 10mw 20mw 50mw 100mw Supports 64 128 bit WEP Encryption Supports 802 1x to provide high data security Supports EAP MD5 Supports DHCP server Supports WEB pa...

Page 33: ...Repeater mode dual mode Super G maximize network throughput peak flow is able to reach the wire LAN throughput at 10 100M It exceeds the previous generation wireless functionality Supports XR the rec...

Page 34: ...P2MP mode one AP connects with up to four APs As a regular adapter the AP can be configured as a single cell network a multi cell network or an extension of wired network Wireless Network Access MiniP...

Page 35: ...ltiple APs in Separate Networks Multiple APs can coexist as separate networks in the same site without interference by using different ESS_IDs E g In an exhibition where each company s network is inde...

Page 36: ...mpany each department accesses a public file server through its own AP Figure 3 Multi APs within a Network Topology Extension of Wired Network AP can connect to the wired network through WAN ports or...

Page 37: ...Bus Adapter Point to Point Mode Point to Point mode is used to connect two networks in WLAN application E g In a campus using WA3001 s point to point mode to connect two buildings in a separate wired...

Page 38: ...ode Network Topology Point to Multiple Points Mode In WLAN application point to multiple points mode dramatically expands network coverage and quickly establishes the connectivity among existing netwo...

Page 39: ...epeater AP Combined Network Capable of being a wireless entrance for wireless clients or a repeater of a wired network the WA3001 expands network coverage easily via wireless connection Figure 7 Repea...

Page 40: ...incomplete contact your local dealer immediately The following accessories are shipped with the product One WA3001 AP One user guide One power adapter Two small antennas One installation bracket Three...

Page 41: ...Note The two power supply modes cannot be used simultaneously In PoE power supply mode RJ45 4 5 7 8 connects to WAN port One RJ 45 LAN port supports 10 100Mbps data transmission rate Product Physical...

Page 42: ...ing in green Lights when power is being supplied well AP Lighting in green Lights when AP is able to be connected by clients Off No wireless channel WLAN Blinking in green Blinking with wireless conne...

Page 43: ...N management RESET Restore button to reboot reset the AP to its default settings LAN Four LAN ports to access Ethernet RJ 45 connector Figure 10 WA3001 Side View 2 The following table lists the items...

Page 44: ...top shown in Figure 11 is for installing a Wireless LAN CardBus Adapter Hardware Installation Steps 1 Location Place the AP in an appropriate place in a room 2 Antenna Screw two antennae into both si...

Page 45: ...that can identify the connection automatically use crossover or straight through network cable Through WAN port connects PC to WAN port use crossover network cable Through wireless port installs a wi...

Page 46: ...in Password admin Guest User name guest Password guest System access procedure 1 Connects the power adapter to an AP 2 Makes sure that the connection between PC and AP s LAN port is connected 3 Config...

Page 47: ...gure 13 Logon Window Firmware Description The default setting of WA3001 firmware is different according to the nation wide regulation of wireless frequency channel The AP configuration of this manual...

Page 48: ...2 Wireless Frequency Channel Default Setting North America FCC Europe ETSI Operation Channel 2 412 2 462GHz 2 412 2 472GHz Frequency Channel 1 11 Default 1 1 13 Default 1 Mode b 40mw 16dBm Default RF...

Page 49: ......

Page 50: ...ve Reboot Apply System Configuration Introduction Log on the system select an operation mode and configure the ports accordingly In Router mode WAN port configuration depends on the retrieval of IP ad...

Page 51: ...channel attributes After configuration save it and reboot the system S t a r t A P m o d e B r id g e R o u t e r D H C P f o r W A N C o n f ig IP a d d r e s s G e t IP f o r m D H C P C o n f ig L...

Page 52: ...ter 4 Web based Configuration Introduction 23 Bridge Router Mode Introduction Table 3 Configuration Menu in Bridge Mode Main Menu Sub Menu Logon Guide Basic Config Advanced Config System Config Statis...

Page 53: ...24 Chapter 4 Web based Configuration Introduction Table 4 Configuration Menu in Router Mode Main Menu Sub Menu Logon Guide Basic Config Advanced Config System Config...

Page 54: ...me time The default assumes a Mini PC card on Wireless port 2 Configure the 802 11b attributes for the wireless port Activate WDS mode to implement Repeater functions Activate WEP encryption to provid...

Page 55: ...ption for 802 1x authentication Configure global user authentication attributes among the Server the AP and the Client RADIUS Client configuration Configure this option while using a Radius server to...

Page 56: ...nd user isolation MAC table management Adds the MAC address table to speed forwarding of user data System document management Manages the system documents remotely through FTP or TFTP server This incl...

Page 57: ...ter the default IP address in the browser s logon field then enter the default user name and password Interface Figure 15 Logon Successful Description General introduction The left panel is the functi...

Page 58: ...001 step by step It helps user to complete the configuration quickly Basic Config Implements the system s basic configurations Advanced Config Implements the system s advanced configurations System Co...

Page 59: ...re applied only after saving and rebooting the AP A corresponding prompt window will be popped up Refresh refreshes the interface Default restores the default parameters Figure 16 AP Reboot Prompt Win...

