Configuring Firewall Parameters for Wireless Network Protection
To configure firewallFirewall is a network security system used for preventing unauthorized access to or from a private network. settings, complete the following steps:
- In the app, set the filter to a group containing at least one AP.
The dashboard context for the group is displayed.
- Under , click > .
A list of APs is displayed in the view.
- Click the icon.
The tabs to configure the APs are displayed.
- Click .
- Click the tab.
The Security page is displayed.
- Click the Wireless IDS/IPS accordion.
- Under , turn on the toggle switch to enable , , , , , and protocols.
- Under , in the section, enable the following options:
- —Drops the fake ARPAddress Resolution Protocol. ARP is used for mapping IP network address to the hardware MAC address of a device. packets.
- —Fixes the malformed DHCPDynamic Host Configuration Protocol. A network protocol that enables a server to automatically assign an IP address to an IP-enabled device from a defined range of numbers configured for a given network. packets.
- —Triggers an alert on ARP poisoning caused by the rogue APs.
Configuring Management Subnets
You can configure subnetsSubnet is the logical division of an IP network. to ensure that the IAP management is carried out only from these subnets. When the management subnets are configured, Telnet, SSHSecure Shell. SSH is a network protocol that provides secure access to a remote device. , and UI access is restricted to these subnets only.
To configure management subnets, complete the following steps:
- In the app, set the filter to a group containing at least one AP.
The dashboard context for the group is displayed.
- Under , click > .
A list of APs is displayed in the view.
- Click the icon.
The tabs to configure the APs are displayed.
- Click .
- Click the tab.
The Security page is displayed.
- Click the Wireless IDS/IPS accordion.
- Click Firewall Settings.
- Under pane, to add a new management subnet, complete the following steps:
- Enter the subnet address in .
- Enter the subnet mask in .
- Click .
- Click Save Settings.