User Guide
Page 19
...on ) NXC Series User's Guide 19 can be upgraded up to ge2 and so on. • The default LAN IP address is 192.168.1.1. • The default administrator login user name and password are "admin" and "1234" respectively. 1.2 Zones, Interfaces, and Physical Ports Here is where you set...1 NXC Series Comparison Table FEATURES Link Aggregation Group (LAG) Support Two USB Ports Console Port (Serial Port) Max. no, of managed APs NXC2500 No Yes DB-9 Connector 8; can be upgraded up to Gigabit Ethernet (ge) interfaces. Port combine physical ports into interfaces. The physical port ...
...on ) NXC Series User's Guide 19 can be upgraded up to ge2 and so on. • The default LAN IP address is 192.168.1.1. • The default administrator login user name and password are "admin" and "1234" respectively. 1.2 Zones, Interfaces, and Physical Ports Here is where you set...1 NXC Series Comparison Table FEATURES Link Aggregation Group (LAG) Support Two USB Ports Console Port (Serial Port) Max. no, of managed APs NXC2500 No Yes DB-9 Connector 8; can be upgraded up to Gigabit Ethernet (ge) interfaces. Port combine physical ports into interfaces. The physical port ...
User Guide
Page 33
..."). CHAPTER 3 The Web Configurator 3.1 Overview The NXC Web Configurator allows easy management using the default user name and password, the Update Admin Info screen appears. Select the language you logged in using an Internet browser. See the Quick Start Guide. 2 Browse to https://192....
..."). CHAPTER 3 The Web Configurator 3.1 Overview The NXC Web Configurator allows easy management using the default user name and password, the Update Admin Info screen appears. Select the language you logged in using an Internet browser. See the Quick Start Guide. 2 Browse to https://192....
User Guide
Page 34
The screens may vary slightly for the default user account, this screen does not appear anymore. 3.3 The Main Screen This guide uses the NXC2500 screens as an example. The Web Configurator's main screen is divided into these parts: NXC Series User's Guide 34 If you log in using the default user name and default password. Chapter 3 The Web Configurator This screen appears every time you change the password for different models.
The screens may vary slightly for the default user account, this screen does not appear anymore. 3.3 The Main Screen This guide uses the NXC2500 screens as an example. The Web Configurator's main screen is divided into these parts: NXC Series User's Guide 34 If you log in using the default user name and default password. Chapter 3 The Web Configurator This screen appears every time you change the password for different models.
User Guide
Page 47
... the correct date and time, it may not be able to connect to a time server. • New Password & Confirm Password: Enter a new password and retype it to its default configuration, the wizard screens display automatically. If your time zone and Greenwich Mean Time (GMT). • Enable ...top of any Web Configurator screen. 4.2 Using the Wizard This wizard helps you to configure the NXC's system password, time zone and daylight savings time. The default daylight savings settings vary depending on the time zone you selected. • Offset allows you configure the following settings...
... the correct date and time, it may not be able to connect to a time server. • New Password & Confirm Password: Enter a new password and retype it to its default configuration, the wizard screens display automatically. If your time zone and Greenwich Mean Time (GMT). • Enable ...top of any Web Configurator screen. 4.2 Using the Wizard This wizard helps you to configure the NXC's system password, time zone and daylight savings time. The default daylight savings settings vary depending on the time zone you selected. • Offset allows you configure the following settings...
User Guide
Page 48
You will need to check the router for Internet access and configure vlan0, the default management VLAN interface. Figure 20 Wizard: Step 1 Password and Time Settings 4.2.2 Step 2 Uplink Connection and Management VLAN A Virtual Local Area Network (VLAN) allows you want the NXC to assign...Chapter 4 Setup Wizard Click Next to access the NXC's web configurator again. You then need to group ports into multiple independent logical networks. The default members of port 1 (ge1) for the IP address assigned to the NXC in the Wizard. • Uplink Connection: Select Auto (DHCP) if...
You will need to check the router for Internet access and configure vlan0, the default management VLAN interface. Figure 20 Wizard: Step 1 Password and Time Settings 4.2.2 Step 2 Uplink Connection and Management VLAN A Virtual Local Area Network (VLAN) allows you want the NXC to assign...Chapter 4 Setup Wizard Click Next to access the NXC's web configurator again. You then need to group ports into multiple independent logical networks. The default members of port 1 (ge1) for the IP address assigned to the NXC in the Wizard. • Uplink Connection: Select Auto (DHCP) if...