Page 60: ...escription Press Save to save the system configuration changes Press Reboot to apply the configuration This is similar to the Reset button in the equipment Note Click Save to save the configuration ch...

Page 61: ......

Page 62: ...based configuration operations Functional menu based operations in Basic and Advanced configuration modes Figure 18 lists all configurable items in Basic Config Figure 19 and Figure 20 list all confi...

Page 63: ...W EP key Key t ype Key 1 Key 2 Key 3 Key 4 SSID Channel W EP enabl e di sabl e W EP key Key t ype Key 1 Key 2 Key 3 Key 4 Dynam i c St at i c IP St at i c I P addr ess St at i c I P m ask Def aul t Ro...

Page 64: ...AC filter Enable Disable Black list Write list Boradcastlimit MAC age IP route ARP entry Enable Disable Basic NAPT Start IP End IP map redirect timeout Beacon Interval DTIM interval Power Basic rate T...

Page 65: ...timeout Supplicant timeout Tx period Quite period Host server Accounting key Authentication key Dead time retransmit Time out Dynamic user Static user WDS enable disable PTP PTMP Peer MAC WDS enable...

Page 66: ...operation mode to Bridge Mode Description If AP is used as Layer 2 bridging choose the Bridge mode If AP involves in Layer 3 communication choose the Router mode 1 Click next to set LAN interface IP...

Page 67: ...SSID is UT and the default channel is 1 Description In a planned AP wireless network SSID is a service ID which is assigned to the AP by the system administrator Only a wireless network card with a c...

Page 68: ...the situations 1 Click next to complete the Guide configuration 2 Click finish to save the configuration click cancel to keep the current configuration Wireless Port Configuration Objective 1 Wireless...

Page 69: ...ration Figure 21 Basic Config Wireless Port Config Description Table 5 Wireless Port 1 Interface Specification Field Description Default Value MAC Address Wireless network card MAC address Uplink Dete...

Page 70: ...UT Mode 3 optional modes are 802 11b g 802 11b and 802 11g Select b g compatible mode to get connection through traditional wireless network card in b mode 802 11b g Frequency Channel Display AP s cu...

Page 71: ...hexadecimal digits between a f A F and 0 9 with prefix 0x E g 0x11AA22BB33 WEP 128 Uses any 13 alphanumeric characters between a z A Z and 0 9 E g MyKey12345678 26 hexadecimal digits between a f A F a...

Page 72: ...ireless Port 2 Interface Specification Field Description Default Value Beacon Interval Interval between Beacon packets the Beacon packet contains network card information duration of broadcast to the...

Page 73: ...ct the current optimum rate Possible values are 11Mbit s 5 5Mbit s 2Mbit s 1Mbit s Auto auto Basic Rate The network card is restricted to operate at the selected Tx rates 1 2Mbit s Antenna Possible va...

Page 74: ...s within a range of 256 2346 bytes Suggestion do not modify the value 2346 User can configure all items in table 5 3 but usually Antenna Power and Tx Rate are configurable The rest of the items are no...

Page 75: ...e 23 DHCP Server Configuration Detailed Instructions When DHCP Server is enabled the system automatically displays the following configuration interface When DHCP Relay is enabled the system automatic...

Page 76: ...ess IP address 172 18 37 1 Subnet Mask Subnet mask 255 255 255 0 DHCP Server Configuration Use DHCP Server Enable Disable DHCP server options Disable Network IP IP address of DHCP address pool Network...

Page 77: ...h LAN port The subnet mask of DHCP Server IP address pool must be less than the network mask used in LAN interface Able to allocate maximum of 1024 addresses from IP address pool including reserved ad...

Page 78: ...5 Web based Configuration 49 Configure WAN interface when AP is in Router mode Access Method Click the Basic Config WAN Interface link on the left panel Interface Figure 24 WAN Port Configuration Int...

Page 79: ...ient Status Disabled WAN IP Address Configuration IP Address Obtain Methods 1 PPPoE mode 2 Obtain address automatically using DHCP 3 Specify IP address below Specified IP address mode IP Address 192 1...

Page 80: ...IP address through DHCP server Detailed Instructions Click the Trusted DHCP Server link to show the following configuration interface Figure 25 Trusted DHCP Server Configuration Description Up to 5 tr...

Page 81: ...N Interface Configuration Objective User needs to perform LAN interface configuration regardless AP working mode Access Method Click the Basic Config LAN Interface link Interface Figure 26 LAN Interfa...

Page 82: ...Enable the interface Enable the interface Enable IP address IP address 172 18 37 1 Subnet mask Subnet mask 255 255 255 0 Radius Client Objective Provides accounting service to AP subscribers when AP...

Page 83: ...ription Table 11 Radius Client Configuration Specification Field Description Default Value Radius Server Enable Server1 3 Enable or disable Radius server up to 3 servers can be configured Disable Serv...

Page 84: ...minutes Server timeout time 5 seconds Server transmit times If the request sent to the Radius Server does not get a response within Timeout value the request is re sent to the server until the number...

