www.edge-core.comUser GuidePowered by AcctonWA6202AWA6202AM2.4 GHz / 5 GHz Dual Band OutdoorAccess Point / Bridge
vi• L’appareil fonctionne à une tension extrêmement basse de sécurité qui est conforme à la norme IEC 60950. Ces conditions ne sont maintenues que si
System Configuration6-466Configuring SNMPv3 UsersThe access point allows up to 10 SNMP v3 users to be configured. Each user must be defined by a uniqu
SNMP6-476CLI Commands for Configuring SNMPv3 Users – Use the snmp-server engine-id command to define the SNMP v3 engine before assigning users to grou
System Configuration6-486Configuring SNMPv3 Trap FiltersSNMP v3 users can be configured to receive notification messages from the access point. An SNM
SNMP6-496To add more subtree IDs to the filter, return to the SNMP Trap Filters page and click the Edit button. In the Edit page, click the New button
System Configuration6-506CLI Commands for Configuring SNMPv3 Trap Filters – To create a notification filter, use the snmp-server filter command from t
SNMP6-516When you click on the New or Edit button in the SNMP Targets page, a new page opens where the target parameters are configured. Define the pa
System Configuration6-526Radio InterfaceThe IEEE 802.11a and 802.11g interfaces include configuration options for radio signal characteristics and wir
Radio Interface6-536Radio Settings A (802.11a)The IEEE 802.11a interface operates within the 5 GHz band, at up to 54 Mbps in normal mode or up to 108
System Configuration6-546Configuring VAP Radio SettingsTo configure VAP radio settings, select the Radio Settings page.
Radio Interface6-556Default VLAN ID – The VLAN ID assigned to wireless clients associated to the VAP interface that are not assigned to a specific VLA
viiBitte unbedingt vor dem Einbauen des Geräts die folgenden Sicherheitsanweisungen durchlesen (Germany):WARNUNG: Die Installation und der Ausbau des
System Configuration6-566CLI Commands for the Configuring the VAPs – From the global configuration mode, enter the interface wireless a command to acc
Radio Interface6-576The access point can be configured to periodically scan all radio channels and find other access points within range. A database o
System Configuration6-586using the rogue-ap scan command. To view the database of detected access points, use the show rogue-ap command from the Exec
Radio Interface6-596Configuring Common Radio SettingsTo configure common radio settings, select the Radio Settings page, and scroll down to below the
System Configuration6-606Radio Channel – The radio channel that the access point uses to communicate with wireless clients. When multiple access point
Radio Interface6-616are within regulatory power limits for the country of operation. (Default: Integrated antenna; ID: 0000. If there is no integrated
System Configuration6-626Antenna Location – Selects the mounting location of the antenna in use; either “Indoor” or “Outdoor.” Selecting the correct l
Radio Interface6-636try setting the fragment size to send smaller fragments. This will speed up the retransmission of smaller frames. However, it is m
System Configuration6-646CLI Commands for the Common Radio Settings – From the global configuration mode, enter the interface wireless a command to ac
Radio Interface6-656types of traffic, WMM allows the priority levels to be configured to match any network-wide QoS policy. WMM also specifies a proto
viiiStromkabel. Dies muss von dem Land, in dem es benutzt wird geprüft werden: U.S.A und Canada Der Cord muß das UL gepruft und war das CSA beglaubigt
System Configuration6-666Figure 6-1. WMM Backoff Wait TimesFor high-priority traffic, the AIFSN and CW values are smaller. The smaller values equate
Radio Interface6-676WMM – Sets the WMM operational mode on the access point. When enabled, the parameters for each AC queue will be employed on the ac
System Configuration6-686CLI Commands for WMM – Enter interface wireless mode and type wmm required for clients that want to associate with the access
Radio Interface6-696To view the current 802.11a radio settings for the VAP interface, use the show interface wireless a [0-3] command.Enterprise AP#sh
System Configuration6-706Radio Settings G (802.11g)The IEEE 802.11g standard operates within the 2.4 GHz band at up to 54 Mbps. Also note that because
Radio Interface6-716Most of the 802.11g commands are identical to those used by the 802.11a interface. For information on the these commands, refer to
System Configuration6-726Radio Channel – The radio channel that the access point uses to communicate with wireless clients. When multiple access point
Radio Interface6-736CLI Commands for the 802.11g Wireless Interface – From the global configuration mode, enter the interface wireless g command to ac
System Configuration6-746A summary of wireless security considerations is listed in the following table.Note: You must enable data encryption through
Radio Interface6-756The access point can simultaneously support clients using various different security mechanisms. The configuration for these secur
ixTable of ContentsChapter 1: Introduction 1-1Radio Characteristics 1-1Package Checklist 1-2Hardware Description 1-2LED Indicators 1-3Integrated
System Configuration6-766Dynamic WEP and 802.1x WPAInterface Detail Settings:Authentication: WPAEncryption: EnableWPA Configuration: SupportedCipher S
Radio Interface6-776Note: If you choose to configure RADIUS MAC authentication together with 802.1X, the RADIUS MAC address authentication occurs prio
System Configuration6-786Enable – Enables radio communications on the VAP interface. (Default: Disabled)Note: You must first enable VAP interface 0 be
Radio Interface6-796• Alphanumeric: Enter keys as 5 alphanumeric characters for 64 bit keys, 13 alphanumeric characters for 128 bit keys, or 16 alphan
System Configuration6-806Note: To use 802.1X on wireless clients requires a network card driver and 802.1X client software that supports the EAP authe
