background image

 

The Extricom WLAN System User Guide 

 

45 

Field 

Description 

WEP Keys 

The 

WEP Keys

 area is only enabled if the cipher selected in the 

Choose Method

 field is WEP or WEP104. In the 

WEP Keys

 area, 

you define the WEP Key that is used for encrypting or decrypting. 

You can define all four WEP keys. For each key you define, select 
the input format (ASCII or HEX) and enter the key according to 
the following table:  

 

Cipher 

ASCII 

HEX 

WEP64  
(or WEP64+802.1x) 

5 characters  10 digits 

WEP128 
(or 802.1x) 

13 
characters 

26 digits 

 

 

Transmission Key 

Select the WEP64/WEP128 key to be used for transmitting data 
from the AP.  

WPA 

The WPA area is only enabled if the cipher selected in the 

Choose 

Method

 field is WPA/WPA2 personal 

WPA-PSK 

If WPA/WPA2 Personal with Pre-Shared key authentication is 
used, the WPA-PSK field is enabled. In this case, select one of the 
following input formats, and enter the corresponding key listed: 

 

For ASCII, enter 8-63 characters. 

 

For HEX, enter 64 digits. 

WPA/RADIUS 

 

Re-key Interval 

Enter the amount of time (in seconds) that elapses before the 
Group Key is changed. 

 
 

RADIUS Servers 

Define the RADIUS servers list if: 

 

The cipher is WEP64/WEP128, and the 802.1x authentication 
method is selected. 

 

The cipher is TKIP/AES, and the WPA/WPA2 Enterprise 
authentication method is selected. 

 

Use Server # 1 if only one server is used. Use 
consecutive servers if several servers are used. 

 

RADIUS Server-1   

Select the RADIUS server #1 from the dropdown list of RADIUS 
servers   

RADIUS Server-2  

Select the RADIUS server #2 from the dropdown list of RADIUS 
servers  

RADIUS Server-3   

Select the RADIUS server #3 from the dropdown list of RADIUS 
servers  

RADIUS Server-4   

Select the RADIUS server #4 from the dropdown list of RADIUS 
servers  

Table 13: Security Definition Parameters  

Содержание EXRP-20E

Страница 1: ...For System Firmware Release 4 2 Document Version 4 0 EXTRICOM WLAN SYSTEM USER GUIDE EXSW 400 800 EXSW 1200 2400 MULTI SERIES 1000 EXRP 20 40 30N EXRP 20E 40E 40EN ...

Страница 2: ...oduct Copyright 2010 Extricom Ltd All rights reserved The products described herein are protected by U S Patents and may be protected by other foreign patents or pending applications Important Notice Read this user manual safety instructions and the release notes for your switch firmware before installing and operating the Extricom WLAN system Disclaimer Extricom makes no representations or warran...

Страница 3: ...N radio modules each radio module is configured separately and serves a different set of clients There is no relation between transmissions on different radio modules hence o The same information cannot be transmitted over separate Radio modules o Radio modules cannot transmit simultaneously over the same radio channel o Client can transmit and receive data through one Radio module Please check th...

Страница 4: ... for compliance could void the user s authority to operate this equipment This device complies with Part 15 of the FCC IC Rules Operation is subject to the following two conditions 1 This device may not cause harmful interference 2 This device must accept any interference received including interference that may cause undesired operation Important Note FCC and IC Radiation Exposure Statement This ...

Страница 5: ...t systems omni directional applications and multiple co located transmitters transmitting the same information are prohibited under this high e i r p category However remote stations of point to multipoint systems shall be permitted to operate at the point to point e i r p limit provided that the higher e i r p is achieved by employing higher gain directional antennas and not higher transmitter ou...

Страница 6: ...logy 13 Switch Cascade Multi Series 1000 Platform Only 14 Extricom Support for 802 11n 15 Brief Overview of 802 11n 16 Chapter 2 Installing the Extricom WLAN System 19 Unpacking the Extricom WLAN System 19 Additional Equipment 19 Determining the Location of the Extricom Access Points 20 EXSW 400 800 1200 2400 Multi Series 1000 Switch EXSW 800G EXSW 1600 20 Extricom EXRP 20 20E 40 40E 30n 40En Acce...

Страница 7: ...ertificate and Key Error Bookmark not defined Application Error Bookmark not defined Advanced Configuration of the Extricom WLAN Error Bookmark not defined Configuring Redundancy Error Bookmark not defined Configuring Rogue Error Bookmark not defined Configuring Syslog Monitor Error Bookmark not defined Configuring SNMP Error Bookmark not defined Centralized Configuration Tab Error Bookmark not de...