Page 85: ...56 Chapter 5 Web based Configuration Click the Advanced Config Authentication link on the left panel Configuration Interface...

Page 86: ...Chapter 5 Web based Configuration 57 Figure 28 802 1x Authentication Configuration Interface Description...

Page 87: ...al remote remote local none Encryption Mode Encryption mode between wireless terminals and AP Options CHAP PAP PAP Max online user number Max online user number Options 1 256 0 802 1x Authentication C...

Page 88: ...frame Possible values 1 65535 seconds 30 Quiet period if authentication failed If the user name or password failed because of authentication the AP will not process the authentication request from th...

Page 89: ...Possible values 1 2 2 For a specific user User ID User ID the system automatically generates a unique id when adding a new user Re authentication Enable or Disable Re authentication Initial a specific...

Page 90: ...n Server AP Client authentication parameters configuration Specify authenticated users initialize authenticated users and re authenticated users User Management Objective After 802 1x authentication i...

Page 91: ...n Detailed Instructions Add a new dynamic user Enter User name and Password and then click Add A new entry will be added in the table as shown below User ID is automatically generated by the system En...

Page 92: ...access Disable disables a specific dynamic user and prohibits the user access Delete deletes a specific dynamic user and removes the user information from the database Static Users Access Method Clic...

Page 93: ...nter static user s PC MAC address and then click Add A new user entry will be added in the table as shown below User ID is automatically generated User name is identical to MAC address Enable or disab...

Page 94: ...rohibits the user access Delete deletes a specific static user and removes the user information from the database ARP Management Access Method Click the Advance Config ARP link on the left panel Confi...

Page 95: ...on through configure the static ARP table Add a new ARP entry Enter IP address MAC address and then click Add New Remove ARP Click Remove to delete one ARP entry Route Configuration Access Method Clic...

Page 96: ...ace Spec Field Description IP address Route s beginning IP address Mask Route s beginning Subnet mask Next Hop Route s next hop address NAT Configuration Access Method Click the Advanced Config NAT li...

Page 97: ...ce inside LAN Port NAT Interface outside NAT Interface outside WAN port Configuration Description When NAT is enabled select NAPT mode Click Apply to apply the configuration and click Advanced to take...

Page 98: ...Config NAT Advance link then click NAT on the left and click NAT Pool on the right Configuration Interface Configuration Description Detailed Instructions Add a port based MAP Input the values in the...

Page 99: ...e a port based MAP Basic NAT Mode Access Method Click the Advanced Config NAT Advance link then click NAT link on the left click NAT Static Map link on the right Configuration Interface Figure 36 NAT...

Page 100: ...and then click Apply Add new IP Address based static MAP Input the values in the Add local IP Address and Add Global IP Address fields then click Add Delete static MAP Click Remove to delete a static...

Page 101: ...tion Table 13 MAC Filter Configuration Specification Field Description Default Value Isolation LAN Wireless Isolation LAN Isolation Wireless Isolation 3 types of isolations LAN wireless isolation LAN...

Page 102: ...list MAC address white list The clients in the white list are allowed to access AP Configuration Description To prevent unauthorized access or to fulfill the network design and unnecessary or prohibit...

Page 103: ...Configuration Interface Configuration Description Detailed Instructions MAC Age time Value range 10 65535 Default value 300 seconds Add a MAC address to static MAC table MAC address input format 00 0...

Page 104: ...Chapter 5 Web based Configuration 75 Remove MAC address click Remove...

Page 105: ......

Page 106: ...ily covers the following Viewing System Information Changing Password Managing File System Debug Configuration Viewing System Information Access Method Click System Config System on the left panel Con...

Page 107: ...n The system information includes the following fields Product Serial No Hardware version Software version Changing Password Access Method Click System Config Change Password on the left panel Configu...

Page 108: ...to the device including information browse configuration and modification and so on while a guest only has the privilege to browse information An admin can modify passwords for all users in the system...

Page 109: ...80 Chapter 6 Web based System Configuration Figure 41 File System...

Page 110: ...a host Download new Config file from Host Downloads a new configuration file from host Upload image to Host Uploads an image to a host Upload Config File to Host Uploads a configuration file to a hos...

Page 111: ...m the erasing click Reboot to reboot the system and initiate the configuration Do not click Save on the left to save the configuration For system file including image and configuration file management...

Page 112: ...n Interface Figure 44 Debug Configuration Description Through debug configuration the user can view the following information via CLI and SNMP Configurable items are 802 1X SMI RADIUS Client DHCP Clie...

Page 113: ......

Page 114: ...7 Performance Statistics Interface Statistics Access Method Click Statistic Interface on the left panel Configuration Interface 7...

Page 115: ...Table 15 Interface Statistics Window Description Fields Description WAN LAN Interface Description MTU Maximum Transmission Unit Packets in MS are based on Ethernet standards The MTU value is 1500 Pac...

Page 116: ...ber of packets dropped by the WAN LAN interface Packets sent Number of packets sent from the WAN LAN interface Total bytes sent Number of bytes sent from the WAN LAN interface Error bytes sent Number...