Radio Interface6-816Enterprise AP(config)#interface wireless g 7-88Enter Wireless configuration commands, one per line.Enterprise AP(if-wireless g)#ke
System Configuration6-826CLI Commands for WEP over 802.1X Security – Use the vap command to access each VAP interface to configure the security settin
Radio Interface6-836to enable data encryption. To view the current security settings, use the show interface wireless a [0-3] or show interface wirele
System Configuration6-846the access point and all wireless clients. The PSK mode uses the same TKIP packet encryption and key management as WPA in the
Radio Interface6-856information form a Security Association that the access point names and holds in a cache. • Preauthentication: Each time a client
xContentsMounting to a Wall 4-4Connect External Antennas 4-5Connect Cables to the Unit 4-6Connect the Power Injector 4-7Align Antennas 4-8Chapter
System Configuration6-866The WPA configuration parameters are described below:Encryption – You must enable data encryption in order to enable all type
Radio Interface6-876The configuration settings for WPA are summarized below:CLI Commands for WPA Using Pre-shared Key Security – From the VAP interfac
System Configuration6-886CLI Commands for WPA Over 802.1X Security – From the VAP interface configuration mode, use the auth wpa required command to s
Radio Interface6-896Open the Security page, and click More for one of the VAP interfaces.You can enable 802.1X as optionally supported or as required
System Configuration6-906CLI Commands for 802.1X Authentication – Use the 802.1X supported command from the VAP interface mode to enable 802.1X authen
Status Information6-916AP System Configuration – The AP System Configuration table displays the basic system configuration settings:• System Up Time:
System Configuration6-926• Bootrom Version: Show the bootrom version number.• Hardware Version: Shows the hardware version number.AP Wireless Configur
Status Information6-936Station StatusThe Station Status window shows the wireless clients currently associated with the access point.The Station Confi
System Configuration6-946• Static – The client is using static WEP keys for encryption.CLI Commands for Displaying Station Status – To view status of
Status Information6-956Event LogsThe Event Logs window shows the log messages generated by the access point and stored in memory.The Event Logs table
xiContentsChapter 7: Command Line Interface 7-1Using the Command Line Interface 7-1Accessing the CLI 7-1Console Connection 7-1Telnet Connection 7
System Configuration6-966CLI Commands for Displaying the Logging Status – From the global configuration mode, use the show logging command.CLI Command
Status Information6-976STP StatusThe STP Status window shows the STP status for each port.• ID: Displays the port ID number.• Priority: The priority d
System Configuration6-986
7-1Chapter 7: Command Line InterfaceUsing the Command Line InterfaceAccessing the CLIWhen accessing the management interface for the over a direct con
Command Line Interface7-27If your corporate network is connected to another network outside your office or to the Internet, you need to apply for a re
Entering Commands7-37Command CompletionIf you terminate input with a Tab key, the CLI will print the remaining characters of a partial keyword up to t
Command Line Interface7-47Partial Keyword LookupIf you terminate a partial keyword with a question mark, alternatives that match the initial letters a
Entering Commands7-57Exec CommandsWhen you open a new console session on an access point, the system enters Exec command mode. Only a limited number o
Command Line Interface7-67Command Line ProcessingCommands are not case sensitive. You can abbreviate commands and parameters as long as they contain e
General Commands7-77The access mode shown in the following tables is indicated by these abbreviations: Exec (Executive Mode), GC (Global Configuration
xiiContentsshow version 7-24show config 7-24show hardware 7-28System Logging Commands 7-28logging on 7-29logging host 7-29logging console 7-30l
Command Line Interface7-87configureThis command activates Global Configuration mode. You must enter this mode to modify most of the settings on the ac
General Commands7-97Example This example shows how to return to the Exec mode from the Interface Configuration mode, and then quit the CLI session:pin
Command Line Interface7-107resetThis command restarts the system or restores the factory default settings.Syntax reset <board | configuration> •
System Management Commands7-117show lineThis command displays the console port’s configuration settings.Command Mode ExecExampleThe console port setti
Command Line Interface7-127countryThis command configures the access point’s country code, which identifies the country of operation and sets the auth
System Management Commands7-137Default Setting US - for units sold in the United States99 (no country set) - for units sold in other countriesCommand
Command Line Interface7-147• The available Country Code settings can be displayed by using the country ? command.Example promptThis command customizes
System Management Commands7-157Command Mode Global ConfigurationExample usernameThis command configures the user name for management access.Syntax use
Command Line Interface7-167ip ssh-server enable This command enables the Secure Shell server. Use the no form to disable the server.Syntax ip ssh-serv
System Management Commands7-177ip telnet-server enable This command enables the Telnet server. Use the no form to disable the server.Syntax ip telnet-
xiiiContentsdelete 7-57dir 7-58show bootfile 7-58RADIUS Client 7-59radius-server address 7-59radius-server port 7-60radius-server key 7-60radius-
Command Line Interface7-187ip http serverThis command allows this device to be monitored or configured from a browser. Use the no form to disable this
System Management Commands7-197ip https portUse this command to specify the UDP port number used for HTTPS/SSL connection to the access point’s Web in
