Chapter 12 Common Configuration Examples
150
Aerohive
Applying the RADIUS and SSID Settings to HiveAPs
1. Click Configuration > WLAN Policies > (select the name of a WLAN policy that has already been applied to the
HiveAPs) > Add/Remove SSID Profile, select corp-wifi in the Available SSID Profiles list, click the right arrow
( > ) to move it to the Selected SSID Profiles list, click Apply to add the SSID to the WLAN policy, and then click
Save to save the modified policy and close its dialog box.
2. Click Monitor > Access Points > HiveAPs > (check boxes for the two HiveAP RADIUS authenticators) > Update >
Upload and Activate Configuration, enter the following, and then click Upload:
Upload and activate configuration: (select)
Upload and activate CWP pages and Server key: (clear)
Upload and activate certificate for RADIUS and VPN services: (clear)
Upload and activate employee, guests, and contractor credentials: (clear)
Check boxes for both HiveAPs: (select)
Connecting Supplicants to the WLAN
The 802.1X authentication process is somewhat different depending on the operating system on which the RADIUS
supplicant is running and whether the client uses the user’s login credentials to authenticate itself on a domain.
If the supplicant is on a PC running Windows Vista and is on a domain, and the RADIUS server is configured with
domain authentication:
1. View the available SSIDs in the area, and select corp-wifi.
2. Click Connect.
Because most PC-based supplicants use their Windows login credentials to authenticate the client with the
domain, the 802.1X authentication process happens automatically.
If the supplicant is Windows-based and you are not on a domain
1. Configure the SSID on your client as follows:
Network name (SSID): corp-wifi
Network authentication: WPA2
Data encryption: AES
Enable IEEE 802.1X authentication for this network: (select)
EAP type: Protected EAP (PEAP)
Authenticate as computer when computer information is available: (clear)
Authenticate as guest when user or computer information is unavailable: (clear)
Validate server certificate: (clear)
Select Authentication Method: Secured password (EAP-MSCHAP v2)
Automatically use my WIndows logon name and password (and domain if any): (clear)
2. View the available SSIDs in the area and select corp-wifi.
3. Click Connect.
4. When the prompt appears for you to select a certificate or enter other credentials to validate your identity,
click the prompt, enter the user name and password stored on the RADIUS server, and then click OK.
If the supplicant is on a Macintosh computer and is not on a domain, view the available SSIDs in the area, and select
corp-wifi. Then click Join Network, and accept the certificate that the RADIUS server provides, assuming it is from
a trustworthy source. After the RADIUS server validates your identity, the client connects to the WLAN.
Note:
If the supplicant is on a PC running Windows XP, you must configure it to use PEAP for authentication.
By default, a Windows XP wireless client uses Smart Card or other Certificate instead of PEAP.
Содержание access point
Страница 1: ...Aerohive Deployment Guide ...
Страница 7: ...HiveAP Compliance Information 6 Aerohive ...
Страница 13: ...Contents 12 Aerohive ...
Страница 37: ...Chapter 2 The HiveAP 20 ag Platform 36 Aerohive ...
Страница 71: ...Chapter 4 The HiveAP 340 Platform 70 Aerohive ...
Страница 81: ...Chapter 5 The HiveAP 320 Platform 80 Aerohive ...
Страница 105: ...Chapter 8 The High Capacity HiveManager Platform 104 Aerohive ...
Страница 123: ...Chapter 10 Using HiveManager 122 Aerohive ...
Страница 209: ...Chapter 14 Deployment Examples CLI 208 Aerohive ...
Страница 217: ...Appenidix A Country Codes 216 Aerohive ...