Page 117: ...ee bindings Number of Free Binding IP addresses provided by the DHCP server Auto bindings Number of Auto Binding IP addresses Discover packets Number of Discovery packets received from the DHCP workst...

Page 118: ...om the DHCP server to the DHCP workstation during the offer period Ack packets Number of Ack packets sent from the DHCP server to the DHCP workstation during the acknowledge period NAK packets Number...

Page 119: ...ers DHCP servers The DHCP workstation broadcasts the dhcp discover messages to search DHCP servers DHCP server IP address is not known i e the DHCP workstation sends specific broadcast information to...

Page 120: ...hat it has selected the IP address offered by one DHCP server The fourth period is an acknowledge period when the DHCP server acknowledges the offered IP address When the DHCP server receives the dhcp...

Page 121: ...Description Fields Description DHCP Relay Statistics Discover packets Number of Discover packets sent from the DHCP workstation to the DHCP server via the AP during the discovery period Request packe...

Page 122: ...rkstation to the DHCP server via the AP Offer packets Number of Offer packets sent from the DHCP server to the DHCP workstation via the AP during the Offer period Ack packets Number of Ack packets sen...

Page 123: ...18 RADIUS Client Statistics Window Description Fields Description From client to server Request packets Number of Request packets sent by the RADIUS Client Account start packets Number of Account Star...

Page 124: ...received by the RADIUS Client Reject packets Number of Reject packets received by the RADIUS Client Response packets Number of Response packets received by the RADIUS Client Dropped packets Number of...

Page 125: ...dynamic or static The obtaining type is dynamic only when the ARP entry is learnt during the AP packet forwarding period The obtaining type is static only when the ARP entry is added manually To prev...

Page 126: ...and mask The destination network segment and its subnet mask for the route Next hop The IP address of the next hop router s ingress Interface The egress on the AP from which the route reaches the dest...

Page 127: ...hen adding a new user User Name The name of the online user Auth Type The authentication type for the online user Auth Mode The authentication mode for the online user Status The status of the online...

Page 128: ...52 MAC Address Description The MAC address information includes the following fields MAC address learning type forwarding port WAN port or LAN port pass time and age time aging time for the MAC addre...

Page 129: ...apter 7 Performance Statistics In the third line the age time for the MAC address 00 04 23 85 39 5e is 300 seconds the pass time is 2 seconds then the remaining life time for this MAC address is 298 s...

Page 130: ...ective To establish a wireless network to provide wireless access for subscribers The AP works only as a bridge Data is transmitted between the AP and clients by WEP encryption Network Topology Figure...

Page 131: ...PC and the AP s LAN interface Set the PC IP address as 172 18 37 X 255 255 255 0 The default IP address of the AP LAN interface is 172 18 37 1 Input http 172 18 37 1 in the PC browser Use admin for bo...

Page 132: ...Chapter 8 Web based Configuration Examples 103 Configure the IP address for the LAN interface Click Next to display the Set Wireless Port window as shown below...

Page 133: ...channel Default value can also be used Click Next to display the window as shown below Click finish and the AP will reboot After the rebooting is complete the configuration will be valid 3 Configure t...

Page 134: ...C Click Basic Config Wireless Port to display the window as shown below enable WEP encryption with 64 bit select Alphabetical key format and enter mykey as the key1 value Click Apply The system will p...

Page 135: ...blish a medium scale network for a company where the AP acts as an authenticator AC as an authentication agent and the remote server as RADIUS authentication and accounting server The AP obtains the I...

Page 136: ...c subscribers and one static subscriber Network Topology A AC C AP1 AP2 DHCP Server I IP P M MA AN N Radi us Server Detailed Instructions Consider AP1 as an example 5 Click Basic DHCP Server to displa...

Page 137: ...on Examples 6 Configure 802 1x authentication Click Advanced Config Authentication to display the Authentication window Enable 802 1x authentication set the authentication mode to remote and set the m...

Page 138: ...Chapter 8 Web based Configuration Examples 109 7 Click Advanced Config RADIUS Client to display the RADIUS Client window Configure the RADIUS server and its parameters...

Page 139: ...based Configuration Examples 8 Click Advanced Config NAT to display the NAT window Enable NAT and perform advanced NAT configuration 9 Click Advanced Config Subscriber to add dynamic subscribers and s...

Page 140: ...cribers is no more than 20 The BRAS Broadband Remote Access Server aggregates the authentication and accounting information Enable NAT and PPPoE server AP1 and AP2 Enable PPPoE client for WAN interfac...

Page 141: ...112 Chapter 8 Web based Configuration Examples Detailed Instructions Consider AP1 as an example 1 Click Basic Config WAN Interface to display the WAN Interface window Enable PPPoE BRAS...

Page 142: ...Chapter 8 Web based Configuration Examples 113 2 Click Basic Config DHCP server to display the DHCP Server window Enable the DHCP server for the LAN interface...

Page 143: ...guration Examples 3 Click Basic Config Wireless port to display the Wireless Port window Configure WEP Encryption 4 Click Advanced Config Isolation Filter to display the Isolation and Filter window En...