Command Line Interface7-207Syntax ip https serverno ip https serverDefault Setting EnabledCommand Mode Global ConfigurationCommand Usage • Both HTTP a
System Management Commands7-217APmgmtIPThis command specifies the client IP addresses that are allowed management access to the access point through v
Command Line Interface7-227APmgmtUIThis command enables and disables management access to the access point through SNMP, Telnet and web interfaces.Cau
System Management Commands7-237show systemThis command displays basic system configuration settings.Default SettingNoneCommand Mode ExecExampleEnterpr
Command Line Interface7-247show versionThis command displays the software version for the system.Command Mode ExecExample show configThis command disp
System Management Commands7-257Hardware Version Information===========================================Hardware version R01A===========================
Command Line Interface7-267Logging Information=====================================================Syslog State : DisabledLogging Consol
System Management Commands7-277 dot11InterfaceAGFail Enabled dot11InterfaceBFail Enabled dot11StationAssociation Enabled dot11Sta
xivContentsbridge stp forwarding-delay 7-84bridge stp hello-time 7-84bridge stp max-age 7-85bridge stp priority 7-85bridge-link path-cost 7-86bri
Command Line Interface7-287show hardwareThis command displays the hardware version of the system.Command Mode ExecExample System Logging CommandsThese
System Logging Commands7-297logging onThis command controls logging of error messages; i.e., sending debug or error messages to memory. The no form di
Command Line Interface7-307Example logging consoleThis command initiates logging of error messages to the console. Use the no form to disable logging
System Logging Commands7-317Command Usage Messages sent include the selected level down to Emergency level.Example logging facility-typeThis command s
Command Line Interface7-327Command Usage The command specifies the facility type tag sent in syslog messages. (See RFC 3164.) This type has no effect
System Clock Commands7-337show event-logThis command displays log messages stored in the access point’s memory.Syntaxshow event-logCommand Mode ExecEx
Command Line Interface7-347sntp-server ipThis command sets the IP address of the servers to which SNTP time requests are issued. Use the this command
System Clock Commands7-357Command Mode Global ConfigurationCommand Usage The time acquired from time servers is used to record accurate dates and time
Command Line Interface7-367sntp-server daylight-savingThis command sets the start and end dates for daylight savings time. Use the no form to disable
System Clock Commands7-377Command Usage This command sets the local time zone relative to the Coordinated Universal Time (UTC, formerly Greenwich Mean
xvContentsrogue-ap authenticate 7-115rogue-ap duration 7-116rogue-ap interval 7-116rogue-ap scan 7-117show rogue-ap 7-118Wireless Security Comman
Command Line Interface7-387DHCP Relay CommandsDynamic Host Configuration Protocol (DHCP) can dynamically allocate an IP address and other configuratio
DHCP Relay Commands7-397dhcp-relayThis command configures the primary and secondary DHCP server addresses.Syntaxdhcp-relay <primary | secondary>
Command Line Interface7-407SNMP CommandsControls access to this access point from management stations using the Simple Network Management Protocol (SN
SNMP Commands7-417snmp-server communityThis command defines the community access string for the Simple Network Management Protocol. Use the no form to
Command Line Interface7-427Command Mode Global ConfigurationExample Related Commandssnmp-server location (7-42)snmp-server locationThis command sets t
SNMP Commands7-437Command Mode Global ConfigurationCommand Usage • This command enables both authentication failure notifications and link-up-down not
Command Line Interface7-447Command Usage The snmp-server host command is used in conjunction with the snmp-server enable server command to enable SNMP
SNMP Commands7-457- iappStationRoamedTo - A client station has roamed to another access point (identified by its IP address).- localMacAddrAuthFail -
Command Line Interface7-467Command Mode Global ConfigurationCommand Usage • This command is used in conjunction with the snmp-server user command. • E
SNMP Commands7-477- RWAuth - A read/write group using authentication, but no data encryption. Users in this group send SNMP messages that use an MD5 k
xviContentsAppendix C: Specifications C-1General Specifications C-1Sensitivity C-4Transmit Power C-5Antenna Specifications C-618 dBi High Gain Di
Command Line Interface7-487snmp-server targetsThis command configures SNMP v3 notification targets. Use the no form to delete an SNMP v3 target.Syntax
SNMP Commands7-497snmp-server filterThis command configures SNMP v3 notification filters. Use the no form to delete an SNMP v3 filter or remove a subt
Command Line Interface7-507snmp-server filter-assignmentsThis command assigns SNMP v3 notification filters to targets. Use the no form to remove an SN
SNMP Commands7-517Example show snmp usersThis command displays the SNMP v3 users and settings.Syntax show snmp usersCommand ModeExecExample show snmp
Command Line Interface7-527Example show snmp targetThis command displays the SNMP v3 notification target settings.Syntaxshow snmp targetCommand Mode E
SNMP Commands7-537show snmp filter-assignmentsThis command displays the SNMP v3 notification filter assignments.Syntaxshow snmp filter-assignmentsComm
Command Line Interface7-547show snmpThis command displays the SNMP configuration settings.Command Mode ExecExampleEnterprise AP#show snmpSNMP Informat
Flash/File Commands7-557Flash/File CommandsThese commands are used to manage the system code or configuration files.bootfileThis command specifies the
