VP Networks MultiAP 700G User Manual

MultiAP 700G
User Manual
Aug-12
C
OPYRIGHT & TRADEMARKS
Specifications are subject to change without notice. Copyright © 2012 ValuePoint Networks. All Rights Reserved. ValuePoint and the VP logo are trademarks of ValuePoint Networks. Other brands or products mentioned may be trademarks or registered trademarks of their respective owners.
Table of Contents
1 INTRODUCTION AND SCOPE .................................................................................... 3
2 PRODUCT FEATURES ................................................................................................3
3 INSTALLATION.............................................................................................................4
5.1 I
5.2 Q
NSTALLATION PROCEDURES
UICK START
........................................................................................................................ 6
.................................................................................................. 4
4 INFORMATION..............................................................................................................6
6.1 S
6.2 W
6.3 WDS.................................................................................................................................... 8
6.4 E
6.5 N
YSTEM
................................................................................................................................ 6
IRELESS
............................................................................................................................. 7
VENT LOG
EIGHBOR APS
........................................................................................................................... 8
..................................................................................................................... 9
5 CONFIGURATION ......................................................................................................10
7.1 S
7.2 W
7.3 A
7.4 WDS S
7.5 SNMP S
7.6 W
YSTEM SETTINGS
IRELESS NETWORKS SETTINGS
DVANCED SETTINGS
ETTINGS
ETTINGS
EB ADMIN SETTINGS
.............................................................................................................. 10
.......................................................................................................... 26
.................................................................................................................. 30
................................................................................................................ 32
......................................................................................................... 35
......................................................................................... 16
6 DIAGNOSTIC TOOLS................................................................................................. 37
7 COMMANDS................................................................................................................ 38
8 PER USER VLAN TAGGING ..................................................................................... 40
APPENDIX A..................................................................................................................... 41
APPENDIX B..................................................................................................................... 42
1 Introduction and Scope
MultiAP 700G is a carrier-grade 802.11b/g Wi-Fi access point with centralized management system. It is a powerful solution for building wireless networks for Wireless Internet service, wholesalers and enterprises. Each MultiAP 700G is loaded with essential features such as Multiple SSID (virtual AP with distinct ESSID and BSSID), VLAN, and a high-gain antenna.
One MultiAP 700G can masquerade up to 16 different access points. Each virtual access point can have its own security policy (e.g. WPA, WPA2, etc.) and authentication mechanism (e.g. 802.1x, open, captive portal, etc), to facilitate building your wholesale network much faster, easier and more cost-effective than ever before. MultiAP 700G comes with a high-power Wi-Fi transmitter which greatly enhances coverage and performance.
2 Product Features
Key features of MultiAP 700G:
Designed for wholesale wireless networks with multiple SSID and VLAN support  Independent security policies and encryption mechanisms per virtual AP  Centralized managed via web based MultiAP Central Management System (PCMS)  High-power output enhances coverage and lowers cost of ownership  WMM (Wi-Fi Multimedia) and QoS (Quality of Service) Support  WDS (Wireless Distribution System) Support  Captive Portal Support  Mesh Connector Bridging
3 Installation
MultiAP 700G acts as a bridge between the wireless and the wired Ethernet interface. A typical setup is as follows:
3.1 Installation Procedures
1. Attach the antenna to the MultiAP 700G unit.
2. Connect the LAN port on the unit with the backbone network using an Ethernet cable. The port could auto sense the cable is straight-through or cross-over.
3. Connect the power adapter to the power connector of the unit, and then plug in the power adapter.
4. Wait for the status LED to turn green.
5. Connect a PC to the backbone network, and configure the IP address of the PC to be any IP address between
6. With Microsoft Internet Explorer 6 or above, or Mozilla Firefox 2.0 or above, connect to the URL
https://192.168.0.3
7. When prompted, enter the default admin login ID and password: admin and public respectively. This default username and password can be changed in the web admin. Please refer to section
5.6.2 for details.
8. After logging in, the following Main Menu page appears to facilitate further configuration of the
192.168.0.4
.
and
192.168.0.254
, with subnet mask of
255.255.255.0
.
MultiAP 700G unit:
Comment:
Comment:
Comment:
3.2 Quick Start
By default, an access point is preset with SSID: wireless
The default access point bridges the Wi-Fi interface to the Ethernet port, with both encryption and VLAN tagging disabled.
