This chapter describes how to access the SMT and provides an overview of its menus.
12.1 Introduction to the SMT
The NOA-3570’s SMT (System Management Terminal) is a menu-driven interface that you
can access from a terminal emulator through the console port or over a telnet connection. This
chapter shows you how to access the SMT (System Management Terminal) menus, how to
navigate the SMT and how to configure SMT menus.
12.2 Accessing the SMT via the Console Port
NOA-3570 User’s Guide
Make sure you have the physical connection properly set up as described in the Quick Start
Guide.
When configuring using the console port, you need a computer equipped with
communications software configured to the following parameters:
• VT100 terminal emulation.
• 9600 Baud.
• No parity, 8 data bits, 1 stop bit, flow control set to none.
12.2.1 Initial Screen
When you turn on your NOA-3570, it performs several internal tests.
The login screen appears after you press [ENTER], prompting you to enter the password, as
shown below.
For your first login, enter the default password “1234”. As you type the password, the screen
displays an “X” for each character you type.
Please note that if there is no activity for longer than five minutes after you log in, your NOA3570 will automatically log you out and display a blank screen. If you see a blank screen, press
[ENTER] to bring up the login screen again.
Figure 68 Password Screen
Enter Password : XXXX
132Chapter 12 Introducing the SMT
12.3 Accessing the SMT via Telnet
The following procedure details how to telnet into your NOA-3570.
1 In Windows, click Start (usually in the bottom left corner), Run and then type “telnet
192.168.1.2” (the default IP address) and click OK.
2 For your first login, enter the default password “1234”. As you type the password, the
screen displays an asterisk “*” for each character you type.
Figure 69 Login Screen
Password : xxxx
3 After entering the password you will see the main menu.
Please note that if there is no activity for longer than five minutes (default timeout period)
after you log in, your NOA-3570 will automatically log you out. You will then have to telnet
into the NOA-3570 again. You can use the web configurator or the CI commands to change
the inactivity time out period.
NOA-3570 User’s Guide
12.4 Navigating the SMT Interface
The SMT (System Management Terminal) is the interface that you use to configure your
NOA-3570.
Several operations that you should be familiar with before you attempt to modify the
configuration are listed in the table below.
Table 43 Main Menu Commands NOA-3570
OPERATIONKEYSTROKEDESCRIPTION
Move down to
another menu
Move up to a
previous menu
Move to a “hidden”
menu
Move the cursor[ENTER] or [UP]/
Entering information Type in or press
[ENTER]To move forward to a submenu, type in the number of the
[ESC]Press [ESC] to move back to the previous menu.
Press [SPACE BAR]
to change No to Yes
then press [ENTER].
[DOWN] arrow keys.
[SPACE BAR], then
press [ENTER].
desired submenu and press [ENTER].
Fields beginning with “Edit” lead to hidden menus and
have a default setting of No. Press [SPACE BAR] once to
change No to Yes, then press [ENTER] to go to the
“hidden” menu.
Within a menu, press [ENTER] to move to the next field.
You can also use the [UP]/[DOWN] arrow keys to move to
the previous and the next field, respectively.
When you are at the top of a menu, press the [UP] arrow
key to move to the bottom of a menu.
You need to fill in two types of fields. The first requires you
to type in the appropriate information. The second allows
you to cycle through the available choices by pressing
[SPACE BAR].
Chapter 12 Introducing the SMT133
NOA-3570 User’s Guide
Table 43 Main Menu Commands NOA-3570
OPERATIONKEYSTROKEDESCRIPTION
Required fields<?> or ChangeMeAll fields with the symbol <?> must be filled in order to be
N/A fields<N/A>Some of the fields in the SMT will show a <N/A>. This
Save your
configuration
Exit the SMTType 99, then press
After you enter the password, the SMT displays the main menu, as shown next.
Figure 70 SMT Main Menu
able to save the new configuration.
All fields with ChangeMe must not be left blank in order to
be able to save the new configuration.
symbol refers to an option that is Not Applicable.
[ENTER]Save your configuration by pressing [ENTER] at the
message “Press ENTER to confirm or ESC to cancel”.
Saving the data on the screen will take you, in most cases
to the previous menu.
Make sure you save your settings in each screen that you
configure.
Type 99 at the main menu prompt and press [ENTER] to
12.4.1 System Management Terminal Interface Summary
Table 44 Main Menu Summary NOA-3570
#MENU TITLEDESCRIPTION
1General SetupUse this menu to set up your general information.
3LAN SetupUse this menu to set up your LAN and WLAN connection.
14Dial-in User SetupUse this menu to set up local user profiles on the NOA-3570.
16VLAN SetupUse this menu to set up your VLAN ID.
22SNMP Configuration Use this menu to set up SNMP related parameters.
134Chapter 12 Introducing the SMT
Table 44 Main Menu Summary NOA-3570
#MENU TITLEDESCRIPTION
23System SecurityUse this menu to change your password and enable network user
24System MaintenanceThis menu provides system status, diagnostics, software upload, etc.
