Profiles > Ids > Unauthorized Device - Dell PowerConnect W-Airwave Configuration Manual

W-airwave 7.1 configuration guide
Hide thumbs Also See for PowerConnect W-Airwave:
Table of Contents

Advertisement

Profiles > IDS > Unauthorized Device
Unauthorized device detection includes the ability to detect and disable rogue APs and other devices that
can potentially disrupt network operations.
The most important IDS functionality offered in the Aruba system is the ability to classify an AP as either a
rogue AP or an interfering AP. An AP is considered to be a rogue AP if it is both unauthorized and plugged
into the wired side of the network. An AP is considered to be an interfering AP if it is seen in the RF
environment but is not connected to the wired network. While the interfering AP can potentially cause RF
interference, it is not considered a direct security threat since it is not connected to the wired network.
However, an interfering AP may be reclassified as a rogue AP.
Rogue device classification for Aruba WMS Offload infrastructure is also described in the AWMS User Guide.
N O T E
You can enable a policy to automatically disable APs that are classified as a rogue APs by the Aruba system.
When a rogue AP is disabled, no wireless stations are allowed to associate to that AP.
Perform these steps to create IDS
1. Click
2. Click the
existing profile to edit. The
Table 36 Aruba Configuration > Profiles > IDS > Unauthorized Devices Profile Settings
Field
General Settings
Folder
Name
Other Settings
Detect Adhoc
Networks
Protect from Adhoc
Networks
Detect Windows
Bridge
Detect Wireless
Bridge
Detect Devices with
An Invalid MAC OUI
104
| Aruba Configuration Reference
Profiles > IDS > Unauthorized Devices
Add
button to create a new
Details
Default
Top
Blank
Yes
No
Yes
Yes
No
Unauthorized Device
profiles.
Aruba Navigation
in the
Unauthorized Devices
page appears. Complete the settings as described in
Description
Use this field to set and display the folder with which the profile is
associated. The drop-down menu displays all folders available for
association with the profile.
Folders provide a way to organize the visibility of device parameters that is
separate from the configuration groups of devices. Using folders, you can
view basic statistics about device, and define which users have visibility to
which device parameters.
Enter the name of the profile.
Enable or disable detection of adhoc networks.
Enable or disable protection from adhoc networks. When adhoc networks
are detected, they are disabled using a denial of service attack.
Enable or disable detection of Windows station bridging.
Enable or disable detection of wireless bridging.
Enable or disable the checking of the first three bytes of a MAC address,
known as the MAC organizationally unique identifier (OUI), assigned by the
IEEE to known manufacturers. Often clients using a spoofed MAC address
do not use a valid OUI and instead use a randomly generated MAC
address. Enabling MAC OUI checking causes an alarm to be triggered if an
unrecognized MAC address is in use.
AirWave Wireless Management Suite | Configuration Guide
pane.
,
pencil
profile
or click the
icon next to an
Table
36:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Airwave wireless management suite

Table of Contents