User Guide
Page 239
...user using the local database, the attempt always fails. LOGIN METHOD(S) Captive Portal Captive Portal WWW Captive Portal MAC Authentication Note: The default admin account is authenticated by MAC address. If you do not want to network services. If the NXC tries to use the local... Set up policies for this session to a mac-address user account (MAC role). A dynamic guest account has a dynamicallycreated user name and password. NXC Series User's Guide 239 Ext-Group-User Accounts Ext-Group-User accounts work are similar to ext-user accounts but are guest accounts,...
...user using the local database, the attempt always fails. LOGIN METHOD(S) Captive Portal Captive Portal WWW Captive Portal MAC Authentication Note: The default admin account is authenticated by MAC address. If you do not want to network services. If the NXC tries to use the local... Set up policies for this session to a mac-address user account (MAC role). A dynamic guest account has a dynamicallycreated user name and password. NXC Series User's Guide 239 Ext-Group-User Accounts Ext-Group-User accounts work are similar to ext-user accounts but are guest accounts,...
User Guide
Page 243
... is maintained in a remote server, such as RADIUS or LDAP. • ext-group-user - this user belongs. Retype Enter the password of the NXC. • limited-admin - Choices are provided. an external server authenticates wireless clients based on their MAC addresses. Group Identifier...ext-group-user type user account. This field is not available if you select the ext-user, ext-group-user or mac-address type. Default descriptions are : Password • admin - Table 111 Configuration > Object > User/Group > User > Add/Edit A User LABEL DESCRIPTION User Name User Type ...
... is maintained in a remote server, such as RADIUS or LDAP. • ext-group-user - this user belongs. Retype Enter the password of the NXC. • limited-admin - Choices are provided. an external server authenticates wireless clients based on their MAC addresses. Group Identifier...ext-group-user type user account. This field is not available if you select the ext-user, ext-group-user or mac-address type. Default descriptions are : Password • admin - Table 111 Configuration > Object > User/Group > User > Add/Edit A User LABEL DESCRIPTION User Name User Type ...
User Guide
Page 302
...Section 25.2 on page 305) configure Active Directory or LDAP server objects. • The RADIUS screen (Section 25.3 on page 309) configures the default external RADIUS server to your network. A network example is successful, the NXC checks the user information in the directory against the user name and....1.2 What You Need To Know The following describes the user authentication procedure via an LDAP/AD server. 1 A user logs in with a user name and password pair. 2 The NXC tries to bind (or log in this chapter. NXC Series User's Guide 302 The AAA server can use a AAA (Authentication, ...
...Section 25.2 on page 305) configure Active Directory or LDAP server objects. • The RADIUS screen (Section 25.3 on page 309) configures the default external RADIUS server to your network. A network example is successful, the NXC checks the user information in the directory against the user name and....1.2 What You Need To Know The following describes the user authentication procedure via an LDAP/AD server. 1 A user logs in with a user name and password pair. 2 The NXC tries to bind (or log in this chapter. NXC Series User's Guide 302 The AAA server can use a AAA (Authentication, ...
User Guide
Page 318
.... 1 Browse to where you have the correct certificate. The secure method may very based on your certificate's public or private passwords. Possible examples would be over the telephone or through an HTTPS connection. A certificate's fingerprint is not connected to your computer.... envelope. The file's password is a message digest calculated using the certificate's fingerprint. Chapter 27 Certificates • Binary PKCS#12: This is a format for this to occur since many programs use text files by default. 27.1.3 Verifying a Certificate Before you import a trusted certificate into ...
.... 1 Browse to where you have the correct certificate. The secure method may very based on your certificate's public or private passwords. Possible examples would be over the telephone or through an HTTPS connection. A certificate's fingerprint is not connected to your computer.... envelope. The file's password is a message digest calculated using the certificate's fingerprint. Chapter 27 Certificates • Binary PKCS#12: This is a format for this to occur since many programs use text files by default. 27.1.3 Verifying a Certificate Before you import a trusted certificate into ...
User Guide
Page 328
... given by this field if any certificate on the path has expired or been revoked. If the issuing certification authority is the default server port number for public-key certificates. Type the login name (up to 31 ASCII characters) from the entity maintaining the ... screen. You must use up to 31 ASCII characters) from the entity maintaining the CRL directory server (usually a certification authority). Password Type the password (up to 31 ASCII characters) from the entity maintaining the server (usually a certification authority). With self-signed certificates, this read...
... given by this field if any certificate on the path has expired or been revoked. If the issuing certification authority is the default server port number for public-key certificates. Type the login name (up to 31 ASCII characters) from the entity maintaining the ... screen. You must use up to 31 ASCII characters) from the entity maintaining the CRL directory server (usually a certification authority). Password Type the password (up to 31 ASCII characters) from the entity maintaining the server (usually a certification authority). With self-signed certificates, this read...
