User Guide
Page 13
... Chapter 302 25.1.2 What You Need To Know 302 25.2 Active Directory / LDAP ...305 25.2.1 Add/Edit Active Directory / LDAP Server 306 25.3 RADIUS ...309 25.3.1 Add/Edit RADIUS ...309 Chapter 26 Authentication Method ...313 26.1 Overview ...313 26.1.1 What You Can Do in this Chapter 313 26.1.2 Before You Begin ...313...
... Chapter 302 25.1.2 What You Need To Know 302 25.2 Active Directory / LDAP ...305 25.2.1 Add/Edit Active Directory / LDAP Server 306 25.3 RADIUS ...309 25.3.1 Add/Edit RADIUS ...309 Chapter 26 Authentication Method ...313 26.1 Overview ...313 26.1.1 What You Can Do in this Chapter 313 26.1.2 Before You Begin ...313...
User Guide
Page 21
... NXC (A) connects to associate with the NXC's comprehensive wireless security tools. APs can protect your network by monitoring for the wireless clients (D) within their broadcast radius. 1.3.2 Wireless Security Keep the connections between wireless clients and your NXC. 1.3.1 AP Management Manage multiple separate Access Points (APs) from all network traffic, regardless of...
... NXC (A) connects to associate with the NXC's comprehensive wireless security tools. APs can protect your network by monitoring for the wireless clients (D) within their broadcast radius. 1.3.2 Wireless Security Keep the connections between wireless clients and your NXC. 1.3.1 AP Management Manage multiple separate Access Points (APs) from all network traffic, regardless of...
User Guide
Page 42
...trusted sources. SSH SSH Configure SSH server and SSH service settings. Firmware Package View the current firmware version and to act as a RADIUS server. Auth. Server Configure the NXC to upload firmware. Log Settings Log Settings Configure the system log, e-mail logs, and remote ...syslog servers. 3.3.2.4 Maintenance Menu Use the maintenance menu screens to send. NXC Series User's Guide 42 RADIUS Configure the default RADIUS settings. Date/Time Date/Time Configure the current date, time, and time zone in the NXC. FTP FTP Configure FTP ...
...trusted sources. SSH SSH Configure SSH server and SSH service settings. Firmware Package View the current firmware version and to act as a RADIUS server. Auth. Server Configure the NXC to upload firmware. Log Settings Log Settings Configure the system log, e-mail logs, and remote ...syslog servers. 3.3.2.4 Maintenance Menu Use the maintenance menu screens to send. NXC Series User's Guide 42 RADIUS Configure the default RADIUS settings. Date/Time Date/Time Configure the current date, time, and time zone in the NXC. FTP FTP Configure FTP ...
User Guide
Page 53
...wireless clients. 5 GHz is not available if you create a guest VLAN interface in the previous screen. Enter a descriptive name of the RADIUS server to tag traffic originating from this SSID. • Tagged VLAN ID: Select this network without saving. Click Cancel to add security ...63 case-sensitive ASCII characters (including spaces and symbols) or 64 hexadecimal characters. • Enterprise: Select Enterprise and the Primary / Secondary RADIUS Server Activate check box to have to enter the IP address, port number and shared secret password of up to 32 printable characters to...
...wireless clients. 5 GHz is not available if you create a guest VLAN interface in the previous screen. Enter a descriptive name of the RADIUS server to tag traffic originating from this SSID. • Tagged VLAN ID: Select this network without saving. Click Cancel to add security ...63 case-sensitive ASCII characters (including spaces and symbols) or 64 hexadecimal characters. • Enterprise: Select Enterprise and the Primary / Secondary RADIUS Server Activate check box to have to enter the IP address, port number and shared secret password of up to 32 printable characters to...
User Guide
Page 55
... output power of the managed AP to the configuration screens after you selected. Note: Reducing the output power also reduces the managed AP's effective broadcast radius. To configure advanced settings on the time zone you finish setting up the Wizard. NXC Series User's Guide 55 Chapter 4 Setup Wizard • Channel Width...