Страница 8: ......

Страница 9: ...se IT managers and system installers who are familiar with installing and configuring networks Conventions This is a note It emphasizes important information to users This is a caution A caution warns of possible damage to the equipment if a procedure is not followed correctly A warning alerts you to important operating instructions Safety Precautions Follow the instructions in the guide to ensure...

Страница 10: ...aintain a minimal separation distance of at least 20 cm 8 inches between the AP and all persons The power cable included should not be used with any other electrical equipments other than Extricom switches The switch contains an internal battery CAUTION Always replace the battery with the same type to avoid the risk of explosion Dispose of used battery according to the instructions provided with t...

Страница 11: ...nd interference analysis a highly expensive aspect of owning a WLAN is also eliminated Finally Extricom s innovative approach does away with most WLAN maintenance tasks Extricom s WLAN System is specifically designed to provide increased network capacity seamless mobility high level of security and easy installation and configuration Overview of the Extricom WLAN System The Extricom WLAN consists ...

Страница 12: ...co channel interference by permitting multiple APs to simultaneously transmit on the same channel only if they won t interfere with each other This is the essence of the TrueReuse functionality Extricom supports the 802 11n standard 802 11n builds upon existing 802 11 standards 802 11n can be used in both the 5 GHz and 2 4 GHz frequency bands introduces enhancements to the MAC and the PHY layer an...

Страница 13: ... to the enterprise to achieve both blanket coverage and a guaranteed communications rate to all users In fact while cell based solutions shy away from dense deployments because of their inherent RF obstacles Extricom s system performance actually increases with AP density Wire line quality VoWLAN Extricom s Interference Free architecture is perfectly suited for VoWLAN providing zero latency mobili...

Страница 14: ...tranet and or Internet Fast Handoff Opportunistic Key Caching WLAN clients roaming between APs of the same channel blanket within a single switch s coverage area will experience zero latency mobility Clients roaming between different Extricom WLAN switches use the standard 802 11 handoff mechanism which is further facilitated by the opportunistic key caching mechanism in the 802 11i standard In ad...

Страница 15: ...RP 30n access points the EXSW 1200 2400 can support up to three channel blankets two with 802 11a b g n support and one with 802 11a b g support EXSW 1200 2400 switches are equipped with hardware for two LAN ports with 100 Mbps Ethernet line speed However only one uplink port is used currently the second port is reserved for future port redundancy development AP connectivity is also 100 Mbps The E...

Страница 16: ...itch The Extricom EXSW 1200 is derived from the EXSW 2400 with the same hardware and firmware The only difference between the two models is the number of WLAN ports supported Figure 4 Extricom EXSW800 Switch The EXSW800 switch only supports two channels so when it is connected to EXRP 40 only two radios will operate ...

Страница 17: ... 1000 is equipped with two RJ45 SFP GBE Combo port uplinks and 16 GBE PoE edge side ports The Multi Series 1000 is therefore capable of performing different wireless and networking functions depending on the firmware installed on it In the current release the Multi Series 1000 platform is used to support the EXSW 1600 EXSW 1600C and EXSW 800G The EXSW 1600 EXSW 1600C and EXSW 800G are the ultimate...

Страница 18: ...oduction to the Extricom Wireless LAN System SFP modules are not shipped with the Multi Series 1000 To use the SFP ports you must use Class 1 laser certified SFP modules according to IEC EN 60825 1 and or CDRH ...

Страница 19: ...s do not require configuration enabling plug and play installation If stolen the APs do not pose a security risk since all encryption is performed in the switch With all intelligence residing in the WLAN switch APs may be placed as close together as necessary to provide high quality high speed connectivity from all locations within the enterprise Extricom APs are connected to the Extricom WLAN Swi...

Страница 20: ...vironment directional antennas may be needed rather than the omni directional antennas that are standard inside Extricom integrated antenna APs In such cases the antennas may also be located at some distance from the AP in order to cover a specific area Figure 9 EXRP 20E 40E access points The EXRP 20E 40E and EXRP 40En APs are connected to the Extricom WLAN Switch via standard Cat5e 6 cables in ex...

Страница 21: ...standard WLAN protocols IEEE 802 11 As a result any 802 11a b g n standard wireless device can work seamlessly with the Extricom system Mixing different types of Extricom AP s on the same switch is not permitted except for EXRP 20 and 20E AP s or EXRP 40 and 40E AP s When using the EXSW 400 800 with EXRP 40 EXRP 30n or EXRP 40En only two radios will operate Extricom APs must be directly connected ...