Command Line Interface7-567copy This command copies a boot file, code image, or configuration file between the access point’s flash memory and a FTP/T
Flash/File Commands7-577The following example shows how to download a configuration file: deleteThis command deletes a file or image.Syntaxdelete <
1-1Chapter 1: IntroductionThe Dual-band Outdoor Access Point / Bridge system consists of two models that provide point-to-point or point-to-multipoint
Command Line Interface7-587dirThis command displays a list of files in flash memory.Command Mode ExecCommand Usage File information is shown below:Exa
RADIUS Client7-597RADIUS ClientRemote Authentication Dial-in User Service (RADIUS) is a logon authentication protocol that uses software running on a
Command Line Interface7-607Command Mode Global ConfigurationExample radius-server portThis command sets the RADIUS server network port. Syntaxradius-s
RADIUS Client7-617radius-server retransmitThis command sets the number of retries. Syntaxradius-server [secondary] retransmit number_of_retries• secon
Command Line Interface7-627radius-server port-accountingThis command sets the RADIUS Accounting server network port. Syntaxradius-server [secondary] p
RADIUS Client7-637Example radius-server radius-mac-formatThis command sets the format for specifying MAC addresses on the RADIUS server.Syntaxradius-s
Command Line Interface7-647show radiusThis command displays the current settings for the RADIUS server.Default SettingNoneCommand Mode ExecExample Ent
802.1X Authentication7-657802.1X AuthenticationThe access point supports IEEE 802.1X access control for wireless clients. This control feature prevent
Command Line Interface7-667Command ModeGlobal ConfigurationCommand Usage• When 802.1X is disabled, the access point does not support 802.1X authentica
802.1X Authentication7-677802.1x-supplicant userThis command sets the user name and password used for authentication of the access point when operatin
Introduction1-21Package ChecklistThe Dual-band Outdoor Access Point / Bridge package includes:• One Wireless Dual-band Access Point (WA6202A or WA620
Command Line Interface7-687show authenticationThis command shows all 802.1X authentication settings, as well as the address filter table.Command ModeE
MAC Address Authentication7-697MAC Address Authentication Use these commands to define MAC authentication on the access point. For local MAC authentic
Command Line Interface7-707Related Commandsaddress filter entry (7-70)802.1x-supplicant user (7-67)address filter entryThis command enters a MAC addre
MAC Address Authentication7-717Command ModeGlobal ConfigurationExampleRelated Commands802.1x-supplicant user (7-67)mac-authentication serverThis comma
Command Line Interface7-727Default0 (disabled)Command ModeGlobal ConfigurationExampleFiltering CommandsThe commands described in this section are used
Filtering Commands7-737filter local-bridgeThis command disables communication between wireless clients. Use the no form to disable this filtering.Synt
Command Line Interface7-747filter uplink enableThis command enables filtering of MAC addresses from the Ethernet port.Syntax[no] filter uplink enableD
Filtering Commands7-757Global ConfigurationCommand UsageThis command is used in conjunction with the filter ethernet-type protocol command to determin
Command Line Interface7-767show filtersThis command shows the filter options and protocol entries in the filter table. Command ModeExecExampleWDS Brid
WDS Bridge Commands7-777bridge modeThis command selects between Master and Slave mode.Syntaxbridge mode <master | slave>• master - Operates as a
LED Indicators1-31LED IndicatorsThe access point includes eight status LED indicators, as indicated in the following figure. The following table descr
Command Line Interface7-787configured as the “root bridge” in the wireless network. The root bridge is the unit connected to the main core of the wire
WDS Bridge Commands7-797Default Setting NoneCommand Mode Interface Configuration (Wireless)Command Usage Every bridge (except the root bridge) in the
Command Line Interface7-807bridge dynamic-entry age-timeThis command sets the time for aging out dynamic entries in the WDS forwarding table.Syntaxbri
WDS Bridge Commands7-817show bridge filter-entryThis command displays current entries in the WDS forwarding table.Command Mode ExecExample show bridge
Command Line Interface7-827Example Enterprise AP#show bridge link wireless aInterface Wireless A WDS Information====================================AP
Spanning Tree Commands7-837Spanning Tree CommandsThe commands described in this section are used to set the MAC address table aging time and spanning
Command Line Interface7-847bridge stp forwarding-delayUse this command to configure the spanning tree bridge forward time globally for the wireless br
Spanning Tree Commands7-857Example bridge stp max-ageUse this command to configure the spanning tree bridge maximum age globally for the wireless brid
Command Line Interface7-867Command Mode Global ConfigurationCommand Usage Bridge priority is used in selecting the root device, root port, and designa
Spanning Tree Commands7-877Default Setting 128Command Mode Interface ConfigurationCommand Usage • This command defines the priority for the use of a p
Introduction1-41The 11a and 11b/g LEDs operate in two display modes, which are configurable through the management interface. The RSSI mode is for ali
Command Line Interface7-887Ethernet Interface Commands The commands described in this section configure connection parameters for the Ethernet port an
Ethernet Interface Commands7-897dns serverThis command specifies the address for the primary or secondary domain name server to be used for name-to-ad
Command Line Interface7-907Command Mode Interface Configuration (Ethernet)Command Usage • DHCP is enabled by default. To manually configure a new IP a
Ethernet Interface Commands7-917• When you use this command, the access point will begin broadcasting DHCP client requests. The current IP address (i.