... output power of the managed AP to the configuration screens after you selected. Note: Reducing the output power also reduces the managed AP's effective broadcast radius. To configure advanced settings on the time zone you finish setting up the Wizard. NXC Series User's Guide 55 Chapter 4 Setup Wizard • Channel Width...
User Guide
Page 82
... the screen. 6.8.1 Dynamic Guest A dynamic guest account has a dynamically-created user name and password that do not use the captive portal and RADIUS server authentication. Figure 47 Monitor > System Status > Login Users > Dynamic Guest NXC Series User's Guide 82 Accounting-off means accounting has stopped... a guest user to access the Internet or the NXC's services in without an authenticator's help. This field displays the IP address of the RADIUS profile used to log into the NXC. For a captive portal login, this screen, click Monitor > System Status > Login Users > Dynamic Guest...
... the screen. 6.8.1 Dynamic Guest A dynamic guest account has a dynamically-created user name and password that do not use the captive portal and RADIUS server authentication. Figure 47 Monitor > System Status > Login Users > Dynamic Guest NXC Series User's Guide 82 Accounting-off means accounting has stopped... a guest user to access the Internet or the NXC's services in without an authenticator's help. This field displays the IP address of the RADIUS profile used to log into the NXC. For a captive portal login, this screen, click Monitor > System Status > Login Users > Dynamic Guest...
User Guide
Page 135
... for radio 1 or radio 2. This field is available only when the radio is activated. Note: Reducing the output power also reduces the NXC's effective broadcast radius. MON Mode means the AP monitors the broadcast area for this group. The managed APs in an area, decrease the output power of the managed...
... for radio 1 or radio 2. This field is available only when the radio is activated. Note: Reducing the output power also reduces the NXC's effective broadcast radius. MON Mode means the AP monitors the broadcast area for this group. The managed APs in an area, decrease the output power of the managed...
User Guide
Page 137
... the weakest signal strength will not kick out clients or delay connections if it does not detect another AP within the broadcast radius that have been idle the longest will be kicked continuously and never be disassociated first. Devices with network traffic), the AP ... - 11 Mbps, • Medium - 23 Mbps • High - 35 Mbps This function is enabled by which the AP begins load balancing its broadcast radius. Chapter 8 Wireless Table 59 Configuration > Wireless > AP Management > AP Group > Add/Edit (continued) LABEL DESCRIPTION Enable Load Balancing Select this group. Use...
... the weakest signal strength will not kick out clients or delay connections if it does not detect another AP within the broadcast radius that have been idle the longest will be kicked continuously and never be disassociated first. Devices with network traffic), the AP ... - 11 Mbps, • Medium - 23 Mbps • High - 35 Mbps This function is enabled by which the AP begins load balancing its broadcast radius. Chapter 8 Wireless Table 59 Configuration > Wireless > AP Management > AP Group > Add/Edit (continued) LABEL DESCRIPTION Enable Load Balancing Select this group. Use...
User Guide
Page 239
... authentication attempt always fails. LOGIN METHOD(S) Captive Portal Captive Portal WWW Captive Portal MAC Authentication Note: The default admin account is authenticated by an associated RADIUS server. After authentication the NXC maps the wireless client to User. If you do not have the information, the NXC sets the user type for... the NXC. Once an ext-user has been authenticated, the NXC tries to authenticate wireless clients by an external server, such as AD, LDAP or RADIUS.
... authentication attempt always fails. LOGIN METHOD(S) Captive Portal Captive Portal WWW Captive Portal MAC Authentication Note: The default admin account is authenticated by an associated RADIUS server. After authentication the NXC maps the wireless client to User. If you do not have the information, the NXC sets the user type for... the NXC. Once an ext-user has been authenticated, the NXC tries to authenticate wireless clients by an external server, such as AD, LDAP or RADIUS.
User Guide
Page 240
... NXC automatically routes packets for each one. The NXC is then 'aware' of the user who is logged in default user (ldap-users, ad-users, radius-users). 18.2 User Summary The User screen provides a summary of all user accounts. If you can use the network services it provides. Chapter 18 User...
