WG302v2 Reference Manual
Page 9
... and Conventions 1-1 WG302v2 Key Features 1-2 Compatible and Related NETGEAR Products 1-3 What's In the Box? ...1-4 Hardware Description ...1-5 Front Panel ...1-5 Rear Panel ...1-6 Chapter 2 Basic Installation and Configuration System Requirements ...2-1 Wireless Equipment Placement and Range Guidelines 2-2 Installing the ProSafe 802.11g Wireless Access Point 2-3 Logging in to the WG302v2 Using Its Default IP Address 2-7 Basic IP Settings ...2-8 Wireless Settings ...2-10 Understanding WG302v2 Wireless Security Options 2-12...
... and Conventions 1-1 WG302v2 Key Features 1-2 Compatible and Related NETGEAR Products 1-3 What's In the Box? ...1-4 Hardware Description ...1-5 Front Panel ...1-5 Rear Panel ...1-6 Chapter 2 Basic Installation and Configuration System Requirements ...2-1 Wireless Equipment Placement and Range Guidelines 2-2 Installing the ProSafe 802.11g Wireless Access Point 2-3 Logging in to the WG302v2 Using Its Default IP Address 2-7 Basic IP Settings ...2-8 Wireless Settings ...2-10 Understanding WG302v2 Wireless Security Options 2-12...
WG302v2 Reference Manual
Page 19
NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual • Simple Configuration. Adjustable power output allows more secure or economical operation. • Power over Ethernet Layer 3 managed switch. • Autosensing Ethernet Connection with Auto Uplink™ Interface. VLANs are easily identified. • Wireless Virtual LAN (VLAN) Support. Compatible and Related NETGEAR Products For a list of the 802.11e standard. WMM is not broadcast...
NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual • Simple Configuration. Adjustable power output allows more secure or economical operation. • Power over Ethernet Layer 3 managed switch. • Autosensing Ethernet Connection with Auto Uplink™ Interface. VLANs are easily identified. • Wireless Virtual LAN (VLAN) Support. Compatible and Related NETGEAR Products For a list of the 802.11e standard. WMM is not broadcast...
WG302v2 Reference Manual
Page 31
...products sold in settings with multiple ProSafe 802.11g devices. • Untagged VLAN. Enter the subnet mask value used on the WG302v2 to which the wireless access point is preset. You can process VLAN membership information. Spanning tree protocol provides...WG302v2. The default access point name is the region where the WG302v2 can change it a new IP address, enter the access point name into the address field of the WG302v2. • IP Address. Note: To connect to 15 characters long. • Country/Region. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2...
...products sold in settings with multiple ProSafe 802.11g devices. • Untagged VLAN. Enter the subnet mask value used on the WG302v2 to which the wireless access point is preset. You can process VLAN membership information. Spanning tree protocol provides...WG302v2. The default access point name is the region where the WG302v2 can change it a new IP address, enter the access point name into the address field of the WG302v2. • IP Address. Note: To connect to 15 characters long. • Country/Region. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2...
WG302v2 Reference Manual
Page 32
... clear the box, all traffic is displayed. If your access point, or click Disable if you change the untagged traffic VLAN ID or the VLAN ID for Daylight Saving Time. • The Current Time, as used on the wireless access point, is tagged with a VLAN ID. • Time Zone. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual By default all traffic on the specified...
... clear the box, all traffic is displayed. If your access point, or click Disable if you change the untagged traffic VLAN ID or the VLAN ID for Daylight Saving Time. • The Current Time, as used on the wireless access point, is tagged with a VLAN ID. • Time Zone. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual By default all traffic on the specified...
WG302v2 Reference Manual
Page 39
... in length. This feature is disabled. The default is used for hotspots and other public access situations. These keys must be able to a VLAN. The Passphrases and Keys are always encrypted using WPA-PSK, enter the passphrase here. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table 2-2 Data Encryption Settings (continued) Settings AES TKIP + AES Description This is...
... in length. This feature is disabled. The default is used for hotspots and other public access situations. These keys must be able to a VLAN. The Passphrases and Keys are always encrypted using WPA-PSK, enter the passphrase here. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table 2-2 Data Encryption Settings (continued) Settings AES TKIP + AES Description This is...
WG302v2 Reference Manual
Page 40
By default all traffic is untagged until you change the untagged traffic VLAN ID on the WG302v2 uses VLAN 1, which is the management VLAN. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual The VLAN assigned to the Security Profile. 2-18 v1.0, May 2006 Basic Installation and Configuration Therefore, all traffic on the Basic Settings page or assign a different VLAN ID to the first Security Profile (default name: NETGEAR) is the default untagged VLAN.
