Netgear WC7600v1 - ProSAFE Wireless Controller ユーザーズマニュアル
Manage Security Profiles and Profile Groups
123
ProSAFE Wireless Controller
Note:
You can configure profiles to function with different authentication
servers. For example, you could set up a guest profile with no
authentication, an engineering profile that uses external RADIUS
authentication, and a marketing profile that uses external LDAP
authentication. You can also use additional external RADIUS servers
in other profiles.
servers. For example, you could set up a guest profile with no
authentication, an engineering profile that uses external RADIUS
authentication, and a marketing profile that uses external LDAP
authentication. You can also use additional external RADIUS servers
in other profiles.
•
Captive portals and guest portals. If you want to use captive portals, guest portals, or
both, first configure the portals:
both, first configure the portals:
-
-
For more complex networks, configure additional portals on the advanced Captive
Portal Settings page (see
Portal Settings page (see
After you configure portals, you can then assign any portal to a security profile in a basic
profile group or advanced profile group.
•
MAC authentication. If you want to use a MAC access control list (ACL) to control
access of WiFi clients, first create one or more MAC ACLs:
access of WiFi clients, first create one or more MAC ACLs:
-
Configure the basic MAC ACL on the basic MAC Authentication page (see
-
For more complex networks, configure additional MAC ACLs on the advanced MAC
Authentication page (see
After you configure one or more MAC ACLs, you can then assign any MAC ACL to a
security profile in a basic profile group or advanced profile group.
•
Cloning profiles. For faster setup, you can clone a profile and rename it. Cloning copies
all settings except for the name and SSID.
all settings except for the name and SSID.
Basic and Advanced Security Configuration Concepts
The basic security configuration model (Configuration > Security > Basic) does not apply
strictly to the basic profile group, nor does the advanced security configuration model
(Configuration > Security > Advanced) apply strictly to advanced profile groups. The
reason is that you apply an authentication server and a MAC ACL to an individual profile and
not to a profile group.
strictly to the basic profile group, nor does the advanced security configuration model
(Configuration > Security > Advanced) apply strictly to advanced profile groups. The
reason is that you apply an authentication server and a MAC ACL to an individual profile and
not to a profile group.
•
Basic security settings. You can apply the following security settings to any profile,
whether in the basic profile group or in an advanced profile group:
whether in the basic profile group or in an advanced profile group:
-
Basic MAC authentication (the MAC ACL group that is called basic)
-
Basic authentication server (the RADIUS server that is called basic-Auth or the LDAP
server that is called basic-LDAP)
server that is called basic-LDAP)