Page 144: ...Examples 115 5 Configure 802 1x authentication Click Advanced Config Authentication to display the Authentication window Enable 802 1x authentication set the authentication mode to local and the maxi...

Page 145: ......

Page 146: ...s command is used for field debug support and can be performed only by an administrator Syntax debug Access level 10 Explanation Use this command to reach the debug level Enable Use this command to re...

Page 147: ...this command to return to the privileged EXEC mode from any CLI level except EXEC level This command can be used at any configuration level except EXEC level Syntax end Access level 0 Exit Use this co...

Page 148: ...0 Explanation Use this command to show the command history contents Logout Use this command to terminate a terminal session It can be used at any configuration level Syntax logout Access level 0 Ping...

Page 149: ...tax quit Access level 0 Show The show commands are described in Section 6 Tree Use this command to show the command tree It can be used at any configuration level Syntax tree Access level 0 Write Memo...

Page 150: ...mand to reach the global CONFIG level Syntax configure terminal Access level 1 Copy Config to TFTP Use this command to upload a copy of the configuration file to the designated TFTP server Syntax copy...

Page 151: ...r filename Up to 32 characters for the designated file name on the TFTP server Access level 2 Copy Image From TFTP Use this command to download a copy of the software image from TFTP server Reload reb...

Page 152: ...sible value ip address IP address of the TFTP server filename Up to 32 characters for the designated file name on the TFTP server Access level 2 Disable Use this command to return to the EXEC command...

Page 153: ...c entries Clear DHCP Binding Use this command to delete one or all automatic address binding s from the Dynamic Host Configuration Protocol DHCP Server database Syntax clear dhcp binding ip address Po...

Page 154: ...tax clear dhcp statistics relay server Default value Relay and server s statistics Access level 2 Clear Dot1x Statistics Use this command to reset all 802 1x counters Syntax clear dot1x statistics Acc...

Page 155: ...this command to reset the MAC table Syntax clear mac Access level 2 Clear NAT Use this command to clear all NAT entries Syntax clear nat Access level 2 Clear NAT Translation Use this command to clear...

Page 156: ...ot Use this command to reboot the system Syntax reboot Access level 2 Auto config Enable Disable Use this command to enable or disable auto configuration Syntax auto config enable disable Access level...

Page 157: ...arp ip address Possible value mac address MAC address format xx xx xx xx xx xx Access level 2 Broadcast Limit Use this command to enable broadcast limit and set limit packets value per second Syntax...

Page 158: ...ill be lost Syntax console baud rate value no console baud rate Possible value value 9600 19200 38400 57600 115200 Default value 9600 Access level 2 Console Timeout Use this command to set the aging t...

Page 159: ...n command to select the DHCP configuration Use the no form of this command to disable the DHCP service Syntax dhcp service server relay no dhcp service Possible value Server or relay Access level 2 DH...

Page 160: ...l global configuration command to configure Dynamic Host Configuration Protocol DHCP address pool on the DHCP Server and enter the domain s DHCP pool configuration mode Use the no form of this command...

Page 161: ...enable or disable the DOT1X authentication function Syntax dot1x authentication enable disable port Possible value Port lan wlan1 wlan2 Default value disable Access level 2 Dot1x Authentication Mode U...

Page 162: ...his command to set the authentication encryption mode for each port Syntax dot1x encryption mode port chap pap no dot1x encryption mode port Possible value Port lan wlan1 wlan2 chap pap keyword defaul...

Page 163: ...nsible Authentication Protocol EAP request identity frame no response is received before restarting the authentication process Use the no form of this command to return to the default setting Syntax d...

Page 164: ...nts and authentication servers To provide a faster response time to the user enter a smaller number than the default Syntax dot1x quiet period seconds no dot1x quiet period Possible value seconds 0 65...

Page 165: ...ication Use this command to enable periodic re authentication of the client Use the no form of this command to return to the default setting Configure the time period between periodic re authenticatio...

Page 166: ...configuration command The user should change the default value of this command only to adjust for unusual circumstances such as unreliable links or specific behavioral problems with certain clients o...

Page 167: ...meout seconds no dot1x server timeout Possible value 1 65535s Default value 30s Access level 2 Explanation Use this command to set dot1x server timeout Dot1x Supplicant Timeout Use this command to set...

Page 168: ...for a response to an Extensible Authentication Protocol EAP request identity frame from the client before retransmitting the request Use the no form of this command to return to the default setting Th...

Page 169: ...rname password passwd no dynamic user name username Possible value name no longer than 32 characters passwd no longer than 32 characters Access level 2 Explanation Use this command to create delete a...

Page 170: ...onfiguration level Syntax ethernet port ports Possible value ports wan lan1 lan2 lan3 lan4 Access level 1 Hostname Use this command to set the host name of the current system for prompting Syntax host...

Page 171: ...le value lan Enters the LAN interface wan Enters the WAN interface Access level 2 IP Default Route Use the ip default route global configuration command to define a default gateway router when IP rout...

Page 172: ...RADIUS packets use the ip radius source interface global configuration command Syntax ip radius source interface wan lan no ip radius source interface Access level 2 Explanation Use this command to se...