To access the backbone network connected via the Ethernet port of the unit, establish a session at the Wi-Fi interface with a Wi-Fi client. After establishing a Wi-Fi client session, information about the established Wi-Fi session appears at the Web Administration Interface of MultiAP 700G, under the section at Information-> Wireless.
4 Information
4.1 System
System Information
AP Name This field shows the name of the system entered in the configuration.
Location This field shows the location entered in the configuration.
Domain Name This shows the domain name used for this system.
Network IP Mode
Network IP Address This shows the current IP used on the system.
Network Subnet
Mask
Network Gateway This shows the detected/assigned network gateway of the device.
Network DNS This shows the detected/assigned network DNS of the device.
Software Versions This shows the current firmware version running on the system.
Serial Number This shows the serial number of the device.
Up Time This shows the time has been up since boots up.
System Time This shows the time of day in respect to the time zone selected.
Time Zone This shows the time zone the system is using.
Mac Address This shows the LAN MAC address of this system.
This field can be set in Configure > System. The three options available are: DHCP, Static IP and PPPoE (Router Mode only).
This shows the current subnet mask used on the system.
Status This shows the status of the L2TP service.
Tunnel IP Address This shows the IP acquired in the established tunnel.
L2TP Tunnel
Comment:
Tunnel Netmask This shows the subnet mask acquired in the established tunnel.
Firmware / Flash
Firmware Version This shows the firmware version loaded into the flash partitions.
Flash Status This shows the firmware status on the flash partitions.
Boot from This indicates which flash partition boots up the system.
Firmware Upgrade
Target
This shows which flash partition is used for firmware upgrade.
4.2 Wireless
Wireless Information
Name This shows the system name defined in previous section.
Number of WLANs This shows number of added SSIDs.
Current Clients This indicates the number of associated clients.
Current Channel This shows which 802.11 channel the system is using.
Current Status This shows the current status of the device.
Connected Clients
Manufacturer This shows the manufacturer based on the MAC prefix.
MAC address This shows the client MAC address.
WLAN SSID This shows which SSID the client is associated.
VID This shows the VLAN ID used on the SSID.
Type This shows the radio mode of the client.
Authentication This shows the client authentication.
Status This shows the association status and the associated duration.
Details This links to the detailed page of each client.
For information about the Clients Details, please refer to section 5.2.
? any other than On?
4.3 WDS
Auto WDS Status
Bssid This shows the wireless MAC address of the device.
Parent This shows the parent node of the device.
Channel This shows the channel of the existing Bssid.
Level This shows the hop level of the device.
State This shows the state of the node: wired or wireless.
Neighbor WDS APs
Bssid This shows the wireless MAC address of the Neighbor WDS node.
Parent This shows the parent node of the Neighbor WDS node.
Channel This shows the channel of the existing Bssid.
RSSI This shows the signal strength of the node.
Level This shows the hop level of the node.
State This shows the state of the node: wired or wireless.
4.4 Event Log
Upon selecting Event Log from the navigation bar on the left-hand-side of the Main Menu, the system log is displayed. The system log is intended to provide information to aid troubleshooting in the event of operational issues.
Comment:
4.5 Neighbor APs
Neighbor APs
Neighbor AP
Discovery
Scanning Interval This shows the scanning interval for Neighbor AP Discovery.
Scanning Time This shows the scanning time for Neighbor AP Discovery.
Manufacturer This shows the manufacturer based on the MAC prefix.
SSID This shows the ESSID of the scanned access point.
Ch This shows the channel of the scanned access point.
RSSI This shows the signal strength of the access point.
Security This shows the encryption type of the access point used.
BSSID This shows the wireless MAC address of the access point.
Last Seen This indicates the time stamp of the access point scanned.
Status This shows whether the access point can be detected or not.
This shows the feature Neighbor AP Discovery is enabled. To disable or configure the Scanning Interval and Scanning Time options, please refer to section 5.3.2.
Neighbor APs
5 Configuration
5.1 System Settings
AP Name
Location
AP Mode
Domain Name
Server IP
Management VLAN
ID
Timezone
NTP Server
A user-specified name for the access point. This value can be retrieved via SNMP.
A user-specified name for the location of the access point.
This value can be retrieved via SNMP.
This option enables the access point running as a bridge or a router. When the access point runs as a router, the Management VLAN ID is ignored and the LAN settings appear for proper network setup.