Command Line Interface7-927shutdown This command disables the Ethernet interface. To restart a disabled interface, use the no form.Syntax shutdownno s
Wireless Interface Commands7-937Example Wireless Interface CommandsThe commands described in this section configure connection parameters for the wire
Command Line Interface7-947beacon-interval Configures the rate at which beacon signals are transmitted from the access pointIC-W 7-103dtim-period Conf
Wireless Interface Commands7-957interface wirelessThis command enters wireless interface configuration mode.Syntaxinterface wireless <a | g>• a
Command Line Interface7-967speedThis command configures the maximum data rate at which the access point transmits unicast packets. Syntaxspeed <spe
Wireless Interface Commands7-977Command Usage • The normal 802.11a wireless operation mode provides connections up to 54 Mbps. Turbo Mode is an enhanc
Integrated High-Gain Antenna1-51Integrated High-Gain AntennaThe WA6202A unit includes an integrated high-gain (17 dBi) flat-panel antenna for 5 GHz op
Command Line Interface7-987channelThis command configures the radio channel through which the access point communicates with wireless clients. Syntaxc
Wireless Interface Commands7-997Default Setting fullCommand Mode Interface Configuration (Wireless)Command Usage • The “min” keyword indicates minimum
Command Line Interface7-1007ExamplepreambleThis command sets the length of the signal preamble that is used at the start of a 802.11b/g data transmiss
Wireless Interface Commands7-1017antenna controlThis command selects the use of two diversity antennas or a single antenna for the radio interface.Syn
Command Line Interface7-1027Command ModeInterface Configuration (Wireless)Command Usage• See “External Antenna Options” on page 1-5 for a list of the
Wireless Interface Commands7-1037beacon-interval This command configures the rate at which beacon signals are transmitted from the access point. Synta
Command Line Interface7-1047will save all broadcast/multicast frames for the Basic Service Set (BSS) and forward them after every second beacon.• Usin
Wireless Interface Commands7-1057rts-thresholdThis command sets the packet size threshold at which a Request to Send (RTS) signal must be sent to the
Command Line Interface7-1067super-a This command enables Atheros proprietary Super A performance enhancements. Use the no form to disable this functio
Wireless Interface Commands7-1077description This command adds a description to a the wireless interface. Use the no form to remove the description.Sy
Introduction1-61Ethernet PortThe wireless bridge has one 10BASE-T/100BASE-TX 8-pin DIN port that connects to the power injector module using the inclu
Command Line Interface7-1087closed-systemThis command prohibits access to clients without a pre-configured SSID. Use the no form to disable this featu
Wireless Interface Commands7-1097assoc-timeout-intervalThis command configures the idle time interval (when no frames are sent) after which the client
Command Line Interface7-1107Default Setting Interface enabledCommand Mode Interface Configuration (Wireless-VAP)Command UsageYou must first enable VAP
Wireless Interface Commands7-1117show interface wirelessThis command displays the status for the wireless interface.Syntaxshow interface wireless <
Command Line Interface7-1127----------------802.1x---------------------------------------------------802.1x : DISABLEDBroadca
Wireless Interface Commands7-1137show stationThis command shows the wireless clients associated with the access point.Command Mode ExecExample Enterpr
Command Line Interface7-1147Rogue AP Detection CommandsA “rogue AP” is either an access point that is not authorized to participate in the wireless ne
Rogue AP Detection Commands7-1157• A “rogue AP” is either an access point that is not authorized to participate in the wireless network, or an access
Command Line Interface7-1167rogue-ap durationThis command sets the scan duration for detecting access points.Syntaxrogue-ap duration <milliseconds&
Rogue AP Detection Commands7-1177Example Related Commandsrogue-ap duration (7-116)rogue-ap scanThis command starts an immediate scan for access points
Grounding Point1-71The power injector module automatically adjusts to any AC voltage between 100-240 volts at 50 or 60 Hz. No voltage range settings a
Command Line Interface7-1187show rogue-apThis command displays the current rogue AP database.Command Mode ExecExample Wireless Security CommandsThe co
Wireless Security Commands7-1197authThis command configures authentication for the VAP interface.Syntaxauth <open-system | shared-key | wpa | wpa-p
Command Line Interface7-1207• To use WEP shared-key authentication, set the authentication type to “shared-key” and define at least one static WEP key
Wireless Security Commands7-1217ExampleRelated Commandsencryption (7-121)key (7-122)encryption This command enables data encryption for wireless commu
Command Line Interface7-1227key This command sets the keys used for WEP encryption. Use the no form to delete a configured key.Syntaxkey <index>
Wireless Security Commands7-1237transmit-keyThis command sets the index of the key to be used for encrypting data frames for broadcast or multicast tr
Command Line Interface7-1247cipher-suite This command defines the cipher algorithm used to encrypt the global key for broadcast and multicast traffic
Wireless Security Commands7-1257• AES-CCMP (Advanced Encryption Standard Counter-Mode/CBCMAC Protocol): WPA2 is backward compatible with WPA, includin
Command Line Interface7-1267Example wpa-pre-shared-key This command defines a Wi-Fi Protected Access (WPA/WPA2) Pre-shared-key.Syntaxwpa-pre-shared-ke
Wireless Security Commands7-1277Command Mode Interface Configuration (Wireless-VAP)Command Usage • WPA2 provides fast roaming for authenticated client
Introduction1-81System ConfigurationAt each location where a unit is installed, it must be connected to the local network using the power injector mod
Command Line Interface7-1287known to be already authenticated, so it proceeds directly to key exchange and association.• To support pre-authentication
Link Integrity Commands7-1297link-integrity ping-detectThis command enables link integrity detection. Use the no form to disable link integrity detect
Command Line Interface7-1307link-integrity ping-intervalThis command configures the time between each Ping sent to the link host. Syntaxlink-integrity
Link Integrity Commands7-1317Command Mode Global ConfigurationExample show link-integrityThis command displays the current link integrity configuratio
Command Line Interface7-1327IAPP CommandsThe command described in this section enables the protocol signaling required to ensure the successful handov
VLAN Commands7-1337VLAN CommandsThe access point can enable the support of VLAN-tagged traffic passing between wireless clients and the wired network.