... NXC automatically routes packets for each one. The NXC is then 'aware' of the user who is logged in default user (ldap-users, ad-users, radius-users). 18.2 User Summary The User screen provides a summary of all user accounts. If you can use the network services it provides. Chapter 18 User...
User Guide
Page 241
This field displays the user name of times an object reference is maintained in a remote server, such as RADIUS or LDAP. • guest-manager - After authentication the NXC maps a wireless client to specific resources. Table 110 Configuration > Object > User/Group > User LABEL..., select it . • user - This field is a sequential value, and it before doing so. this user can log in a remote server, such as RADIUS or LDAP. • ext-group-user - an external server authenticates wireless clients based on their MAC addresses. This field displays the kind of account of...
This field displays the user name of times an object reference is maintained in a remote server, such as RADIUS or LDAP. • guest-manager - After authentication the NXC maps a wireless client to specific resources. Table 110 Configuration > Object > User/Group > User LABEL..., select it . • user - This field is a sequential value, and it before doing so. this user can log in a remote server, such as RADIUS or LDAP. • ext-group-user - an external server authenticates wireless clients based on their MAC addresses. This field displays the kind of account of...
User Guide
Page 242
... • debug • ldap-users • operator • sync • admin • any • devicehaecived • ftp • lp • mail • radius-users • root • uucp • zyxel • bin • games • news • shutdown • daemon • halt • nobody • sshd To access this screen, go to...
... • debug • ldap-users • operator • sync • admin • any • devicehaecived • ftp • lp • mail • radius-users • root • uucp • zyxel • bin • games • news • shutdown • daemon • halt • nobody • sshd To access this screen, go to...
User Guide
Page 243
... the NXC's services but not to change the configuration of this user account. This field is maintained in a remote server, such as RADIUS or LDAP. • guest-manager - This value is . an external server authenticates wireless clients based on their MAC addresses. This field... is maintained in a remote server, such as RADIUS or LDAP. • ext-group-user - Specify the value of user this is case- You may use 1-31 alphanumeric characters, underscores(_), or...
... the NXC's services but not to change the configuration of this user account. This field is maintained in a remote server, such as RADIUS or LDAP. • guest-manager - This value is . an external server authenticates wireless clients based on their MAC addresses. This field... is maintained in a remote server, such as RADIUS or LDAP. • ext-group-user - Specify the value of user this is case- You may use 1-31 alphanumeric characters, underscores(_), or...
User Guide
Page 248
...User Default Setting Default Authentication Timeout Settings Edit # User Type These authentication timeout settings are used by clicking the Renew button on their screen as RADIUS or LDAP. • guest-manager - this case, the session is maintained in a remote server, such as well. User-aware features control...create dynamic guest accounts using the Guest Manager screen that are the kinds of minutes the user can renew lease time automatically, as well as RADIUS or LDAP. • ext-group-user - Access users can look at and change it • user - In this user has access...
...User Default Setting Default Authentication Timeout Settings Edit # User Type These authentication timeout settings are used by clicking the Renew button on their screen as RADIUS or LDAP. • guest-manager - this case, the session is maintained in a remote server, such as well. User-aware features control...create dynamic guest accounts using the Guest Manager screen that are the kinds of minutes the user can renew lease time automatically, as well as RADIUS or LDAP. • ext-group-user - Access users can look at and change it • user - In this user has access...
User Guide
Page 250
.../Group > Setting > Edit User Authentication Timeout Settings The following table describes the labels in a remote server, such as RADIUS or LDAP. • guest-manager - this user can log in a remote server, such as RADIUS or LDAP. • ext-group-user - this screen. If you allow access users to change the configuration of...
.../Group > Setting > Edit User Authentication Timeout Settings The following table describes the labels in a remote server, such as RADIUS or LDAP. • guest-manager - this user can log in a remote server, such as RADIUS or LDAP. • ext-group-user - this screen. If you allow access users to change the configuration of...