Domain name can be set for wireless clients to have a readable name for both web management and captive portal redirection URLs.
This specifies the unique IP address for the MultiAP 700G unit to communicate on the Ethernet segment.
This IP address is distinct from the admin IP address 192.168.0.3 on the Ethernet segment.
If Keep Default IP is set, the default IP would be available on the system along with the Server IP setting.
If DHCP is set, the IP address of the MultiAP 700G unit is then acquired from a DHCP server on the Ethernet segment.
If Static IP is set, it is required to enter the information related to that static IP, including Static IP address, Subnet Mask, Default Gateway and DNS Server.
If PPPoE is set, it is required to enter the information related to that PPPoE connection: PPPoE Username, PPPoE Password, PPPoE Service Name. This option is only available with Router mode.
This specifies the VLAN from which management sessions are allowed. The establishment of management sessions is restricted only to the specified VLAN ID. If Management VLAN ID is set to zero, no VLAN restriction is applied.
The default value of this setting is zero. It means no tagging is enabled (instead of tagged with zero).
This option is only available in Router mode.
This option specifies the time region to be used for representing the time on the system.
This is the Network Time Protocol (NTP) Server hostname to be used for synchronizing system clock of MultiAP 700G.
The default value of this setting is
General Access Point Settings
pool.ntp.org
.
STP
Bridge Priority
Ethernet Path Cost
Spanning Tree Protocol, STP can be enabled to prevent path redundancy. With this enabled, two more options are provided: Bridge Priority and Ethernet Path Cost.
(If STP is enabled,) the parameter is set to give the likeliness for root switch election.
(If STP is enabled,) this gives the preference to provide the best path from the switch to the root switch.
5.1.1 LAN Settings
LAN Settings will only be available when the AP Mode in the previous section had been selected as Router mode. You can use the 700G as a DHCP server for other devices behind.
5.1.2 L2TP Tunnel Settings
L2TP Tunnel Settings
L2TP Tunnel
L2TP Server
Address
L2TP/PPP
Username
L2TP/PPP Password This specifies the L2TP/PPP Password for tunnel authentication purpose.
Tunnel IP Address
Tunnel Subnet Mask
Tunnel Management
VLAN
Enabling L2TP option on the system would start the tunnel establishment from the access point to the server for centralized traffic management.
This specifies the L2TP server IP address for the access point to connect to.
This specifies the L2TP/PPP Username for tunnel authentication purpose.
This specifies the unique IP address for the MultiAP 700G unit to communicate over the tunnel.
If From DHCP is set, the IP address of the MultiAP 700G unit is then acquired from a DHCP server over the tunnel. Tunnel IP Address and Tunnel Subnet Mask will be disabled automatically.
This setting specifies the subnet mask of the MultiAP 700G unit over the tunnel.
This specifies the VLAN from which management sessions are allowed over the tunnel. The establishment of management sessions is restricted only to the specified VLAN ID. If Management VLAN ID is set to zero, no VLAN restriction is applied.
The default value of this setting is zero. It means no tagging is enabled (instead of tagged with zero).
5.1.3 Security Settings
Layer 2 is in reference to the second layer in the ISO Open System Interconnect model.
When this option is disabled, clients on the same VLAN, SSID or subnet are
Layer 2
Communication
802.1X Version
Management from
Wireless Clients
Syslog to Remote
Server
Syslog Server
Address / Port
not allowed to communicate directly via the Layer 2 Protocol(s). Traffic is passed to upper communication layer(s).
With this option enabled, clients on the same VLAN are allowed to communicate with each other directly. (Windows network resources browsing will be possible.)
By default, the setting is enabled.
This setting selects between v1 or v2 of the 802.1x EAPOL. When v1 is selected, both v1 and v2 clients can associate with the access
point. However, when v2 is selected, only v2 clients can associate with the access point.
Most modern wireless clients support v2. In the event that there are stations that do not support v2, select the option v1.
By default, the value of the setting is v2.
With this option enabled, Web Admin is accessible from the Wi-Fi segment of MultiAP 700G.
By default, it is enabled.
With this option enabled, logs are sent to an external Syslog server. By default, this option is disabled.
When the Syslog to Remote Server is enabled, this option is enabled for entering the Syslog server IP address and port number.
By default, the port number is 514.
Security Settings
Loading...
+ 29 hidden pages