Command Line Interface7-1347• Traffic entering the Ethernet port must be tagged with a VLAN ID that matches the access point’s native VLAN ID, or with
WMM Commands7-1357Default Setting 1Command Mode Interface Configuration (Wireless-VAP)Command Usage • To implement the default VLAN ID setting for VAP
Command Line Interface7-1367wmmThis command sets the WMM operational mode on the access point. Use the no form to disable WMM.Syntax[no] wmm <suppo
WMM Commands7-1377interpretability with other wired network QoS policies. While the four ACs are specified for specific types of traffic, WMM allows t
2-1Chapter 2: Network Configuration The Dual-band Outdoor Access Point / Bridge system provides access point and bridging services through either the
Command Line Interface7-1387• admission_control - The admission control mode for the access category. When enabled, clients are blocked from using the
A-1Appendix A: TroubleshootingCheck the following items before you contact local Technical Support.1. If wireless clients cannot access the network, c
TroubleshootingA-2A3. If you cannot access the on-board configuration program via a serial port connection:• Be sure you have set the terminal emulato
B-1Appendix B: Cables and PinoutsTwisted-Pair Cable Assignments For 10/100BASE-TX connections, a twisted-pair cable must have two pairs of wires. Each
Cables and PinoutsB-2BStraight-Through WiringBecause the 10/100 Mbps port on the access point uses an MDI pin configuration, you must use “straight-th
Twisted-Pair Cable AssignmentsB-3BCrossover WiringBecause the 10/100 Mbps port on the access point uses an MDI pin configuration, you must use “crosso
Cables and PinoutsB-4B8-Pin DIN to RJ-45 Cable WiringTo construct an extended Ethernet cable to connect from the power injector’s RJ-45 Output port to
C-1Appendix C: SpecificationsGeneral SpecificationsMaximum Channels802.11a:US & Canada: 13 (normal mode), 5 (turbo mode)Japan: 4 (normal mode), 1
SpecificationsC-2COperating Frequency802.11a:5.15 ~ 5.25 GHz (lower band) US/Canada, Japan5.25 ~ 5.35 GHz (middle band) US/Canada5.725 ~ 5.825 GHz (up
General SpecificationsC-3CWireless Radio/Regulatory CertificationETSI 300 328 (11b/g), 301 893 (11a Full range), 301 489 (DC power)FCC Part 15C 15.247
User Guide2.4 GHz / 5 GHz Wireless Access Point/BridgeWA6202AIEEE 802.11g and 802.11a Dual-band Access Point / Bridgewith Integrated 5 GHz High-Gain A
Network Configuration2-22Infrastructure Wireless LANThe access point function of the wireless bridge provides access to a wired LAN for 802.11a/b/g wi
SpecificationsC-4CSensitivityTable C-1 Sensitivity 802.11aIEEE 802.11a Sensitivity (GHz - dBm)Modulation/Rates 5.15-5.250 5.25-5.350 5.50-5.700 5.725
Transmit PowerC-5CTransmit Power Table C-4 Transmit Power 802.11aIEEE 802.11a Maximum Output Power (GHz - dBm)Data Rate 5.15-5.250 5.25-5.350 5.50-5.
SpecificationsC-6CAntenna Specifications18 dBi High Gain Directional Panel (2.4GHz)Model NumberACC04-050090Frequency Range2.4 - 2.5 GHzGain18 dBiVSWR1
Antenna SpecificationsC-7C8 dBi Omnidirectional (2.4 GHz)Model NumberACC04-05028AFrequency Range2.400~2.500 GHzGain8 dBiVSWR2.0 : 1 maxPolarizationLin
SpecificationsC-8C10 dBi Sector (2.4 GHz)Model NumberACC04-053830AFrequency range2.4~2.5 GHzGain10 dBiVSWR1.5 : 1 maxPolarizationLinear, verticalHPBWL
Antenna SpecificationsC-9C8 dBi Omnidirectional (2.4 GHz)Model NumberACC04-05427AFrequency range2.4~2.5 GHzGain8 dBiVSWR2.0 : 1 maxPolarizationLinear,
SpecificationsC-10C8 dBi Omnidirectional (5 GHz)Model NumberACC04-090380Frequency range5.47~5.875 GHzGain8 dBiVSWR2.0 : 1 maxPolarizationLinear, verti
Antenna SpecificationsC-11C12.5~13.5 dBi 60-Degree Sector (5 GHz)Model NumberACC04-200010Frequency range4.9~5.875 GHzGain12.5~13.5 dBiVSWR2.0 : 1 maxP
SpecificationsC-12C8 dBi Omnidirectional (5 GHz)Model NumberACC04-200180Frequency Range5.5~5.825 GHzGain8 dBiVSWR2.0 : 1 maxPolarizationLinear, vertic
Antenna SpecificationsC-13C23 dBi High-Gain Panel (5 GHz)Model NumberACC04-20212AFrequency range5.725 ~5.875 GHzGain23 dBiVSWR1.5 : 1 maxPolarizationL
Access Point Topologies2-32Infrastructure Wireless LAN for Roaming Wireless PCsThe Basic Service Set (BSS) defines the communications domain for each
SpecificationsC-14C8 dBi Omnidirectional (5 GHz)Model NumberACC04-202130Frequency range5.15~ 5.35 GHzGain8 dBiVSWR2.0 : 1 maxPolarizationLinear, verti
Antenna SpecificationsC-15C8 dBi Omnidirectional (5 GHz)Model NumberACC04-200180Frequency range4.9~5.35 GHzGain8 dBiVSWR2.0 : 1 maxPolarizationLinear,
SpecificationsC-16C
D-1D-1Appendix D: Montieren der BridgeDie Bridge kann auf folgenden Oberflächentypen montiert werden:•Mast• Wand oder elektrischer Kasten (NEMA Enclos
Montieren der BridgeD-2D3. Stecken Sie die Ränder der V-förmigen Halterung in die Aussparungen in der rechteckigen Platte und ziehen Sie die Muttern f
Verwenden der Halterung für WandmontageD-3D5. Befestigen Sie die Bridge mit Halter an der am Mast angebrachten Platte.Befestigen Sie die drahtlose Bri
Montieren der BridgeD-4D2. Halten Sie die Halterung an der gewünschten Stelle an und markieren Sie die Positionen der drei Löcher für die Montageschra
Anschließen der externen AntennenD-5D5. Verbinden Sie das Ethernet-Kabel (und das Netzkabel, falls erforderlich) mit den Anschlüssen auf der Vordersei