Page 173: ...p This parameter identifies the IP address of the next hop that can be used to reach the network Access level 2 Isolation Use this command to set isolation between the subscribers No parameter means t...

Page 174: ...this command to set the aging period for all MAC address entries in the address table of the switch Syntax mac age time value Possible value value 10 65535 seconds Default value 300 seconds Access lev...

Page 175: ...r of online users this AP permits Syntax max online user port count no max online user port Possible value Port lan wlan1 wlan2 Count 1 256 Default value count 256 Access level 2 NAT Enable Disable Us...

Page 176: ...inside outside lan wan Default value inside lan downlink outside wan uplink Access level 2 NAT Map Use this command to configure static entries of address mapping for basic NAT Syntax no nat map local...

Page 177: ...e this command to configure address pool for dynamic NAT Syntax no nat pool start ip ip mask Possible value start ip Specifies the IP address at the beginning of the pool range ip mask Specifies the n...

Page 178: ...al_ip Private IP address to be redirected Access level 2 NAT Timeout Use this command to set the age timeout for all NAT entries Syntax nat timeout secs Possible value secs 1 3600 Default value 120 Ac...

Page 179: ...iguration access 1 Port configuration access 0 Read only access Access level 10 Operator Add Delete Use this command to add delete a user account Syntax operator add name user name level access level...

Page 180: ...isplays Enter new password and Confirm new password in next line the user should input the correct password Operator Password Use this command to change the user s password whose name is username Synt...

Page 181: ...t auto connect to the PPPOE server when the AP boots successfully Syntax pppoe auto connect disable enable Access level 2 PPPoE Connect Use this command to connect to the PPPOE server Syntax pppoe con...

Page 182: ...ble a designated accounting server Syntax radius acctserver enable disable first second third Access level 2 RADIUS Acctserver Host Use the radius acctserver host global configuration command to speci...

Page 183: ...server info first second third acct port port number accounting key string timeout seconds dead time minutes retransmit retries no radius acctserver info first second third acct port accounting key ti...

Page 184: ...hserver Extra Use this command to set authentication radius server s additional attribute Syntax radius authserver extra first second third iapp wpa Possible value iapp wpa keywords Access level 2 RAD...

Page 185: ...esignated authentication server s parameter s as default value s Syntax radius authserver info first second third auth port port number authentication key string timeout seconds dead time minutes retr...

Page 186: ...se the unavailable servers to be skipped immediately Use the no form to set the dead time to 5 minutes Syntax radius server dead time minutes no radius server dead time Possible value minutes 1 1440 m...

Page 187: ...his command to set the interval a router waits for a server host to reply Use the no form to restore the default value Syntax radius server timeout seconds no radius server timeout Possible Value seco...

Page 188: ...ossible value community up to 64 characters Default value ro community public rw community private Access level 2 SNMP Server Contact Use this command to set SNMP server contact string Syntax snmp ser...

Page 189: ...er location location Possible value any text up to 255 characters Access level 2 SNMP Server Sysname Use this command to set SNMP server system name string Syntax snmp server sysname sysname Possible...

Page 190: ...ap host host addr community trap community port trap port version v1 v2 no snmp server trap host host addr Default value community public Port 162 Version v2 Static MAC Address Use this command to def...

Page 191: ...ble Disable Use this command to enable or disable a static user Syntax static user mac mac addr enable disable Possible value mac addr xx xx xx xx xx xx Default value disable Access level 2 Telnet Cli...

Page 192: ...ble Default value disable Access level 2 Telnet Timeout Use this command to set the aging time how long the Telnet will be logout without any user input Syntax telnet timeout value no telnet timeout P...

Page 193: ...ossible value userid 1 256 Access level 2 VLAN Default VID Use this command to set default VLAN VID The command will be valid if the VLAN module is available Syntax vlan default vid vid no vlan defaul...

Page 194: ...Access level 2 VLAN Enable Disable Use this command to enable or disable VLAN The command will be valid if the VLAN module is available Syntax vlan enable disable Access level 2 Explanation Use this c...

Page 195: ...n wlan1 wlan2 vid no vlan port vid lan wlan1 wlan2 Possible values Vid range 1 4094 Default value 1 Access level 2 Explanation Use this command to set the vid of designated port when work on port base...

Page 196: ...ax vlan tag enable Access level 2 VLAN Visitor Default Vid Use this command to set default VLAN visitor VID The command will be valid if the VLAN module is available Syntax vlan visitor default vid vi...

Page 197: ...sible value ports 1 2 Access level 1 DHCP pool Configuration Mode DNS Server Use the dns server DHCP pool configuration command to specify the Domain Name System DNS IP servers available to a Dynamic...

Page 198: ...t cannot correlate host names to the IP addresses Access level 2 Explanation Use this command to set remove DNS server s Excluded Address Use the excluded address global configuration command to speci...

Page 199: ...move the excluded IP address from the pool Gateway Use the gateway DHCP pool configuration command to specify the default gateway for a Dynamic Host Configuration Protocol DHCP client To remove the de...

Page 200: ...yntax lease days days hours hours minutes minutes infinite no lease Possible value days Specifies the duration of the lease in numbers of days hours Specifies the number of hours in the lease A day s...

