beautypg.com

Testing connectivity – Brocade Mobility 7131N-FGR Access Point Product Reference Guide (Supporting software release 4.0.0.0-35GRN and later) User Manual

Page 65

background image

Brocade Mobility 7131N-FGR Product Reference Guide

53

53-1001947-01

Basic configuration

3

4. Select the Auto (IKE) Key Exchange checkbox and the IKE Settings button.

IKE provides an automatic means of negotiation and authentication for communication
between two or more entities.

5. Configure all the parameters within the IKE Settings screen.The IKE Authentication Passphrase

must be shared by the external NTP, syslog or Radius resource.

6. From back within the VPN screen, select the Auto (IKE) Key Exchange checkbox and the Auto

Key Settings button.

Use the Auto Key Settings screen to specify the type of encryption and authentication used
with the tunnel.

7. Configure all the parameters within the Auto Key Settings screen.

For additional information on configuring either IKE Settings or Auto Key Settings, see

“Configuring auto key settings”

on page 186 and

“Configuring IKE key settings”

on page 188. .

8. Click Apply to save the configuration of the new tunnel.

External NTP, syslog and Radius resources are now reachable from the access point’s secure
VPN tunnel. However, you must supply the access point with the IP address of the NTP, syslog
or Radius server for the access point to connect to those external resources. For information
on configuring external NTP, syslog and Radius server support, see

“Configuring Network Time

Protocol (NTP)”

on page 88,

“Logging configuration”

on page 90 or

“Configuring user

authentication”

on page 201.

Testing connectivity

Verify the access point’s link with an MU by sending Wireless Network Management Protocol
(WNMP) ping packets to the associated MU. Use the Echo Test screen to specify a target MU and
configure the parameters of the test. The WNMP ping test only works with Brocade MUs. Only use a
Brocade MU to test access point connectivity using WNMP.

NOTE

Before testing for connectivity, the target MU needs to be set to the same ESSID as the access point.
Since WPA2/CCMP has been configured for the access point, the MU also needs to be configured
for WPA2/CCMP and use the same keys. Ensure the MU is associated with the access point before
testing for connectivity.

To ping a specific MU to assess its connection with an access point:

1. Select Status and Statistics -> MU Stats from the menu tree.

2. Select the Echo Test button from within the MU Stats Summary screen.

3. Define the following parameters for the test.

Remote Subnet Mask

Enter the subnet mask for the tunnel’s remote network for the
tunnel. The remote subnet mask is the subnet setting for the
remote network the tunnel connects to.

Remote Gateway

Enter a numerical (non-DNS) remote gateway IP address for the
tunnel. The remote gateway IP address is the gateway address
on the remote network the VPN tunnel connects to.