Страница 22: ... is shown below in its standard configuration Figure 11 Switch Cascade Topology The interconnect is connected to the LAN2 port of each switch See page 26 for more details about the interconnect hardware and maximum length The APs of each switch form a seamless channel blanket that extends across the APs of both switches Up to 4 seamless channel blankets can be deployed Up to 32 APs can be deployed...

Страница 23: ... and the secondary switch routes the traffic it receives to the correct AP Heartbeat checks are performed over the LAN links A failover takes place if there is a critical failure of one of the switches one of the LAN links or in the interconnect Extricom Support for 802 11n 802 11n is a breakthrough technology that enables Wi Fi networks to do more faster over a larger area 802 11n Wi Fi provides ...

Страница 24: ...e Initially however the firmware in the radio chipset will operate in a 3x2 MIMO configuration This will be firmware upgradeable when the chipset manufacturer makes this enhancement available Data Streams Definition Spatial multiplexing divides data into multiple streams and sends it simultaneously over multiple paths using the multiple transmitters antenna over the channel These streams are recom...

Страница 25: ...o support for Greenfield mode With this release however Extricom is introducing a unique feature the HT Only blanket in which a specific Channel Blanket can be configured so that only 802 11n clients working in mixed mode can associate to it This enables a deployment to support co existence of n and b g clients from the same set of APs but separated on different channels so there is no mixed mode ...

Страница 26: ...or MIMO devices is likely to be considerably higher than for earlier 802 11 equipment A new provision in 802 11n allows a MIMO client to power down all but one RF chain when in power save mode When a client is in the dynamic SM power save state the AP sends a wake up frame usually an RTS CTS exchange to give it time to activate the other antennas and RF chains In static mode the client decides whe...

Страница 27: ...r and provided in separate boxes are shipped as part of the overall order One power cable Additional Equipment The following additional equipment is required for installing the Extricom WLAN system One CAT 5e 6 cable for each AP One CAT 5e 6 cable s for connecting the WLAN switch uplink to the LAN switch A range Extender EXRE is required for any AP that will be located between 100 and 200 meters f...

Страница 28: ...r mounted on a wall The switch should be placed near the distribution point of the LAN line This is usually in the communications closet of your enterprise EXSW 400 800 1200 2400 Multi Series 1000 Switch EXSW 800G EXSW 1600 The Extricom EXSW 400 switch has 6 connectors and 4 LED types on the front panel refer to Figure 13 The Extricom EXSW 800 switch has 10 connectors and 4 LED types on the front ...

Страница 29: ...nectors of Extricom EXSW 400 800 1200 2400 Multi Series 1000 switches Connectors Description Console Serial connector only to be used by or as instructed by Extricom personnel for troubleshooting support or maintenance Can be accessed using a Null modem cable LAN 2 Fast Ethernet RJ 45 ports used to connect the switch to the wired RJ45 console 16 GbE PoE copper ports GbE Combo ports 2 Copper SFP ...

Страница 30: ...48 volts Do not connect any device other than Extricom APs to the WLAN ports Table 1 Extricom EXSW 400 800 1200 2400 1600 Switch Connectors Table 2 below describes the front panel LEDs of Extricom EXSW 400 800 1200 2400 and Multi Series 1000 Appliance Platform LED Color Description Power None No power Green Blinking switch is loading On switch is ready operational Red On Error after loading Green ...

Страница 31: ... Series 1000 only Orange On 1000 Mbps full duplex connection Off 100 Mbps full duplex or no connection Table 2 Extricom EXSW 400 800 1200 2400 1600 Switch LEDs Extricom EXRP 20 20E 40 40E 30n 40En Access Points Extricom EXRP 20 40 30n APs have two connectors AP to WLAN switch communication power located on the side of the device and four LEDs located on the top of the device see Figure 18 In addit...

Страница 32: ...r Source or NEC Class II power adapter Rating Input 90 240VAC 0 8A max Output 48VDC 0 56A max The DC output plug of the power supply must be a standard round DC plug with 5 5mm outer ring diameter and 2 5mm inner ring diameter Plug polarity Outer Inner Due to regulatory requirements in Europe CE and the pending certification process for the power supply connector an external power supply should no...

Страница 33: ...0E AP LEDs LEDs Color Description Radio 1 Green 1st Radio is active Red 1st Radio is enabled with no assigned ESSID or malfunctioning Off 1st Radio is off Radio 2 Green 2nd Radio is active Red 2nd Radio is enabled with no assigned ESSID or malfunctioning Off 3rd Radio is off Radio 3 Green 3rd Radio is active Red 3rd Radio is enabled with no assigned ESSID or malfunctioning Off 3rd Radio is off Rad...