Page 201: ...orm of this command Syntax no network network number mask Possible value network number The IP address of the DHCP address pool mask The bit combination that renders which portion of the address of th...

Page 202: ...nd to bind an IP address to a MAC address Ethernet Port configuration level Speed duplex Use this command to modify the speed and duplex mode for the port Syntax speed duplex auto 10 full 10 half 100...

Page 203: ...Use the ip address command in the interface configuration command mode to assign remove an IP address for an interface on a router Syntax ip address ipaddress netmask no ip address Access level 2 Wire...

Page 204: ...command to set wireless card beacon frame send interval Basic Rate Use this command to set the transmission rate of this wireless card Syntax basic rate 2 11 12 g Possible value value 2 1 2Mbit s at b...

Page 205: ...larger than the threshold the mechanism is enabled Syntax fragment threshold value Possible value value 256 2346 Default value 2346 Access level 2 Frequency Channel Use this command to set the work f...

Page 206: ...al based on 802 11 Syntax dtim interval number Possible value number 1 255 Default value 2 Access level 2 Power Use this command to set the transmit power of the wireless card Syntax power value Possi...

Page 207: ...ism is enabled Syntax rts cts threshold value Possible value value 0 2347 Default value 2347 Access level 2 SSID Use this command to set the network name of the wireless card SSID Service Set Identifi...

Page 208: ...o self algorithm Syntax tx rate value Possible value value 1 2 5 5 11 6 9 12 18 24 36 48 54M auto Default value auto Access level 2 Explanation Use this command to set TX rate Wireless Mode Use this c...

Page 209: ...PTP or PTMP When it is enabled the wireless card supports PTMP mode and enables the WDS mode Syntax wds mode enable disable PTP PTMP Default value disable Access level 2 Explanation Use this command t...

Page 210: ...ess on this card WEP Encryption Enable Disable Use this command to enable WEP encryption Syntax wep encryption enable disable Default value disable Access level 2 WEP Encryption Key Use this command t...

Page 211: ...sible value number 1 4 Default value 1 Access level 2 Explanation Use this command to set wireless WEP key for this card WEP Key Format Use this command to set WEP key format Syntax wep key format hex...

Page 212: ...l 2 Antenna Use this command to select antenna Syntax antenna ant a ant b both Default value both Access level 2 WPA Mode Use this command to set WPA authentication mode Syntax wpa auth mode wpa wpaps...

Page 213: ...words Default value auto Access level 2 WPA Psk Passphrase Use this command to set WPA pre shared key Syntax wpa psk passphrase string Possible value string Alphanumeric length range 8 63 Access level...

Page 214: ...evel 2 Optimize 108g Enable Disable Use this command to enable or disable 108g optimization Syntax optimize 108g enable disable Access level 2 Webserver Mode Enable Disable Use this command to enable...

Page 215: ...his command to enable or disable the web server s IP filter IP Filter Client Use this command to set IP filter s IP address Syntax ip filter client ip mask no ip filter client ip Access level 2 Explan...

Page 216: ...l 2 IAPP Mode Enable Disable Use this command to enable or disable IAPP Syntax enable disable Access level 2 ESP Enable Disable Use this command to enable or disable ESP Syntax esp enable disable Acce...

Page 217: ...s level 2 Map Use this command to set IAPP map entry Syntax map mac ip max 64 entries no map mac Access level 2 Explanation Use this command to add or delete IAPP map entry Secret Use this command to...

Page 218: ...dress times times packet size size Possible value ip address Specifies the network layer destination address Times Specifies the packets to send Possible values are 1 10000 packets size Specifies the...

Page 219: ...C level ERROR WAINING TRACE Access level 2 NAT Logging Use this command to set NAT logging information Syntax nat logging detail data no nat logging detail data Possible value detail data keywords Acc...

Page 220: ...arpShow ifShow inetstatShow ipstatShow netStackDataPoolShow netStackSysPoolShow mbufShow hostShow routeShow routeStatShow udpstatShow tcpstatShow icmpstatShow CPUReport Access level 2 Show Version Us...

Page 221: ...this command to display the memory information Syntax show memory Access level 2 Explanation Show NAT Run Use this command to display NAT running configuration Syntax show nat run Access level 2 Show...

Page 222: ...ss level 0 Net Security Syn Cache Enable Disable Use this command to enable disable SYN cache Syntax syn cache enable disable Access level 0 Net Security Attack Defense Enable Disable Use this command...

Page 223: ...able SYN Cache Status Disable Network Attack Defense Disable Ipstack Debug Use this command to enable IP stack print packet information Syntax ipstack debug module no ipstack debug module Possible val...

Page 224: ...CMP debug Off TCP debug On UDP debug Off IGMP debug On Show Show ARP Use this command to display ARP entries Syntax show arp Access level 0 Show Console Use this command to display the console config...

Page 225: ...control disable Show DHCP Client Use this command to display the DHCP client configuration Syntax show dhcp client Access level 0 Explanation Execute this command and the following will be displayed...