99ExitUse this to exit from SMT and return to a blank screen.
12.4.2 SMT Menus Overview
The following table gives you an overview of your NOA-3570’s various SMT menus.
Table 45 SMT Menus Overview NOA-3570
MENUSSUB MENUS
1 General Setup
3 LAN Setup3.1 LAN Port Filter Setup
3.2 TCP/IP Setup
3.5 Wireless LAN Setup3.5.1 WLAN MAC Address Filter
14 Dial-in User Setup14.1 Edit Dial-in User Setup
16 VLAN Setup
22 SNMP Configuration
23 System Security23.1 Change Password
23.2 RADIUS Server
23.4 IEEE802.1x
24 System Maintenance 24.1 System Status
24.2 System Information and
Console Port Speed
24.3 Log and Trace24.3.1 View Error Log
24.4 Diagnostic
24.5 Backup Configuration
24.6 Restore Configuration
24.7 Upload Firmware24.7.1 Upload System Firmware
24.8 Command Interpreter Mode
24.10 Time and Date Setting
NOA-3570 User’s Guide
authentication.
3.5.4 Bridge Link Configuration
24.2.1 System Information
24.2.2 Console Port Speed
24.3.2 Syslog Logging
24.3.4 Call-Triggering Packet
24.7.2 Upload System Configuration File
Chapter 12 Introducing the SMT135
NOA-3570 User’s Guide
12.5 Changing the System Password
Change the NOA-3570 default password by following the steps shown next.
1 From the main menu, enter 23 to display Menu 23 – System Security.
2 Enter 1 to display Menu 23.1 – System Security – Change Password as shown next.
3 Type your existing system password in the Old Password field, and press [ENTER].
Figure 71 Menu 23.1 System Security: Change Password
Menu 23.1 – System Security – Change Password
Old Password= ****
New Password= ?
Retype to confirm= ?
Enter here to CONFIRM or ESC to CANCEL:
4 Type your new system password in the New Password field (up to 30 characters), and
press [ENTER].
5 Re-type your new system password in the Retype to confirm field for confirmation and
press [ENTER].
Note that as you type a password, the screen displays an asterisk “*” for each character you
type.
136Chapter 12 Introducing the SMT
The chapter shows you the information on general setup.
13.1 General Setup
Menu 1 – General Setup contains administrative and system-related information (shown
next). The System Name field is for identification purposes. It is recommended you type your
computer's "Computer name".
The DomainName entry is what is propagated to the DHCP clients on the LAN. While you
must enter the host name (System Name) on each individual computer, the domain name can
be assigned from the NOA-3570 via DHCP.
NOA-3570 User’s Guide
CHAPTER13
General Setup
13.1.1 Procedure To Configure Menu 1
Enter 1 in the main menu to open Menu 1 –General Setup as shown next.
Figure 72 Menu 1 General Setup
Menu 1 - General Setup
System Name= NOA-3570
Domain Name=
First System DNS Server= From DHCP
IP Address= N/A
Second System DNS Server= None
IP Address= N/A
Third System DNS Server= None
IP Address= N/A
Chapter 13 General Setup137
NOA-3570 User’s Guide
Fill in the required fields. Refer to the following table for more information about these fields.
Table 46 Menu 1 General Setup
FIELDDESCRIPTION
System NameChoose a descriptive name for identification purposes. This name can be up to
Domain NameThis is not a required field. Leave this field blank or enter the domain name
First/Second/Third
System DNS Server
IP AddressEnter the IP addresses of the DNS servers. This field is available when you
When you have completed this menu, press [ENTER] at the prompt “Press ENTER to Confirm…” to
save your configuration, or press [
30 alphanumeric characters long. Spaces are not allowed, but dashes “-” and
underscores "_" are accepted.
here if you know it.
Press [SPACE BAR] to select From DHCP, User-Defined or None and press
[ENTER].
These fields are not available on all models.
select User-Defined in the field above.
ESC] at any time to cancel.
138Chapter 13 General Setup
This chapter shows you how to configure the LAN on your NOA-3570.
14.1 LAN Setup
This section describes how to configure the Ethernet using Menu 3 –LAN Setup. From the
main menu, enter 3 to display menu 3.
Figure 73 Menu 3 LAN Setup
NOA-3570 User’s Guide
CHAPTER14
LAN Setup
Menu 3 - LAN Setup
2. TCP/IP Setup
5. Wireless LAN Setup
Enter Menu Selection Number:
14.2 TCP/IP Ethernet Setup
Use menu 3.2 to configure your NOA-3570 for TCP/IP.
To edit menu 3.2, enter 3 from the main menu to display Menu 3-LAN Setup. When menu 3
appears, press 2 and press [ENTER] to display Menu 3.2-TCP/IP Setup, as shown next
:
Chapter 14 LAN Setup139
NOA-3570 User’s Guide
Figure 74 Menu 3.2 TCP/IP Setup
Follow the instructions in the following table on how to configure the fields in this menu.