By default all traffic is untagged until you change the untagged traffic VLAN ID on the WG302v2 uses VLAN 1, which is the management VLAN. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual The VLAN assigned to the Security Profile. 2-18 v1.0, May 2006 Basic Installation and Configuration Therefore, all traffic on the Basic Settings page or assign a different VLAN ID to the first Security Profile (default name: NETGEAR) is the default untagged VLAN.
WG302v2 Reference Manual
Page 52
NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table 3-1 describes the fields on each Security Profile, the following information is enabled. The Media Access Control address (MAC address) of the firmware currently installed. The version of the wireless access point's Ethernet port. Indicates if VLAN support is 11. The default gateway for use. Disabled indicates a static IP configuration. The default channel setting...
NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table 3-1 describes the fields on each Security Profile, the following information is enabled. The Media Access Control address (MAC address) of the firmware currently installed. The version of the wireless access point's Ethernet port. Indicates if VLAN support is 11. The default gateway for use. Disabled indicates a static IP configuration. The default channel setting...
WG302v2 Reference Manual
Page 60
...the DHCP server on the WG302v2. The default setting is the IP address of the WG302v2. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual The following TCP/IP configuration information that the wireless access point assigns to wireless clients that are on the Access Point to assign wireless clients. There is 192...on your network to assign network information to hosts, you typically use this option to allow the wireless access point to assign wireless clients. VLAN 1 is no default server. • Secondary WINS Server: Enter a Secondary WINS Server IP ...
...the DHCP server on the WG302v2. The default setting is the IP address of the WG302v2. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual The following TCP/IP configuration information that the wireless access point assigns to wireless clients that are on the Access Point to assign wireless clients. There is 192...on your network to assign network information to hosts, you typically use this option to allow the wireless access point to assign wireless clients. VLAN 1 is no default server. • Secondary WINS Server: Enter a Secondary WINS Server IP ...
WG302v2 Reference Manual
Page 79
... for the ProSafe 802.11g Wireless Access Point. Your device will return to their factory defaults. otherwise, varies by region) 192.168.0.228 255.255.255.0 Disabled Enabled Enabled Specifications B-1 v1.0, May 2006 This is called a hard reset. Table B-1 Access Point Default Configuration Settings... Feature AP Login User Login URL User Name (case sensitive) Login Password (case sensitive) Ethernet Connection Ethernet MAC Address Port Speed Basic Settings AP Name Country / Region IP Address Subnet Mask DHCP Client Spanning Tree Protocol VLAN (802...
... for the ProSafe 802.11g Wireless Access Point. Your device will return to their factory defaults. otherwise, varies by region) 192.168.0.228 255.255.255.0 Disabled Enabled Enabled Specifications B-1 v1.0, May 2006 This is called a hard reset. Table B-1 Access Point Default Configuration Settings... Feature AP Login User Login URL User Name (case sensitive) Login Password (case sensitive) Ethernet Connection Ethernet MAC Address Port Speed Basic Settings AP Name Country / Region IP Address Subnet Mask DHCP Client Spanning Tree Protocol VLAN (802...
WG302v2 Reference Manual
Page 80
NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table B-1 Access Point Default Configuration Settings Feature Description Untagged Packet and VLAN Mapping Untagged VLAN ID Time Zone Time Zone Adjusted for Daylight Saving Time Wireless Settings Wireless Communication (Radio) 802.11g Network Name (SSID) Broadcast SSID 802.11g Radio Frequency Channel Data Rate Output Power Security Profile Settings Disabled 1 GMT Disabled Enabled NETGEAR Enabled Channel 11 Auto* Full Profile...
NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table B-1 Access Point Default Configuration Settings Feature Description Untagged Packet and VLAN Mapping Untagged VLAN ID Time Zone Time Zone Adjusted for Daylight Saving Time Wireless Settings Wireless Communication (Radio) 802.11g Network Name (SSID) Broadcast SSID 802.11g Radio Frequency Channel Data Rate Output Power Security Profile Settings Disabled 1 GMT Disabled Enabled NETGEAR Enabled Channel 11 Auto* Full Profile...
WG302v2 Reference Manual
Page 85
... a history of : • eth0 (or vlan if you enter interface names. Table C-2 Interface Naming Convention Interface brvlan1 brtrunk Description The Internal bridge represents the internal interface for the WG302v2. The brvlan1 interface consists of all executed commands ... text also removes characters, one at a time, at cursor location like Up and Down arrow keys typically do . NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table C-1 Keyboard Shortcuts (continued) Keyboard Shortcut Action on all interfaces, including IP addresses. Up/Down arrow ...