Страница 34: ...00 1000Mbps cable connect the RJ 45 LAN1 connector located on the front panel of the switch refer to Figure 16 to the LAN switch 2 Using a CAT 5e 6 cable connect each AP refer to Figure 16 to one of the switch s RJ 45 WLAN connectors If an AP must be located over 100 meters from the switch an Extricom Range Extender must be used which enables up to an additional 100m for a total switch to AP dista...

Страница 35: ... connection Fiber mode is Multi for 100Mbps Fiber mode can be Multi or Single for 1000Mbps per the SFP module selected Note both ends of the fiber termination must be in the same SFP mode To connect a switch cascade 1 Connect the primary and secondary switch to the LAN and to its APs as directed in the section above 2 Verify that both switches are running the same firmware release and that this is...

Страница 36: ...s can be mounted on the wall or ceiling For this purpose a separate mounting bracket is provided for ease of installation The bracket has two holes for mounting to the wall and one hole for a screw that mounts the AP to the bracket Extricom EXRP 20 40 30n APs can be mounted on the wall or ceiling To mount the APs you will need two stainless steel pan head 8x1 1 4 self tapping Phillips screws To mo...

Страница 37: ...rner of the AP The EXRP 20 and EXRP 40 are similar in appearance Please double check the LED titles or label on the underside of the unit to make sure you have the right type of AP for your deployment The EXRP 20E EXRP 40E and EXRP 40En resemble each other but have a different number of external antenna connectors ...

Страница 38: ...th your purchase for example the URL should be https 1 2 3 4 if the IP address of the switch is 1 2 3 4 Note that https must be used not http in order to initiate a secure browsing session https initiates an SSL session with the switch If you did not receive a switch IP address with the switch the factory default value for the switch IP address is 192 168 1 254 If you are using the default IP sett...

Страница 39: ... that there is a problem with the website s security certificate 2 Press the tab key on your keyboard until you see the link Continue to this website not recommended 3 Click on it System pop up windows are used in only a few situations for example when clicking on System Tools Maintenance Factory Defaults button Using the Extricom Web Configuration Pages The Extricom Web Configuration pages have f...

Страница 40: ...ncluding ESSID related configuration and Radio configuration Access Points used for viewing ports in use and activating deactivating PoE System tools used for configuring general system parameters such as passwords time date firmware upgrade etc Advanced used for configuring advanced features such as redundancy TrueReuse 802 11d IDS SNMP and Centralized Configuration parameters Events Reports used...

Страница 41: ... are applied to the offline configuration file If you wish to apply these parameters select the Apply option in the System Tool web page this will start the reconfiguration process The event and alarm area will display real time SNMP trap messages you can pause the traps by selecting Pause Please see page 92 for more details If you do not select Apply option in the System tool web page after click...

Страница 42: ...ement VLAN tag IDs The default gateway Wireless subnet tab Configures all wireless subnets SSID subnets controlled by the IT manager This may be required when Captive Portal is enabled To configure LAN parameters 1 Click LAN Configuration in the navigation tree The LAN Configuration page appears refer to Figure 22 Figure 22 LAN Configuration Page 2 Configure the LAN parameters Refer to Table 7 for...

Страница 43: ...ddress DNS server Add the DNS server IP address VLAN Management VLAN tag ID for VLAN access to manage the switch You can add two one for the LAN 1 IP address through the Main field and an alternate VLAN id for the Alternate IP address defined using the alternate field Switch name A textual descriptor of the switch Maximum length is 64 characters Table 7 LAN Configuration Parameters 3 Click Save to...

Страница 44: ...ure used by the Extricom system Each radio is assigned one channel Each channel can support up to 8 16 different ESSIDs see note below Each ESSID can be associated with a VLAN tag The same ESSID name can be repeated for different channels On the EXSW 1200 EXSW 2400 and Multi Series 1000 up to 7 ESSIDs are allowed on channel 1 and up to 8 ESSIDs are allowed on each of the remaining channels On the ...

Страница 45: ...ossible to configure the following features Allow Default ESSID Display ESSID in Beacon Allow Store Forward Allow Inter Ess Store Forward Enable Multicast Enable ARP Caching Enable MAC ACL Enable 802 11D support Enable AeroScout Not supported in version 4 2 MAC authentication Beacon Rate Control In Band Management Captive Portal Assign a VLAN to the ESSID Set a disassociation timeout Set DTIM peri...

Страница 46: ...SID option Allow Default ESSID If this option is enabled a wireless device will be allowed to connect to the Extricom WLAN without requesting a specific ESSID i e default or any ESSID If this option is disabled then a wireless device needs to connect to a specific ESSID in the Extricom WLAN Display ESSID in Beacon This option provides an additional though limited level of security The AP sends out...