Table 47 Menu 3.2 TCP/IP Setup NOA-3570
FIELDDESCRIPTION
Menu 3.2 - TCP/IP Setup
IP Address Assignment= Static
IP Address= 192.168.1.2
IP Subnet Mask= 255.255.255.0
Gateway IP Address= 0.0.0.0
IP Address
Assignment
IP AddressEnter the (LAN) IP address of your NOA-3570 in dotted decimal notation
IP Subnet MaskYour NOA-3570 will automatically calculate the subnet mask based on the IP
Gateway IP
Address
When you have completed this menu, press [ENTER] at the prompt “Press ENTER to Confirm…” to
save your configuration, or press [
Press [SPACE BAR] and then [ENTER] to select Dynamic to have the NOA-3570
obtain an IP address from a DHCP server. You must know the IP address assigned
to the NOA-3570 (by the DHCP server) to access the NOA-3570 again.
Select Static to give the NOA-3570 a fixed, unique IP address. Enter a subnet mask
appropriate to your network and the gateway IP address if applicable.
address that you assign. Unless you are implementing subnetting, use the subnet
mask computed by the NOA-3570.
Type the IP address of the gateway. The gateway is an immediate neighbor of your
NOA-3570 that will forward the packet to the destination. On the LAN, the gateway
must be a router on the same network segment as your NOA-3570.
14.3 Wireless LAN Setup
Use menu 3.5 to set up your NOA-3570 as the wireless access point. To edit menu 3.5, enter 3
from the main menu to display Menu 3 – LAN Setup. When menu 3 appears, press 5 and then
press [ENTER] to display Menu 3.5 – Wireless LAN Setup as shown next.
ESC] at any time to cancel.
140Chapter 14 LAN Setup
NOA-3570 User’s Guide
Figure 75 Menu 3.5 Wireless LAN Setup
Menu 3.5 - Wireless LAN Setup
WLAN Adapter= WLAN 1
Operating Mode= Access Point
Name (SSID)= ZyXEL
Hide Name (SSID)= No Edit MAC Address Filter= No
Channel ID= CH06 2437MHz Edit Roaming Configuration= No
RTS Threshold= 2432 Edit Br idge Link Configura tion= N/A
Frag. Threshold= 2432 Preamble= Long
WEP Encryption= Disable 802.11 Mode= Mixed
Default Key= N/A Max. Frame Burst= 650
Key1= N/A VLAN ID= 1
Key2= N/A Block Intra-BSS Traffic= No
Key3= N/A Output Power= 21dBm
Key4= N/A
Authen. Method= N/A
Press ENTER to Confirm or ESC to Cancel:
The following table describes the fields in this menu.
Table 48 Menu 3.5 Wireless LAN Setup NOA-3570
FIELDDESCRIPTION
WLAN Adapter Index Press [SPACE BAR] and select a wireless LAN adapter to configure.
Operating ModePress [SPACE BAR] and select Access Point, Multiple ESS, Bridge /
Repeater or AP + Bridge.
Name (SSID)The SSID (Service Set IDentity) identifies the AP to which the wireless stations
associate. Wireless stations associating to the AP must have the same ESSID.
Enter a descriptive name of up to 32 printable 7-bit ASCII characters.
This field is only available when you select Access Point or AP + Bridge in the
Operating Mode field.
Hide Name (SSID)Press [SPACE BAR] and select Yes to hide the ESSID in the outgoing data
RTS ThresholdSetting this attribute to zero turns on the RTS/CTS handshake. Enter a value
Frag. Threshold This is the maximum data fragment size that can be sent. Enter a value
WEP EncryptionSelect Disable to allow wireless stations to communicate with the access points
Default KeyEnter the key number (1 to 4) in this field. Only one key can be enabled at any
frame so an intruder cannot obtain the ESSID through passive scanning.
between 0 and 2432.
between 800 and 2432.
without any data encryption.
Select 64-bit WEP or 128-bit WEP to enable data encryption.
one time. This key must be the same on the NOA-3570 and the wireless
stations to communicate.
Chapter 14 LAN Setup141
NOA-3570 User’s Guide
Table 48 Menu 3.5 Wireless LAN Setup NOA-3570
FIELDDESCRIPTION
Key 1 to Key 4The WEP keys are used to encrypt data. Both the NOA-3570 and the wireless
Authen. MethodPress [SPACE BAR] to select Auto, Open System Only or Shared Key Only
Edit MAC Address
Filter
Edit Roaming
Configuration
Edit Bridge Link
Configuration
Preamble Select a preamble type from the drop-down list menu. Choices are Long, Short
802.11 Mode Select 802.11b Only to allow only IEEE 802.11b compliant WLAN devices to
Max. Frame Burst Enable Maximum Frame Burst to help eliminate collisions in mixed-mode
VLAN IDThe NOA-3570 supports IEEE 802.1 tagged VLAN for partioning a physical
Block Intra-BSS
Traffic
Output Power LevelPress [SPACE BAR] to select the amount of power you want the NOA-3570 to
When you have completed this menu, press [ENTER] at the prompt “Press ENTER to confirm or ESC
to cancel” to save your configuration or press [ESC] to cancel and go back to the previous screen.
stations must use the same WEP key for data transmission.