Montieren der BridgeD-6D\Anschließen der Kabel an das Gerät1. Verbinden Sie das Ethernet-Kabel mit dem Ethernet-Port der drahtlosen Bridge.2. Umwickel
Anschließen des PoE InjectorsD-7DAnschließen des PoE InjectorsSo schließen Sie die drahtlose Bridge an eine Stromquelle an:Achtung: Installieren Sie
Network Configuration2-42Bridge Link TopologiesThe IEEE 802.11 standard defines a WIreless Distribution System (WDS) for bridge connections between BS
Montieren der BridgeD-8D1. Stecken Sie den Netzleitungsstecker direkt in den standardmäßigen Netzanschluss des Injector-Moduls.2. Verbinden Sie das an
Glossary-1Glossary10BASE-TIEEE 802.3 specification for 10 Mbps Ethernet over two pairs of Category 3 or better UTP cable.100BASE-TXIEEE 802.3u specifi
Glossary-2GlossaryBroadcast KeyBroadcast keys are sent to stations using 802.1X dynamic keying. Dynamic broadcast key rotation is often used to allow
Glossary-3GlossaryIEEE 802.11bA wireless standard that supports wireless communications in the 2.4 GHz band using Direct Sequence Spread Spectrum (DSS
Glossary-4GlossaryPower over Ethernet (PoE)A specification for providing both power and data to low-power network devices using a single Category 5 Et
Glossary-5GlossaryTemporal Key Integrity Protocol (TKIP)A data encryption method designed as a replacement for WEP. TKIP avoids the problems of WEP st
Glossary-6Glossary
Index-1Numerics802.11g 7-95AAES 6-84authentication 6-12cipher suite 6-86, 7-120closed system 7-108configuring 6-12MAC address 6-13, 7-69, 7-70type 6-7
IndexIndex-2firmwaredisplaying version 6-30, 7-24upgrading 6-29, 6-31, 7-56fragmentation 7-104Ggateway address 5-2, 6-6, 7-1, 7-89Hhardware version, d
IndexIndex-3RSSI BNC 1-7RTSthreshold 6-63, 7-105SSecure Socket Layer See SSLsecurity, options 6-73session key 6-88shared key 6-79, 7-122Simple Network
Bridge Link Topologies2-52Point-to-Multipoint ConfigurationA WA6202AM wireless bridge can use an omnidirectional or sector antenna to connect to as ma
IndexIndex-4
Model Number: WA6202A / WA6202AMPub. Number: 149100034900E E112006-DT-R01
Network Configuration2-62
3-1Chapter 3: Bridge Link PlanningThe Dual-band Outdoor Access Point / Bridge supports fixed point-to-point or point-to-multipoint wireless links. A s
Bridge Link Planning3-23If there are obstacles in the radio path, there may still be a radio link but the quality and strength of the signal will be a
Radio Path Planning3-33.Note that to avoid any obstruction along the path, the height of the object must be added to the minimum clearance required fo
Bridge Link Planning3-43(7.5 ft) mast or pole must be contructed on its roof to achieve the required antenna height. Building B is only three stories
Ethernet Cabling3-53Radio InterferenceThe avoidance of radio interference is an important part of wireless link planning. Interference is caused by ot
WA6202AWA6202AMF4.3.3.6 E112006-DT-R01149100034900E
Bridge Link Planning3-63• Determine if conduits, bracing, or other structures are required for safety or protection of the cable• For lightning protec
4-14-1Chapter 4: Hardware InstallationBefore mounting antennas to set up your wireless bridge links, be sure you have selected appropriate locations f
Hardware Installation4-24The bridge’s mounting bracket has four parts. One rectangular plate that is used for pole and wall mounting, one square plate
Mount the Unit4-344. Attach the bridge with its mounting plate to the bracket already fixed to the pole.5. Use the included nuts to secure the wireles
Hardware Installation4-44Be sure to take account of the antenna polarization direction; all antennas in a link must be mounted with the same polarizat
Connect External Antennas4-54Connect External AntennasWhen deploying a WA6202AM unit for a bridge link or access point operation, you need to mount ex
Hardware Installation4-64Connect Cables to the UnitWarning: Do not connect or disconnect cables or otherwise work with the bridge during periods of li
Connect the Power Injector4-74Connect the Power InjectorTo connect the wireless bridge to a power source:Caution: Do not install the power injector o
Hardware Installation4-841. Insert the power cable plug directly into the standard AC receptacle on the power injector.2. Plug the other end of the po
Align Antennas4-94The signal strength LEDs indicate the received radio signal strength for a particular bridge link. The more LEDs that turn on, the s
iCompliancesFederal Communication Commission Interference StatementThis equipment has been tested and found to comply with the limits for a Class B di
Hardware Installation4-1041. Pan the antenna horizontally back and forth while checking the LEDs. If using the pole-mounting bracket with the unit, yo
5-1Chapter 5: Initial ConfigurationThe Dual-band Outdoor Access Point / Bridge offers a variety of management options, including a web-based interface
Initial Configuration5-25For a description of how to use the CLI, see “Using the Command Line Interface” on page 7-1. For a list of all the CLI comman
Logging In5-35Setting the Country Code – Units sold in the United States are configured by default to use only radio channels 1-11 in 802.11b or 802.1
Initial Configuration5-45The home page displays the Main Menu.