... a history of : • eth0 (or vlan if you enter interface names. Table C-2 Interface Naming Convention Interface brvlan1 brtrunk Description The Internal bridge represents the internal interface for the WG302v2. The brvlan1 interface consists of all executed commands ... text also removes characters, one at a time, at cursor location like Up and Down arrow keys typically do . NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table C-1 Keyboard Shortcuts (continued) Keyboard Shortcut Action on all interfaces, including IP addresses. Up/Down arrow ...
WG302v2 Reference Manual
Page 86
...Adds a new instance or group of instances of a class. Upgrades the firmware. Restarts the access point (a "soft" reboot). NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table C-2 Interface Naming Convention (continued) Interface lo eth0 vlan1 wlan0 wlan0vapx wlan0wdsx Description ... the running configuration as the startup configuration. The VLAN interface associated with the default security profile. The WDS interface allows you enter the command, press the TAB key twice to configure wireless bridging and repeating. Sets the property values of ...
...Adds a new instance or group of instances of a class. Upgrades the firmware. Restarts the access point (a "soft" reboot). NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table C-2 Interface Naming Convention (continued) Interface lo eth0 vlan1 wlan0 wlan0vapx wlan0wdsx Description ... the running configuration as the startup configuration. The VLAN interface associated with the default security profile. The WDS interface allows you enter the command, press the TAB key twice to configure wireless bridging and repeating. Sets the property values of ...
WG302v2 Reference Manual
Page 88
NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Viewing General Information Table C-4 describes the commands you see on the General page of the Web UI. Table C-4 General Information Task Command Access Point Information View Access Point Name get host id View the MAC Address for the Access Point get .../Region get system country View the Firmware Version for the Access Point View the Access Point Mode get system version get interface brvlan1 type View the Untagged VLAN ID get untagged-vlan Current IP Settings View the IP Address get interface brvlan1 ...
NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Viewing General Information Table C-4 describes the commands you see on the General page of the Web UI. Table C-4 General Information Task Command Access Point Information View Access Point Name get host id View the MAC Address for the Access Point get .../Region get system country View the Firmware Version for the Access Point View the Access Point Mode get system version get interface brvlan1 type View the Untagged VLAN ID get untagged-vlan Current IP Settings View the IP Address get interface brvlan1 ...
WG302v2 Reference Manual
Page 90
... set ntp-servers primary server 192.168.1.10 View the Current Time date Configuring Wireless Settings The commands in Table C-7 correspond to the Wireless Settings page on the Web UI. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table C-6 Basic Setting (continued)s Task Command Set the Primary DNS Server... the default NTP server set ntp use -default-servers off Set the Management VLAN ID set management vlan-id Enable Untagged VLANs and set set untagged-vlan untagged-vlan-id the VLAN ID Set the Time Zone set ntp timezone Enable the NTP Server set ntp...
... set ntp-servers primary server 192.168.1.10 View the Current Time date Configuring Wireless Settings The commands in Table C-7 correspond to the Wireless Settings page on the Web UI. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table C-6 Basic Setting (continued)s Task Command Set the Primary DNS Server... the default NTP server set ntp use -default-servers off Set the Management VLAN ID set management vlan-id Enable Untagged VLANs and set set untagged-vlan untagged-vlan-id the VLAN ID Set the Time Zone set ntp timezone Enable the NTP Server set ntp...
WG302v2 Reference Manual
Page 94
... wpa-allowed on set bss wlan0bssvap0 wpa2-allowed on Enable Wireless Client Security set radio wlan0 station-isolation on the Web UI. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table C-9 Security Profile Settings (continued) Task Command Set Network Authentication to WPA and WPA2 with radio wlan0 vlan-id Profile RADIUS Server Settings The commands in Table C-10...
... wpa-allowed on set bss wlan0bssvap0 wpa2-allowed on Enable Wireless Client Security set radio wlan0 station-isolation on the Web UI. NETGEAR ProSafe 802.11g Wireless Access Point WG302v2 Reference Manual Table C-9 Security Profile Settings (continued) Task Command Set Network Authentication to WPA and WPA2 with radio wlan0 vlan-id Profile RADIUS Server Settings The commands in Table C-10...
Application Note: Deploy a ProSecure UTM in a Multi SSID Multi VLAN network
Page 1
... configuration (WNDAP330) LAN IP 192.168.1.235 Untagged VLAN: 1 - The solution will allow separating the Wireless traffic and Wired traffic of each of the VLANs configured, from any other VLAN which will exist on the Wired or Wireless LAN - UTM (Unified Threat Management) in a multi-SSID multi-VLAN network with traffic separation This document describes the...