If you chose 64-bit WEP in the WEP Encryption field, then enter any 5 ASCII
characters or 10 hexadecimal characters ("0-9", "A-F").
If you chose 128-bit WEP in the WEP Encryption field, then enter 13 ASCII
characters or 26 hexadecimal characters ("0-9", "A-F").
Note: Enter “0x” before the key to denote a hexadecimal key.
Don’t enter “0x” before the key to denote an ASCII key.
and press [ENTER].
This field is N/A if WEP is not activated.
If WEP encryption is activated, the default setting is Auto.
Press [SPACE BAR] to select Yes and press [ENTER] to display Menu 3.5.1 - WLAN MAC Address Filter.
Press [SPACE BAR] to select Yes and press [ENTER] to display Menu 3.5.2 - Roaming Configuration.
Use [SPACE BAR] to choose Ye s and press [ENTER] to go to Menu 3.5.4 - Bridge Link Configuration.
and Dynamic. The default setting is Long.
See the section on preamble for more information.
associate with the NOA-3570.
Select 802.11g Only to allow only IEEE 802.11g compliant WLAN devices to
associate with the NOA-3570.
Select Mixed to allow either IEEE802.11b or IEEE802.11g compliant WLAN
devices to associate with the NOA-3570. The transmission rate of your NOA3570 might be reduced.
networks (networks with both IEEE 802.11g and IEEE 802.11b traffic) and
enhance the performance of both pure IEEE 802.11g and mixed IEEE 802.11b/
g networks. Maximum Frame Burst sets the maximum time, in microseconds,
that the NOA-3570 transmits IEEE 802.11g wireless traffic only.
Type the maximum frame burst between 0 and 1800 (650, 1000 or 1800
recommended). Enter 0 to disable this feature.
network into multiple logical networks. Enter a number from 1 to 4094 to set the
VLAN ID tag that the NOA-3570 adds to the Ethernet frames that this WLAN
adapter receives from wireless clients or other APs.
Press [SPACE BAR] to select Yes to only allow wireless stations to
communicate with the wired network, not with each other.
Press [SPACE BAR] to select No to allow wireless stations connected to the
NOA-3570 to communicate with each other.
use for the wireless signal. If there is a high density of APs within an area,
decrease the output power of the NOA-3570 to reduce interference with other
APs. The options are 21dBm, 19dBm, 17dBm or 15dBm.
142Chapter 14 LAN Setup
14.3.1 Configuring MAC Address Filter
Your NOA-3570 checks the MAC address of the wireless station device against a list of
allowed or denied MAC addresses. However, intruders could fake allowed MAC addresses so
MAC-based authentication is less secure than EAP authentication.
Follow the steps below to create the MAC address table on your NOA-3570.
1 From the main menu, enter 3 to open Menu 3 – LAN Setup.
2 Enter 5 to display Menu 3.5 – Wireless LAN Setup.
Figure 76 Menu 3.5 Wireless LAN Setup
Menu 3.5 - Wireless LAN Setup
Operating Mode= Access Point
Name (SSID)= ZyXEL
Hide Name (SSID)= No Edit MAC Address Filter= Yes
Channel ID= CH06 2437MHz Edit Roaming Configuration= No
RTS Threshold= 2432 Edit Bridge Link Configuration= N/A
Frag. Threshold= 2432 Preamble= Long
WEP Encryption= Disable 802.11 Mode= Mixed
Default Key= N/A Max. Frame Burst= 650
Key1= N/A Block Intra-BSS Traffic= No
Key2= N/A Output Power Level= 4
Key3= N/A
Key4= N/A
Authen. Method= N/A
NOA-3570 User’s Guide
Press ENTER to Confirm or ESC to Cancel:
Press Space Bar to Toggle.
3 Press [SPACE BAR] to select Access Point or AP + Bridge in theOperating Mode
field and press [ENTER].
4 In the Edit MAC Address Filter field, press [SPACE BAR] to select Yes and press
[ENTER]. Menu 3.5.1 – WLAN MAC Address Filter displays as shown next.
----------------------------------------------------------------------------- Enter here to CONFIRM or ESC to CANCEL:
The following table describes the fields in this menu.
Table 49 Menu 3.5.1 WLAN MAC Address Filter NOA-3570
FIELDDESCRIPTION
ActiveTo enable MAC address filtering, press [SPACE BAR] to select Yes and press
[ENTER].
