No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

S12700 V200R010C00 Configuration Guide - WLAN-AC

This document describes native AC (hereinafter referred to as WLAN AC) configuration procedures and provides configuration examples.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Wireless Intrusion Prevention

Wireless Intrusion Prevention

An AC can prevent wireless intrusion from three types of unauthorized devices:
  • Rogue AP

    After an AC identifies a rogue AP, it sends information about the rogue AP to a monitor AP. The monitor AP uses the identity information about the rogue AP to broadcast a Deauthentication frame. After STAs that associate with the rogue AP receive the Deauthentication frame, they disassociate from the rogue AP. This countermeasure prevents STAs from associating with rogue APs.

    NOTE:
    • Deauthentication frames are used to terminate established wireless links. Either an AP or a STA can send a Deauthentication frame to terminate the current link.

    • Currently, an AC supports containment against rogue APs that have the same or similar SSIDs as authorized APs managed by the AC and open-authentication APs.

  • Unauthorized STA

    After an AC identifies an unauthorized STA, it sends information about the unauthorized STA to a monitor AP. The monitor AP uses the identity information about the unauthorized STA to unicast a Deauthentication frame. After the AP with which the unauthorized STA associates receives the Deauthentication frame, the AP disassociates from the unauthorized STA. This countermeasure prevents APs from associating with unauthorized STAs.

  • Ad-hoc device

    After an AC identifies an ad-hoc device, it sends information about the ad-hoc device to a monitor AP. The monitor AP uses the identity information about the ad-hoc device's (BSSID and MAC address of the device) to unicast a Deauthentication frame. After the STAs that associate with the ad-hoc device receive the Deauthentication frame, the STAs disassociate from the ad-hoc device. This countermeasure prevents STAs from associating with ad-hoc devices.

Translation
Download
Updated: 2019-08-21

Document ID: EDOC1000142094

Views: 138252

Downloads: 123

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next