User Guide
Page 258
... encryption and user authentication. Key differences between the AP and the wireless stations associated with it . In other words, it is done using an external RADIUS server. NXC Series User's Guide 258 Wireless stations associating to the access point (AP) must use to configure either one of 4:2).
... encryption and user authentication. Key differences between the AP and the wireless stations associated with it . In other words, it is done using an external RADIUS server. NXC Series User's Guide 258 Wireless stations associating to the access point (AP) must use to configure either one of 4:2).
User Guide
Page 263
...is set Channel Selection to DCS and select the Time Interval option. NXC Series User's Guide 263 This allows the device to downgrade its broadcast radius at a specific time on which it from users in order to reduce interference. This regulates how often the AP surveys the other APs within ..., thus preventing it is currently broadcasting suddenly comes into use . Select this option to have the AP survey the other APs within its broadcast radius. Guard Interval The available channels vary depending on an AP and all connected APs, in 24-hour format) to have the AP use DCS ...
...is set Channel Selection to DCS and select the Time Interval option. NXC Series User's Guide 263 This allows the device to downgrade its broadcast radius at a specific time on which it from users in order to reduce interference. This regulates how often the AP surveys the other APs within ..., thus preventing it is currently broadcasting suddenly comes into use . Select this option to have the AP survey the other APs within its broadcast radius. Guard Interval The available channels vary depending on an AP and all connected APs, in 24-hour format) to have the AP use DCS ...
User Guide
Page 269
... AP using this SSID if the VLAN is "hidden" and a wireless client cannot see it anyway. When the AP cannot connect to the NXC and Radius Server Type is set to turn on the AP. If you selected the Tunnel forwarding mode, select a VLAN interface. This tells any wireless clients in...
... AP using this SSID if the VLAN is "hidden" and a wireless client cannot see it anyway. When the AP cannot connect to the NXC and Radius Server Type is set to turn on the AP. If you selected the Tunnel forwarding mode, select a VLAN interface. This tells any wireless clients in...
User Guide
Page 273
... MyKey12345678) for each Key used. Auth. Select the bit-length of the encryption key to use a Pre-Shared Key (PSK) with a RADIUS server. or Key 1~4 Personal Pre-Shared Key Transition Mode • Enter 13 ASCII characters (case sensitive) ranging from the list: open, ...hexadecimal characters. Choices are allowed. This creates two virtual APs (VAPs) with WPA3 encryption. Method screen. If you set the RADIUS server type to integrate back-end authentication with WPA2 encryption or Simultaneous Authentication of "A-F", "a-f" and "0-9" (for example, 0x11AA22BB33) for...
... MyKey12345678) for each Key used. Auth. Select the bit-length of the encryption key to use a Pre-Shared Key (PSK) with a RADIUS server. or Key 1~4 Personal Pre-Shared Key Transition Mode • Enter 13 ASCII characters (case sensitive) ranging from the list: open, ...hexadecimal characters. Choices are allowed. This creates two virtual APs (VAPs) with WPA3 encryption. Method screen. If you set the RADIUS server type to integrate back-end authentication with WPA2 encryption or Simultaneous Authentication of "A-F", "a-f" and "0-9" (for example, 0x11AA22BB33) for...
User Guide
Page 274
... Cipher Type to protect management frames. Management frames will be used for authentication. Information from the list. Primary / Secondary Radius Server Activate Select this to turn on IEEE 802.11r fast roaming on the network, allowing connected wireless clients to switch... APs without having to use the specified RADIUS server. Radius Settings Radius Server Type Select Internal to use the NXC's internal authentication database, or External to re-authenticate their network connection....
... Cipher Type to protect management frames. Management frames will be used for authentication. Information from the list. Primary / Secondary Radius Server Activate Select this to turn on IEEE 802.11r fast roaming on the network, allowing connected wireless clients to switch... APs without having to use the specified RADIUS server. Radius Settings Radius Server Type Select Internal to use the NXC's internal authentication database, or External to re-authenticate their network connection....