6-1Chapter 6: System ConfigurationBefore continuing with advanced configuration, first complete the initial configuration steps described in Chapter 5
System Configuration6-26Advanced ConfigurationThe Advanced Configuration pages include the following options.Table 6-1. MenuMenu Description PageSys
Advanced Configuration6-36System IdentificationThe system name for the access point can be left at its default setting. However, modifying this parame
System Configuration6-46CLI Commands for System Identification – Enter the global configuration mode, and use the system name command to specify a new
Advanced Configuration6-56TCP / IP SettingsConfiguring the access point with an IP address expands your ability to manage the access point. A number o
iiVCCI NoticeThis is a class A product based on the standard of the Voluntary Control Council for Interference by Information Technology Equipment (VC
System Configuration6-66• IP Address: The IP address of the access point. Valid IP addresses consist of four decimal numbers, 0 to 255, separated by p
Advanced Configuration6-76RADIUSRemote Authentication Dial-in User Service (RADIUS) is an authentication protocol that uses software running on a cent
System Configuration6-86
Advanced Configuration6-96MAC Address Format – MAC addresses can be specified in one of four formats, using no delimeter, with a single dash delimeter
System Configuration6-106CLI Commands for RADIUS – From the global configuration mode, use the radius-server address command to specify the address of
Advanced Configuration6-116SSH SettingsTelnet is a remote management tool that can be used to configure the access point from anywhere in the network.
System Configuration6-126CLI Commands for SSH – To enable the SSH server, use the ip ssh-server enable command from the CLI Ethernet interface configu
Advanced Configuration6-136MAC Authentication – You can configure a list of the MAC addresses for wireless clients that are authorized to access the n
System Configuration6-146802.1X Supplicant – The access point can also operate in a 802.1X supplicant mode. This enables the access point itself to be
Advanced Configuration6-156CLI Commands for Local MAC Authentication – Use the mac-authentication server command from the global configuration mode to
iii• This device employs a radar detection feature required for European Community operation in the 5 GHz band. This feature is automatically enabled
System Configuration6-166CLI Commands for RADIUS MAC Authentication – Use the mac-authentication server command from the global configuration mode to
Advanced Configuration6-176Filter ControlThe access point can employ network traffic frame filtering to control access to network resources and increa
System Configuration6-186Uplink Port MAC Address Filtering Status – Prevents traffic with specified source MAC addresses from being forwarded to wirel
Advanced Configuration6-196VLANThe access point can employ VLAN tagging support to control access to network resources and increase security. VLANs se
System Configuration6-206When setting up VLAN IDs for each user on the RADIUS server, be sure to use the RADIUS attributes and values as indicated in
Advanced Configuration6-216WDS SettingsEach access point radio interface can be configured to operate in a bridge or repeater mode, which allows it to
System Configuration6-226• Bridge: Operates as a bridge to other access points. The “Parent” link to the root bridge must be configured. Up to five ot
Advanced Configuration6-236Spanning Tree Protocol – STP uses a distributed algorithm to select a bridging device (STP-compliant switch, bridge or rout
System Configuration6-246the root device. All ports connected to designated bridging devices are assigned as designated ports. After determining the l
Advanced Configuration6-256• Link Path Cost – This parameter is used by the STP to determine the best path between devices. Therefore, lower values sh
ivSafety CompliancePower Cord SafetyPlease read the following safety information carefully before installing the device:Warning:Installation and remov
System Configuration6-266CLI Commands for STP Settings – If the role of a radio interface is set to Repeater, Bridge or Root Bridge, STP can be enable
Advanced Configuration6-276AP ManagementThe Web, Telnet, and SNMP management interfaces are enabled and open to all IP addresses by default. To provid
System Configuration6-286• Multiple IP: Specifies an address range as defined by the entered IP address and subnet mask. For example, IP address 192.1
Advanced Configuration6-296Setting the Timeout IntervalYou can set the timeout interval for web access to the unit, after which the user will have to
System Configuration6-306Before upgrading new software, verify that the access point is connected to the network and has been configured with a compat
Advanced Configuration6-316Firmware Upgrade Local – Downloads an operation code image file from the web management station to the access point using H
System Configuration6-326Upon uploading a new configuration file you will be prompted to either restore factory settings, or reboot the unit.CLI Comma
Advanced Configuration6-336System Log The access point can be configured to send event and error messages to a System Log Server. The system clock can
System Configuration6-346Logging Level – Sets the minimum severity level for event logging. (Default: Informational)The system allows you to limit the
Advanced Configuration6-356CLI Commands for System Logging – To enable logging on the access point, use the logging on command from the global configu
vVeuillez lire à fond l'information de la sécurité suivante avant d'installer l’appareil:AVERTISSEMENT: L’installation et la dépose de ce gr
System Configuration6-366Note: The access point also allows you to disable SNTP and set the system clock manually. Set Time Zone – SNTP uses Coordinat
Advanced Configuration6-376CLI Commands for the System Clock – The following example shows how to manually set the system time when SNTP server suppor
System Configuration6-386The RSSI controls allow the external connector to be disabled and the receive signal for each WDS port displayed.
Advanced Configuration6-396RSSI:• Auto Refresh – Enables or disables the refreshing of RSSI information.• RSSI Value – The displayed RSSI value for a
System Configuration6-406SNMPSimple Network Management Protocol (SNMP) is a communication protocol designed specifically for managing devices on a net
SNMP6-416Configuring SNMP and Trap Message ParametersThe access point SNMP agent must be enabled to function (for versions 1, 2c, and 3 clients). Man
System Configuration6-426Community Name (Read/Write) – Defines the SNMP community access string that has read/write access. Authorized management stat
SNMP6-436Trap Configuration – Allows selection of specific SNMP notifications to send. The following items are available:• sysSystemUp - The access po
System Configuration6-446• dot11StationDisassociate - A client station no longer associates with the network.• dot11StationAuthenticateFail - A client
SNMP6-456To view the current SNMP settings, use the show snmp command.Enterprise AP#show snmp 7-54SNMP Information====================================
Comments to this Manuals