Filter Action Define the filter action for the list of MAC addresses in the MAC address filter
MAC Address Filter
1..32Enter the MAC addresses (in XX:XX:XX:XX:XX:XX format) of the client
When you have completed this menu, press [ENTER] at the prompt “Press ENTER to confirm or ESC
to cancel” to save your configuration or press [ESC] to cancel and go back to the previous screen.
table.
To deny access to the NOA-3570, press [SPACE BAR] to select Deny
Association and press [ENTER]. MAC addresses not listed will be allowed to
access the router.
The default action, Allowed Association, permits association with the NOA-
3570. MAC addresses not listed will be denied access to the router.
computers that are allowed or denied access to the NOA-3570 in these address
fields.
14.3.2 Configuring Roaming
Follow the steps below to configure roaming on your NOA-3570.
1 From the main menu, enter 3 to open Menu 3 – LAN Setup.
2 Enter 5 to display Menu 3.5 – Wireless LAN Setup.
144Chapter 14 LAN Setup
NOA-3570 User’s Guide
Figure 78 Menu 3.5 Wireless LAN Setup
Menu 3.5 - Wireless LAN Setup
Operating Mode= Access Point
Name (SSID)= ZyXEL
Hide Name (SSID)= No Edit MAC Address Filter= No
Channel ID= CH06 2437MHz Edit Roaming Configuration= No
RTS Threshold= 2432 Edit Bridge Link Configuration= N/A
Frag. Threshold= 2432 Preamble= Long
WEP Encryption= Disable 802.11 Mode= Mixed
Default Key= N/A Max. Frame Burst= 650
Key1= N/A Block Intra-BSS Traffic= No
Key2= N/A Output Power Level= 4
Key3= N/A
Key4= N/A
Authen. Method= N/A
Press ENTER to Confirm or ESC to Cancel:
3 In the Operating Mode field, press [SPACE BAR] to select AP or AP + Bridge and
press [ENTER].
4 Move the cursor to the Edit Roaming Configuration field. Press [SPACE BAR] to
select Yes and press [ENTER].Menu 3.5.2 – Roaming Configuration displays as
shown next.
Figure 79 Menu 3.5.2 - Roaming Configuration
Menu 3.5.2 - Roaming Configuration
Active= No
Port #= N/A
The following table describes the fields in this menu.
Chapter 14 LAN Setup145
NOA-3570 User’s Guide
Table 50 Menu 3.5.2 - Roaming Configuration NOA-3570
FIELDDESCRIPTION
ActivePress [SPACE BAR] to select Yes from the drop-down list box to enable
roaming on the NOA-3570 if you have two or more NOA-3570s on the same
subnet.
Note: All APs on the same subnet and the wireless stations must
have the same SSID to allow roaming.
PortType the port number to communicate roaming information between access
points. The port number must be the same on all access points. The default is
3517. Make sure this port is not used by other services.
When you have completed this menu, press [ENTER] at the prompt “Press ENTER to confirm or ESC
to cancel” to save your configuration or press [ESC] to cancel and go back to the previous screen.
14.3.3 Configuring Bridge Link
Follow the steps below to configure bridge link on your NOA-3570.
1 From the main menu, enter 3 to open Menu 3 – LAN Setup.
2 Enter 5 to display Menu 3.5 – Wireless LAN Setup.
Figure 80 Menu 3.5 Wireless LAN Setup
Menu 3.5 - Wireless LAN Setup
Operating Mode= Bridge / Repeater
Name (SSID)= N/A
Hide Name (SSID)= N/A Edit MAC Address Filter= N/A
Channel ID= CH06 2437MHz Edit Roaming Configuration= N/A
RTS Threshold= 2432 Edit Bridge Link Configuration= Yes
Frag. Threshold= 2432 Preamble= Long
WEP Encryption= Disable 802.11 Mode= Mixed
Default Key= N/A Max. Frame Burst= 650
Key1= N/A Block Intra-BSS Traffic= No
Key2= N/A Output Power Level= 4
Key3= N/A
Key4= N/A
Authen. Method= N/A
Press ENTER to Confirm or ESC to Cancel:
Press Space Bar to Toggle.
3 In the Operating Mode field, press [SPACE BAR] to select Bridge / Repeater or AP
+ Bridge and press [ENTER].
146Chapter 14 LAN Setup
NOA-3570 User’s Guide
4 Move the cursor to the Edit Bridge Link Configuration field. Press [SPACE BAR] to
select Yes and press [ENTER].Menu 3.5.4 – Bridge Link Configuration displays as
shown next.
Figure 81 Menu 3.5.4 - Bridge Link Configuration
Menu 3.5.4 - Bridge Link Configuration
Enable Link 1= No Peer MAC Address= 00:00:00:00:00:00
PSK= N/A
Enable Link 2= No Peer MAC Address= 00:00:00:00:00:00
PSK= N/A
Enable Link 3= No Peer MAC Address= 00:00:00:00:00:00
PSK= N/A
Enable Link 4= No Peer MAC Address= 00:00:00:00:00:00
PSK= N/A
Enable Link 5= No Peer MAC Address= 00:00:00:00:00:00
PSK= N/A
Enable WDS Security= No
Press ENTER to Confirm or ESC to Cancel:
The following table describes the fields in this menu.