... configuration (WNDAP330) LAN IP 192.168.1.235 Untagged VLAN: 1 - The solution will allow separating the Wireless traffic and Wired traffic of each of the VLANs configured, from any other VLAN which will exist on the Wired or Wireless LAN - UTM (Unified Threat Management) in a multi-SSID multi-VLAN network with traffic separation This document describes the...
Application Note: Deploy a ProSecure UTM in a Multi SSID Multi VLAN network
Page 2
Table of Contents Network Setup ...3 Physical setup...3 Logical setup ...3 UTM10 Configuration ...4 Create a new VLAN ...4 AP configuration (WNDAP330 5 Create a new SSID ...5 Further Notes ...6 Testing ...6 Managing devices ...6 Version 2.0
Table of Contents Network Setup ...3 Physical setup...3 Logical setup ...3 UTM10 Configuration ...4 Create a new VLAN ...4 AP configuration (WNDAP330 5 Create a new SSID ...5 Further Notes ...6 Testing ...6 Managing devices ...6 Version 2.0
Application Note: Deploy a ProSecure UTM in a Multi SSID Multi VLAN network
Page 3
Management VLAN: 1 SSID Corporate - VLAN 1(ID 1) SSID Guest - Network Setup Physical setup Layer 2/Layer 3 switch Port 0/1 connected to UTM10 Port 2 Wireless AP LAN port connected to UTM10 Port 1 UTM10 WAN port connected to the Internet Logical setup UTM 10 Configuration LAN IP 192.168.1.1 VLAN1 (default) ... 192.168.20.x/24 VLAN30 IP 192.168.30.1 Membership: Port 1 DHCP enabled 192.168.30.x/24 AP configuration LAN IP 192.168.1.235 Untagged VLAN: 1 - VLAN 20 (ID 20) SSID Engineering - VLAN30 (ID 30) Layer 2/ Layer 3 switch configuration LAN IP 192.168.1.239 Management...
Management VLAN: 1 SSID Corporate - VLAN 1(ID 1) SSID Guest - Network Setup Physical setup Layer 2/Layer 3 switch Port 0/1 connected to UTM10 Port 2 Wireless AP LAN port connected to UTM10 Port 1 UTM10 WAN port connected to the Internet Logical setup UTM 10 Configuration LAN IP 192.168.1.1 VLAN1 (default) ... 192.168.20.x/24 VLAN30 IP 192.168.30.1 Membership: Port 1 DHCP enabled 192.168.30.x/24 AP configuration LAN IP 192.168.1.235 Untagged VLAN: 1 - VLAN 20 (ID 20) SSID Engineering - VLAN30 (ID 30) Layer 2/ Layer 3 switch configuration LAN IP 192.168.1.239 Management...
Application Note: Deploy a ProSecure UTM in a Multi SSID Multi VLAN network
Page 4
... members of the port on for example a Netgear switch 802.1q capable. After creating each VLAN the User will be dedicated to Corporate by simply editing the VLAN profile. Changing the Default VLAN for administration purposes each of the new VLANs as this scenario, attention should be equivalent to...Port will be prompted with a scope of setting an 802.1q trunk port, as long as the VLAN IP address). Port 1 will be the equivalent of addresses within the same range as the default VLAN is the port the Access Point will have the profile name matching the respective SSID). ...
... members of the port on for example a Netgear switch 802.1q capable. After creating each VLAN the User will be dedicated to Corporate by simply editing the VLAN profile. Changing the Default VLAN for administration purposes each of the new VLANs as this scenario, attention should be equivalent to...Port will be prompted with a scope of setting an 802.1q trunk port, as long as the VLAN IP address). Port 1 will be the equivalent of addresses within the same range as the default VLAN is the port the Access Point will have the profile name matching the respective SSID). ...
Application Note: Deploy a ProSecure UTM in a Multi SSID Multi VLAN network
Page 5
...the UTM relating to the VLAN 1 profile Apply the changes Enable both Profile numbers 2 and 3 to activate the respective SSID. note how this will depend on Edit to modify the Netgear profile name and SSID to Corporate - AP configuration (WNDAP330) Create a new SSID Access the AP configuration via Security..., Profile settings (by default all only the SSID Netgear is active, whilst all the SSIDs are assigned to VLAN 1 In the bottom of the page click on the Security policy in ...
...the UTM relating to the VLAN 1 profile Apply the changes Enable both Profile numbers 2 and 3 to activate the respective SSID. note how this will depend on Edit to modify the Netgear profile name and SSID to Corporate - AP configuration (WNDAP330) Create a new SSID Access the AP configuration via Security..., Profile settings (by default all only the SSID Netgear is active, whilst all the SSIDs are assigned to VLAN 1 In the bottom of the page click on the Security policy in ...