Configuring firewall settings, Configuring firewall, Settings – Brocade Mobility 7131N-FGR Access Point Product Reference Guide (Supporting software release 4.0.0.0-35GRN and later) User Manual
Page 183

Brocade Mobility 7131N-FGR Product Reference Guide
171
53-1001947-01
Configuring firewall settings
6
7. Configure the Fast Roaming (802.1x only) field as required to enable additional Brocade
Mobility 7131N-FGR Access Point roaming and key caching options. This feature is applicable
only when using 802.1x EAP authentication with WPA2/CCMP.
NOTE
PMK key caching is enabled internally by default when 802.1x EAP authentication is enabled.
8. Click the Apply button to save any changes made within this New Security Policy screen.
9. Click the Cancel button to undo any changes made within the WPA2/CCMP Settings field and
return to the WLAN screen. This reverts all settings to the last saved configuration.
Configuring firewall settings
The Brocade Mobility 7131N-FGR Access Point's firewall is a set of related programs located in the
gateway on the WAN side of the Brocade Mobility 7131N-FGR Access Point. The firewall uses a
collection of filters to screen information packets for known types of system attacks. Some of the
Brocade Mobility 7131N-FGR Access Point's filters are continuously enabled, others are
configurable.
Use the Brocade Mobility 7131N-FGR Access Point’s Firewall screen to enable or disable the
configurable firewall filters. Enable each filter for maximum security. Disable a filter if the
corresponding attack does not seem a threat in order to reduce processor overhead. Use the WLAN
Security screens as required for setting user authentication and data encryption parameters.
To configure the Brocade Mobility 7131N-FGR Access Point firewall settings:
Pre-Authentication
Selecting this option enables an associated MU to carry out an
802.1x authentication with another Brocade Mobility 7131N-FGR
Access Point before it roams to it. The Brocade Mobility
7131N-FGR Access Point caches the keying information of the
client until it roams to the other Brocade Mobility 7131N-FGR
Access Point. This enables the roaming client to start sending and
receiving data sooner by not having to do 802.1x authentication
after it roams. This feature is only supported when 802.1x EAP
authentication is enabled.