Table 51 Menu 3.5.4 Bridge Link Configuration NOA-3570
FIELDDESCRIPTION
Enable Link 1-6Press [SPACE BAR] to select Yes or No and press [ENTER].
Peer MAC AddressType the MAC address of a wireless bridge in valid MAC address format, that
Enable WDS Security A Wireless Distribution System (WDS) is a wireless connection between two or
is, six hexadecimal character pairs, for example, 12:34:56:78:9a:bc.
more APs.
Press [SPACE BAR] to select Yes to use TKIP to encrypt traffic on the WDS
between APs.
When you enable WDS security, type a Pre-Shared Key (PSK) for each link.
Note: Other wireless bridges must use the same encryption
method to enable WDS security.
PSKWhen you enable WDS, type a Pre-Shared Key (PSK) for each link. The pre-
shared key can be from 8 to 63 case-sensitive ASCII characters (including
spaces and symbols).
When you have completed this menu, press [ENTER] at the prompt “Press ENTER to confirm or ESC
to cancel” to save your configuration or press [ESC] to cancel and go back to the previous screen.
Chapter 14 LAN Setup147
NOA-3570 User’s Guide
148Chapter 14 LAN Setup
This chapter shows you how to create user accounts on the NOA-3570.
15.1 Dial-in User Setup
By storing user profiles locally, your NOA-3570 is able to authenticate wireless users without
interacting with a network RADIUS server.
Follow the steps below to set up user profiles on your NOA-3570.
From the main menu, enter 14 to display Menu 14 - Dial-in User Setup.
Type a number and press [ENTER] to edit the user profile.
Figure 83 Menu 14.1- Edit Dial-in User
Menu 14.1 - Edit Dial-in User
User Name= test
Active= Yes
Password= ********
Press ENTER to Confirm or ESC to Cancel:
Leave name field blank to delete profile
The following table describes the fields in this screen.
Chapter 15 Dial-in User Setup149
NOA-3570 User’s Guide
Table 52 Menu 14.1- Edit Dial-in User NOA-3570
FIELDDESCRIPTION
User NameEnter a username up to 31 alphanumeric characters long for this user profile.
ActivePress [SPACE BAR] to select Yes and press [ENTER] to enable the user
PasswordEnter a password up to 31 characters long for this user profile.
When you have completed this menu, press [ENTER] at the prompt “Press ENTER to confirm or ESC
to cancel” to save your configuration or press [ESC] to cancel and go back to the previous screen.
This field is case sensitive.
profile.
150Chapter 15 Dial-in User Setup
This chapter explains VLAN setup menu 16. Refer to the web configurator VLAN chapter for
background information on VLAN.
16.1 VLAN Setup
To setup VLAN, select option 16 from the main menu to open Menu 16 – VLAN Setup as
shown next.
Figure 84 Menu 16 VLAN Setup
Menu 16 - VLAN Setup
NOA-3570 User’s Guide
CHAPTER16
VLAN Setup
VLAN Tagging= Yes
Native VLAN ID= 1
The following table describes the fields in this menu.
Table 53 Menu 16 VLAN Setup
FIELDDESCRIPTION
VLAN TaggingTo enable VLAN tagging, press [SPACE BAR] to select Yes and press
[ENTER].
Native VLAN IDThis field is activated only when you select Yes in the VLAN Tagging field.
Enter a number from 1 to 4094 to specify the ID of the management VLAN.
Your management computer must belong to this VLAN group in order to
manage the NOA-3570. This can be done in the following ways:
•The management computer could be a wireless client of the NOA-3570 if
the NOA-3570’s WLAN adapter is set to add the add the management
VLAN ID tag to Ethernet frames received from wireless clients.
•The management computer could be on the wired network, behind a
VLAN-aware switch that is configured to add the management VLAN ID
tag to Ethernet frames from the computer before sending them to NOA-
3570.
Note: Mail and FTP servers must have the same management
VLAN ID to communicate with the NOA-3570.
When you have completed this menu, press [ENTER] at the prompt “Press ENTER to confirm or ESC
to cancel” to save your configuration or press [ESC] to cancel and go back to the previous screen.
Chapter 16 VLAN Setup151
NOA-3570 User’s Guide
152Chapter 16 VLAN Setup
This chapter explains SNMP Configuration menu 22.
17.1 About SNMP
Simple Network Management Protocol is a protocol used for exchanging management
information between network devices. SNMP is a member of the TCP/IP protocol suite. Your
NOA-3570 supports SNMP agent functionality, which allows a manager station to manage
and monitor the NOA-3570 through the network. The NOA-3570 supports SNMP version one
(SNMPv1) and version two c (SNMPv2c). The next figure illustrates an SNMP management
operation. SNMP is only available if TCP/IP is configured.