Страница 47: ...er the ESSIDs must be defined on the same VLAN or no VLAN at all If this option is disabled all traffic goes through the LAN switch This could be used by IT managers to apply security settings or various policies in the LAN network Enable Multicast This option when enabled provides support of multicast and broadcast packets for the selected ESSID Multicast and or broadcast packets shall be transmi...

Страница 48: ...on distribution mechanism You can tune the system to provide customized beacon coverage The higher the rate more beacons shall be distributed on this SSID 5 levels are available in the pull down menu Basic 0 beacon rate control Normal default 33 beacon rate control Increased 66 beacon rate control High 80 beacon rate control Full 100 beacon rate control In Band Management Select this option if you...

Страница 49: ...equire the switch to wait for an EAPOL Start When this option is selected clients that do not send an EAPOL start will not be able to connect to this ESSID Table 9 ESSID Parameter Descriptions Beacon Rate Control The EXSW creates a hearing relationship table between APs It forms an AP Bundles group Bundle of APs group of APs each bundle can include 1 or more APs The total number of bundles is equa...

Страница 50: ...r to switch s w v3 4 would have followed the legacy pattern below Bundle Interval BC1 BC2 BC3 BC4 BC5 1 AP1 2 AP2 3 AP3 4 AP4 5 AP5 Table 11 Legacy Pattern However from v3 4 and later a Smart Beacon mechanism was implemented so that the beaconing in the example is actually as shown below BC rate control of 80 Bundle Interval BC1 BC2 BC3 BC4 BC5 1 AP1 AP5 2 AP1 AP2 3 AP1 AP3 AP5 4 AP5 AP4 5 AP1 AP5...

Страница 51: ...mmended to use both encryption and authentication The Extricom WLAN makes configuration of ESSID security parameters easier by listing available combinations of Encryption and Authentication protocols Security definitions are configured for each ESSID individually To configure the security definitions 1 Select the ESSID for which you want to configure the security definitions from the ESSID dropdo...

Страница 52: ... 11i WPA2 standard Authentication method Authentication is used to identify if a wireless device is authorized to connect to the WLAN and verifies the wireless device s identity Authentication methods such as specific EAP methods available in the WPA WPA2 enterprise option also verify that the association process is secured Authentication utilizing WPA WPA2 enterprise can also support encryption k...

Страница 53: ... used the WPA PSK field is enabled In this case select one of the following input formats and enter the corresponding key listed For ASCII enter 8 63 characters For HEX enter 64 digits WPA RADIUS Re key Interval Enter the amount of time in seconds that elapses before the Group Key is changed RADIUS Servers Define the RADIUS servers list if The cipher is WEP64 WEP128 and the 802 1x authentication m...

Страница 54: ...uthentication WEP128 802 1x Authentication WPA WPA2 personal TKIP AES Pre Shared Key Authentication WPA WPA2 Enterprise TKIP AES 802 1x Authentication When the WPA2 Only is checked only Clients with WPA2 support are allowed to access the WLAN When the AES Only is checked only Clients with AES support are allowed to access the WLAN Cisco LEAP protocol not CMIC CKIP is supported under WEPxxx 802 1x ...

Страница 55: ...ist 3 Use the Right Arrow Left Arrow to insert remove this MAC to from the selected ESSID 4 You can add a new MAC address to the All MACs list by inserting it manually in the Add MAC field then selecting Add It is also possible to add a new MAC address to the All MACs table from the Event Menu when a new event message notifies you of a new client the event message will has a sign in the Add field ...

Страница 56: ...US servers can be defined for each ESSID RADIUS redundancy is based on the assumption that the user database is identical in all RADIUS servers and that users are listed in all servers with the same credentials Switchover from one RADIUS server to another takes place after consecutive failures of the server The order of priority is 1 to 4 To configure the RADIUS server option select the RADIUS tab...

Страница 57: ...AN Radios To configure the WLAN radios use the Radios web page The Radios web page provides the options available for configuring the radios When the Radios page is initially displayed it appears in abridged form To see all of the configuration options you must click on the More Options button Then the window as shown in Figure 27 below appears Note that when configuring 802 11a b g radios the 802...

Страница 58: ...gurations are possible depending on type of Access point connected the configured radio state and whether TrueReuse is configured across the switch See the Release Notes for possible configuration scenarios Channel Select the channel The options available are based on the country and WLAN mode Enable TrueReuse Enable the TrueReuse function on the selected radio Not all TrueReuse configuration scen...

Страница 59: ...The Extricom WLAN System User Guide 51 ...

Отзывы: