beautypg.com

Configuring firewall settings, Configuring firewall, Settings – Brocade Mobility 7131N-FGR Access Point Product Reference Guide (Supporting software release 4.0.0.0-35GRN and later) User Manual

Page 183

background image

Brocade Mobility 7131N-FGR Product Reference Guide

171

53-1001947-01

Configuring firewall settings

6

7. Configure the Fast Roaming (802.1x only) field as required to enable additional Brocade

Mobility 7131N-FGR Access Point roaming and key caching options. This feature is applicable
only when using 802.1x EAP authentication with WPA2/CCMP.

NOTE

PMK key caching is enabled internally by default when 802.1x EAP authentication is enabled.

8. Click the Apply button to save any changes made within this New Security Policy screen.

9. Click the Cancel button to undo any changes made within the WPA2/CCMP Settings field and

return to the WLAN screen. This reverts all settings to the last saved configuration.

Configuring firewall settings

The Brocade Mobility 7131N-FGR Access Point's firewall is a set of related programs located in the
gateway on the WAN side of the Brocade Mobility 7131N-FGR Access Point. The firewall uses a
collection of filters to screen information packets for known types of system attacks. Some of the
Brocade Mobility 7131N-FGR Access Point's filters are continuously enabled, others are
configurable.

Use the Brocade Mobility 7131N-FGR Access Point’s Firewall screen to enable or disable the
configurable firewall filters. Enable each filter for maximum security. Disable a filter if the
corresponding attack does not seem a threat in order to reduce processor overhead. Use the WLAN
Security screens as required for setting user authentication and data encryption parameters.

To configure the Brocade Mobility 7131N-FGR Access Point firewall settings:

Pre-Authentication

Selecting this option enables an associated MU to carry out an
802.1x authentication with another Brocade Mobility 7131N-FGR
Access Point before it roams to it. The Brocade Mobility
7131N-FGR Access Point caches the keying information of the
client until it roams to the other Brocade Mobility 7131N-FGR
Access Point. This enables the roaming client to start sending and
receiving data sooner by not having to do 802.1x authentication
after it roams. This feature is only supported when 802.1x EAP
authentication is enabled.