NOA-3570 User’s Guide
CHAPTER17
SNMP Configuration
Figure 85 SNMP Management Model
An SNMP managed network consists of two main components: agents and a manager.
An agent is a management software module that resides in a managed device (the NOA-3570).
An agent translates the local management information from the managed device into a form
compatible with SNMP. The manager is the console through which network administrators
perform network management functions. It executes applications that control and monitor
managed devices.
Chapter 17 SNMP Configuration153
NOA-3570 User’s Guide
The managed devices contain object variables/managed objects that define each piece of
information to be collected about a device. Examples of variables include the number of
packets received, node port status etc. A Management Information Base (MIB) is a collection
of managed objects. SNMP allows a manager and agents to communicate for the purpose of
accessing these objects.
SNMP itself is a simple request/response protocol based on the manager/agent model. The
manager issues a request and the agent returns responses using the following protocol
operations:
• Get - Allows the manager to retrieve an object variable from the agent.
• GetNext - Allows the manager to retrieve the next object variable from a table or list
within an agent. In SNMPv1, when a manager wants to retrieve all elements of a table
from an agent, it initiates a Get operation, followed by a series of GetNext operations.
• Set - Allows the manager to set values for object variables within an agent.
• Trap - Used by the agent to inform the manager of some events.
17.2 Supported MIBs
The NOA-3570 supports RFC-1215 and MIB II as defined in RFC-1213. The focus of the
MIBs is to let administrators collect statistic data and monitor status and performance.
17.3 SNMP Configuration
To configure SNMP, select option 22from the main menu to open Menu 22 – SNMP
Configuration as shown next. The “community” for Get, Set and Trap fields is SNMP
terminology for password.
Figure 86 Menu 22 SNMP Configuration
Menu 22 - SNMP Configuration
SNMP:
Get Community= public
Set Community= public
Trusted Host= 0.0.0.0
Trap:
Community= public
Destination= 0.0.0.0
Press ENTER to Confirm or ESC to Cancel:
The following table describes the SNMP configuration parameters.
154Chapter 17 SNMP Configuration
NOA-3570 User’s Guide
Table 54 Menu 22 SNMP Configuration NOA-3570
FIELDDESCRIPTION
SNMP:
Get CommunityType the Get Community, which is the password for the incoming Get- and
GetNext requests from the management station.
Set CommunityType the Set Community, which is the password for incoming Set requests from
Trusted HostIf you enter a trusted host, your NOA-3570 will only respond to SNMP messages
Trap:
CommunityType the trap community, which is the password sent with each trap to the SNMP
DestinationType the IP address of the station to send your SNMP traps to.
When you have completed this menu, press [ENTER] at the prompt “Press ENTER to confirm or ESC
to cancel” to save your configuration or press [ESC] to cancel and go back to the previous screen.
the management station.
from this address. A blank (default) field means your NOA-3570 will respond to all
SNMP messages it receives, regardless of source.
manager.
17.4 SNMP Traps
The NOA-3570 will send traps to the SNMP manager when any one of the following events
occurs:
Table 55 SNMP Traps NOA-3570
TRAP #TRAP NAMEDESCRIPTION
1coldStart (defined in RFC-1215)A trap is sent after booting (power on).
2warmStart (defined in RFC-1215)A trap is sent after booting (software reboot).
3linkUp (defined in RFC-1215)A trap is sent when the port is up.
4authenticationFailure (defined in
RFC-1215)
6linkDown (defined in RFC-1215)A trap is sent when the port is down.
The following table maps the physical port and encapsulation to the interface type,
Table 56 Ports and Interface Types NOA-3570
PHYSICAL PORT/ENCAPINTERFACE TYPE
A trap is sent to the manager when receiving any SNMP
get or set requirements with wrong community
(password).
WLAN 1 enet0
Ethernet portenet1
WLAN 2enet2
Chapter 17 SNMP Configuration155
NOA-3570 User’s Guide
156Chapter 17 SNMP Configuration
This chapter describes how to configure the system security on the NOA-3570.
18.1 System Security
You can configure the system password, an external RADIUS server and 802.1x in this menu.
18.1.1 System Password
Figure 87 Menu 23 System Security
Menu 23 - System Security
NOA-3570 User’s Guide
CHAPTER18
System Security
1. Change Password
2. RADIUS Server
4. IEEE802.1x
Enter Menu Selection Number:
You should change the NOA-3570’s management password. Refer to the section on changing
the system password in the Introducing the SMT chapter for details. If you forget your
password you have to restore the default configuration file. Refer to the section on resetting
the NOA-3570 in the Introducing the Web Configurator chapter.
18.1.2 Configuring External RADIUS Server
Enter 23 in the main menu to display Menu 23 – System Security.