Page 226: ...ng ip address manual auto Possible value ip address Specifies the IP address of the DHCP client for which bindings will be displayed Manual Displays only manual binding s address Auto Displays only au...

Page 227: ...d to display Dynamic Host Configuration Protocol DHCP Server statistics Syntax show dhcp statistics relay server Default value all statistics Access level 0 Show Dot1x Configuration Use this command t...

Page 228: ...information such as version number size and so on Syntax show flash Access level 0 Explanation Execute this command and the following will be displayed image DIR 2000 01 16 21 31 26 image 3001A Z 9318...

Page 229: ...ble value type static dynamic Access level 0 Explanation Execute this command and the following will be displayed MAC State Port Pass time Ageing Time 00 06 5b 2c eb f8 Dynamic LAN 215 300 00 06 5b a2...

Page 230: ...hite List Use this command to display the white MAC list Syntax show mac white list Access level 2 Show NAT Translation Use this command to display the currently active NAT translations Syntax show na...

Page 231: ...owing will be displayed Eable disable timeout value Nat pool information start ip end ip ip mask Nat map information local ip global ip Nat redirect information global port local port local ip Show Ma...

Page 232: ...Syntax show ip route static Access level 0 Show Access List Configuration Use this command to display the access list configuration Syntax show access list configuration Access level 0 Show Port Confi...

Page 233: ...tion Use this command to show the radius configuration information summary Syntax show radius configuration Access level 0 Show RADIUS Statistics Use this command to show the statistics of radius clie...

Page 234: ...e User Use this command to show the online user s information Syntax show sms online user Access level 0 Show Wireless Port Use this command to show the wireless port configuration information Syntax...

Page 235: ...hours 27 minutes 5 seconds Console baudrate 9600 Board temperature 48 0 C Hardware version 1 0 0 Software version 1 0 0 Show Telnet Use this command to display all the telnet configuration information...

Page 236: ...able SNMP server configuration including trap configuration Syntax show snmp server configuration Access level 0 Show AP Mode Use this command to display the AP work mode Syntax show ap mode Access le...

Page 237: ...ow Running Config Use this command to display the running configuration Syntax show running config Access level 0 Show Startup Use this command to display the startup configuration Syntax show startup...

Page 238: ...wpa psk passphrase abcdefg Show Webserver Use this command to display the WEB Server configuration Syntax show webserver Access level 0 Explanation Execute this command and the following will be disp...

Page 239: ...LAN Tag Status enable VLAN Default vid 1 Show VLAN Binding Use this command to display VLAN binding This command will be valid if the VLAN module is available Syntax show vlan binding Access level 0 E...

Page 240: ...guration Syntax show iapp configuration Access level 0 Explanation Execute this command and the following will be displayed IAPP config status enable IAPP running status UP IAPP mode local ESP mode en...

Page 241: ......

Page 242: ...ist the user in diagnosing and solving the operational problems Table 20 Troubleshooting PWR AP WLAN LAN LINK Description Action Green LED stays on Green LED on Green LED blinks Green LED blinks No ac...

Page 243: ...ier Green LED blinks Software failure Upgrade the software via Windows IE or console hyper terminal Green LED blinks Green LED blinks WLAN initialization failure Examine whether the wireless equipment...

Page 244: ...pliance IEEE 802 11 IEEE 802 11b IEEE 802 11g IEEE 802 3 IEEE 802 11i IEEE 802 3af Ethernet WAN Interface One 10 100Mbps interface RJ45 Ethernet LAN Interface Four 10 100Mbps interfaces RJ45 Interface...

Page 245: ...access control Subscriber isolation Authentication Supports 802 1x and RADIUS Client Supports DHCP Server and DHCP Client Supports PPOE transparent transmission WDS PtP Point to Point Bridge PtMP Poi...

Page 246: ...nnels Europe FCC 2 412 2 462GHz 11 channels China Europe ETSI 2 412 2 472GHz 13 channels Transmit Power China Four adjustable levels the default is 100mw FCC EC default value Mode b 40mw Mode g 26mw 7...

Page 247: ...AP WLAN LAN LINK Operating temperature 10 50 Storage temperature 20 70 Environmental Humidity non condensing 10 90 MTBF 30000 hours Coverage Indoors 200m Outdoors 500m Security certificate GB9254 Cla...

Page 248: ...mmand Line Interface DHCP Dynamic Host Configuration Protocol DTIM Delivery Traffic Indication Message EAP Extensible Authentication Protocol ESSID Extended Service Set Identifier IEEE Institute of El...

Page 249: ...Access Server NAPT Network Address Port Translation NAT Network Address Translation NMS Network Management System OAM Operation Administration and Maintenance PD Powered Device PoE Power over Ethernet...

Page 250: ...Chapter 12 Acronyms and Abbreviations 221 SNMP Simple Network Management Protocol WEP Wired Equivalent Privacy WLAN Wireless Local Area Network WNIC Wireless Network Interface Card...

Page 251: ......

Page 252: ...UTStarcom Inc USA 1275 Harbor Bay Parkway Alameda CA 94502 USA Tel 510 864 8800 Fax 510 864 8802 http www utstar com...

Reviews: