Configuring Cloud AP Services
Configuring Interfaces
You do not need to configure interfaces of cloud APs for connecting to upstream cloud switches on iMaster NCE-Campus. The default settings can be used.
Configuring an SSID for Employees (PSK Authentication)
- Select a site.
- Choose from the main menu.
- Select test_ap from the Site drop-down list in the upper left corner, and set the site as the operation object.
- Click the Site Configuration tab.
- Choose AP > SSID from the navigation pane and click Create. The SSID configuration page is displayed.
- On the Basic Settings page, set parameters according to Table 5-17 and then click Next.Table 5-17 Basic parameters of the employee SSID
Parameter
Value
Name
test-emp
Network connection mode
Layer 2 forwarding
VLAN ID
10
- On the Security Authentication page, set parameters according to Table 5-18 and then click Next.Table 5-18 Security authentication parameters of the employee SSID
Parameter
Value
Authentication mode
Semi-open network (Password required)
Key type
PSK
Encryption mode
WPA2
Encryption algorithm
AES
Key
Test@12345
- On the Policy Control page, enable Downlink traffic (Mbit/s) and Uplink traffic (Mbit/s) under Station rate limiting, and set both the values to 5. Click OK.
Configuring an SSID for Guests (SMS Authentication)
- Choose AP > SSID from the navigation pane and click Create. The SSID configuration page is displayed.
- On the Basic Settings page, set parameters according to Table 5-19. and then click Next.
- On the Security Authentication page, set parameters according to Table 5-20 and then click Next.Table 5-20 Security authentication parameters of the guest SSID
Parameter
Value
Authentication mode
Open network
Push pages(Portal authentication)
ON
Page pushing mode
Built-in authentication by cloud platform
Portal protocol type
HACA
Page push protocol
HTTPS
Push mode
Advanced
Login mode
SMS authentication
Default permit rule
Click
to access the Select Template page. On the Select Template page that is displayed, click Create. The ACL configuration page is displayed.
- Name: test-ACL
- ACL number: 6001
- Rule List: Click Add, set the following parameter, and click
to save the data.
- IP/Domain: Indicates the IP address of the DNS server. If there is no independent DNS server, the IP address of the public DNS server can be used, for example, 114.114.114.114/32.
Bypass policy
- Select I have read the notice for selecting a bypass policy, and I know the content and risks of both policies.
- Select Authenticated users can continue accessing the network, and new users are not allowed to access the network.
- On the Policy Control page, enable Downlink traffic (Mbit/s) and Uplink traffic (Mbit/s) under Station rate limiting, and set both the values to 5. Click OK.