Figure 88 Menu 23 System Security
Menu 23 - System Security
1. Change Password
2. RADIUS Server
4. IEEE802.1x
Enter Menu Selection Number:
Chapter 18 System Security157
NOA-3570 User’s Guide
From Menu 23- System Security, enter 2 to display Menu 23.2 – System Security –
RADIUS Server as shown next.
Figure 89 Menu 23.2 System Security: RADIUS Server
Menu 23.2 - System Security - RADIUS Server
Authentication Server:
Active= No
Server Address= 0.0.0.0
Port #= 1812
Shared Secret= ********
Accounting Server:
Active= No
Server Address= 0.0.0.0
Port #= 1813
Shared Secret= ********
Press ENTER to Confirm or ESC to Cancel:
The following table describes the fields in this menu.
Table 57 Menu 23.2 System Security: RADIUS Server NOA-3570
FIELDDESCRIPTION
Authentication Server
ActivePress [SPACE BAR] to select Yes and press [ENTER] to enable user
authentication through an external authentication server.
Server AddressTo use an external authentication server, enter its IP address in dotted
decimal notation.
Enter 127.0.0.1 to use the internal authentication server.
PortThe default port of the RADIUS server for authentication is 1812.
You need not change this value unless your network administrator instructs
you to do so with additional information.
Shared SecretTo use an external authentication server, specify a password (up to 31
alphanumeric characters) as the key to be shared between the external
authentication server and the access points.
The key is not sent over the network. This key must be the same on the
external authentication server and NOA-3570.
Enter 1234 to use the internal authentication server.
Accounting Server
ActivePress [SPACE BAR] to select Yes and press [ENTER] to enable user
authentication through an external accounting server.
Server AddressEnter the IP address of the external accounting server in dotted decimal
notation.
PortThe default port of the RADIUS server for accounting is 1813.
You need not change this value unless your network administrator instructs
you to do so with additional information.
158Chapter 18 System Security
Table 57 Menu 23.2 System Security: RADIUS Server NOA-3570
FIELDDESCRIPTION
Shared SecretSpecify a password (up to 31 alphanumeric characters) as the key to be
When you have completed this menu, press [ENTER] at the prompt “Press ENTER to confirm or ESC
to cancel” to save your configuration or press [ESC] to cancel and go back to the previous screen.
18.1.3 802.1x
The IEEE 802.1x standards outline enhanced security methods for both the authentication of
wireless stations and encryption key management.
Follow the steps below to enable EAP authentication on your NOA-3570.
1 From the main menu, enter 23 to display Menu23 – System Security.
Figure 90 Menu 23 System Security
NOA-3570 User’s Guide
shared between the external accounting server and the access points.
The key is not sent over the network. This key must be the same on the
external accounting server and NOA-3570.
Menu 23 - System Security
1. Change Password
2. RADIUS Server
4. IEEE802.1x
Enter Menu Selection Number:
2 Enter 4 to display Menu 23.4 – System Security – IEEE802.1x.
Chapter 18 System Security159
NOA-3570 User’s Guide
Figure 91 Menu 23.4 System Security: IEEE802.1x
Wireless Port Control= Authentication Required
ReAuthentication Timer (in second)= 1800
Idle Timeout (in second)= 3600
Authentication Databases= Local User Database Only
The following table describes the fields in this menu.
Menu 23.4 - System Security - IEEE802.1x
Press ENTER to Confirm or ESC to Cancel:
Press Space Bar to Toggle.
Table 58 Menu 23.4 System Security: IEEE802.1x NOA-3570
FIELDDESCRIPTION
Wireless Port Control Press [SPACE BAR] and select a security mode for the wireless LAN access.
Select No Authentication Required to allow any wireless stations access to
your wired network without entering usernames and passwords. This is the
default setting.
Selecting Authentication Required means wireless stations have to enter
usernames and passwords before access to the wired network is allowed.
Select No Access Allowed to block all wireless stations access to the wired
network.
The following fields are not available when you select No Authentication Required or No Access Allowed.
ReAuthentication
Timer (in second)
Idle Timeout (in
second)
Key Management
Protocol
Specify how often a client has to re-enter username and password to stay
connected to the wired network.
This field is activated only when you select Authentication Required in the
Wireless Port Control field. Enter a time interval between 10 and 9999 (in
seconds). The default time interval is 1800 seconds (or 30 minutes).
The NOA-3570 automatically disconnects a client from the wired network after
a period of inactivity. The client needs to enter the username and password
again before access to the wired network is allowed.
This field is activated only when you select Authentication Required in the
Wireless Port Control field. The default time interval is 3600 seconds (or 1
hour).
Press [SPACE BAR] to select 802.1x, WPA or WPA-PSK and press [ENTER].
160Chapter 18 System Security
Loading...
+ 89 hidden pages
You need points to download manuals.
1 point = 1 manual.
You can buy points or you can get point for every manual you upload.