User Guide
Page 364
RSA1 key fingerprint is '^]'. A message displays indicating the SSH protocol version supported by the NXC. Then enter the password to log in $ ssh -1 192.168.1.1 The authenticity of host '192.168.1.1 (192.168.1.1)' can't be used to manage the NXC. NXC Series User's Guide .... Figure 221 SSH Example 2: Log in to the NXC. Chapter 29 System 29.8.5.2 Example 2: Linux This section describes how to access the NXC using the default IP address of 192.168.1.1). [email protected]'s password: 3 The CLI screen displays next. 29.9 Telnet You can come .
RSA1 key fingerprint is '^]'. A message displays indicating the SSH protocol version supported by the NXC. Then enter the password to log in $ ssh -1 192.168.1.1 The authenticity of host '192.168.1.1 (192.168.1.1)' can't be used to manage the NXC. NXC Series User's Guide .... Figure 221 SSH Example 2: Log in to the NXC. Chapter 29 System 29.8.5.2 Example 2: Linux This section describes how to access the NXC using the default IP address of 192.168.1.1). [email protected]'s password: 3 The CLI screen displays next. 29.9 Telnet You can come .
User Guide
Page 369
... with each trap to which your SNMP traps are sent. Trap Community Type the trap community, which is public and allows all requests. The default is the password sent with the IP address that define allowed SNMPv3 access. Destination Type the IP address of the SNMP manager to the SNMP manager. To...
... with each trap to which your SNMP traps are sent. Trap Community Type the trap community, which is public and allows all requests. The default is the password sent with the IP address that define allowed SNMPv3 access. Destination Type the IP address of the SNMP manager to the SNMP manager. To...
User Guide
Page 370
The default is the password for where you take this action. Click this to create a new entry. This the index number...the NXC using SNMPv3 to access the NXC. This field displays whether the SNMPv3 user can access which is the password for which this SNMPv3 user profile is allowed or denied to access. It is allowed or denied to access. Enter... Remove # User Authentication Privacy Privilege Service Control Add Edit Remove Move # Select this option to have to use the default policy. The NXC confirms you to add or edit an SNMPv3 user profile. This field displays the type of the...
The default is the password for where you take this action. Click this to create a new entry. This the index number...the NXC using SNMPv3 to access the NXC. This field displays whether the SNMPv3 user can access which is the password for which this SNMPv3 user profile is allowed or denied to access. It is allowed or denied to access. Enter... Remove # User Authentication Privacy Privilege Service Control Add Edit Remove Move # Select this option to have to use the default policy. The NXC confirms you to add or edit an SNMPv3 user profile. This field displays the type of the...
User Guide
Page 391
... as a comment. Table 191 Configuration Files and Shell Scripts in the NXC Configuration Files (.conf) Shell Scripts (.zysh) • Resets to default configuration. • Goes into CLI Configuration mode. • Runs the commands in the configuration file. • Goes into CLI Privilege mode....group in the shell script. Figure 237 Configuration File / Shell Script: Example # enter configuration mode configure terminal # change administrator password username admin password 4321 user-type admin # configure ge3 interface ge3 ip address 172.16.37.240 255.255.255.0 ip gateway 172.16....
... as a comment. Table 191 Configuration Files and Shell Scripts in the NXC Configuration Files (.conf) Shell Scripts (.zysh) • Resets to default configuration. • Goes into CLI Configuration mode. • Runs the commands in the configuration file. • Goes into CLI Privilege mode....group in the shell script. Figure 237 Configuration File / Shell Script: Example # enter configuration mode configure terminal # change administrator password username admin password 4321 user-type admin # configure ge3 interface ge3 ip address 172.16.37.240 255.255.255.0 ip gateway 172.16....
User Guide
Page 427
...NXC turned on . Connect your computer to blink), then release it . NXC Series User's Guide 427 It returns the NXC to the factory defaults (password is the default) and then press [ENTER]. Make sure you may have a terminal emulation communications program (such as the NXC's. • In the computer...the NXC and plugged in for details). • If you've forgotten the NXC's IP address, you 've forgotten the NXC's password, use the commands through the console port to check it . CHAPTER 36 Troubleshooting 36.1 Overview This chapter offers some suggestions to solve problems...
...NXC turned on . Connect your computer to blink), then release it . NXC Series User's Guide 427 It returns the NXC to the factory defaults (password is the default) and then press [ENTER]. Make sure you may have a terminal emulation communications program (such as the NXC's. • In the computer...the NXC and plugged in for details). • If you've forgotten the NXC's IP address, you 've forgotten the NXC's password, use the commands through the console port to check it . CHAPTER 36 Troubleshooting 36.1 Overview This chapter offers some suggestions to solve problems...
User Guide
Page 430
...The private key is not connected to your certificate's public or private passwords. I cannot access the NXC from the certificate's filename before you can import the certificate. 3 Any certificate that was generated by default. You can also import a certificate in the same user group. ...can import a certificate that matches a corresponding certification request that you import the file into the NXC. It is within a password-encrypted envelope. You cannot put the default admin account into any spaces from a computer connected to text during the transfer process. The file...
...The private key is not connected to your certificate's public or private passwords. I cannot access the NXC from the certificate's filename before you can import the certificate. 3 Any certificate that was generated by default. You can also import a certificate in the same user group. ...can import a certificate that matches a corresponding certification request that you import the file into the NXC. It is within a password-encrypted envelope. You cannot put the default admin account into any spaces from a computer connected to text during the transfer process. The file...
User Guide
Page 434
...SYS LED begins to blink. (This usually takes about five seconds.) 3 Release the RESET button, and wait for the NXC to its factory-default settings. Note: This procedure removes the current configuration. 1 Make sure the SYS LED is no load balancing indicator associated with the settings in question... the RESET button and hold it by any method or you forget the administrator password(s), you saved on again. Make sure you have been terminated because further load balancing on the APs in the system-default.conf file. If you still cannot access the NXC by the wireless clients in...
...SYS LED begins to blink. (This usually takes about five seconds.) 3 Release the RESET button, and wait for the NXC to its factory-default settings. Note: This procedure removes the current configuration. 1 Make sure the SYS LED is no load balancing indicator associated with the settings in question... the RESET button and hold it by any method or you forget the administrator password(s), you saved on again. Make sure you have been terminated because further load balancing on the APs in the system-default.conf file. If you still cannot access the NXC by the wireless clients in...
User Guide
Page 497
... by Cisco. EAP-GTC is performed. A new WEP key is generated each time reauthentication is implemented only by sending username and password through the secured connection to impersonate an authentication server as MD5 authentication method does not perform mutual authentication. NXC Series User's Guide ... such as EAP-MD5, EAP-MSCHAPv2 and EAP-GTC (EAP-Generic Token Card), for only the server-side authentications to configure a default encryption key in the wireless security configuration screen. If this feature is enabled, it is possible to authenticate the clients, thus hiding ...
... by Cisco. EAP-GTC is performed. A new WEP key is generated each time reauthentication is implemented only by sending username and password through the secured connection to impersonate an authentication server as MD5 authentication method does not perform mutual authentication. NXC Series User's Guide ... such as EAP-MD5, EAP-MSCHAPv2 and EAP-GTC (EAP-Generic Token Card), for only the server-side authentications to configure a default encryption key in the wireless security configuration screen. If this feature is enabled, it is possible to authenticate the clients, thus hiding ...
User Guide
Page 499
... Windows XP to encrypt every data packet that is wirelessly communicated between the two is that WPA(2)-PSK uses a simple common password, instead of the RADIUS server, its port number (default is the WPA patch for WPA(2) and WPA(2)-PSK are different from six to four (CCMP 4-way handshake) and shortens the...
... Windows XP to encrypt every data packet that is wirelessly communicated between the two is that WPA(2)-PSK uses a simple common password, instead of the RADIUS server, its port number (default is the WPA patch for WPA(2) and WPA(2)-PSK are different from six to four (CCMP 4-way handshake) and shortens the...
User Guide
Page 521
... 305 Bind DN 305, 308 directory structure 304 Distinguished Name, see DN DN 304, 306, 307 password 308 port 307, 310, 311 search time limit 308 SSL 307 AAA server 302 AD 304 and ...users 239 directory service 302 LDAP 302, 304 local user database 303 RADIUS 303, 304 RADIUS default 309 RADIUS group 309 see also RADIUS access 33 access users 238, 240 idle timeout 248 multiple logins ... sessions 64, 78 AD 302, 304, 305, 306, 307, 308 directory structure 304 Distinguished Name, see DN password 308 port 307, 310, 311 search time limit 308 SSL 307 address groups 288 and firewall 234 and FTP 367...
... 305 Bind DN 305, 308 directory structure 304 Distinguished Name, see DN DN 304, 306, 307 password 308 port 307, 310, 311 search time limit 308 SSL 307 AAA server 302 AD 304 and ...users 239 directory service 302 LDAP 302, 304 local user database 303 RADIUS 303, 304 RADIUS default 309 RADIUS group 309 see also RADIUS access 33 access users 238, 240 idle timeout 248 multiple logins ... sessions 64, 78 AD 302, 304, 305, 306, 307, 308 directory structure 304 Distinguished Name, see DN password 308 port 307, 310, 311 search time limit 308 SSL 307 address groups 288 and firewall 234 and FTP 367...