Page 46 / 87 Scroll up to view Page 41 - 45
DSA-3100 Airspot Public/Private Gateway User Manual
39
(2) On-demand Users List
:
A list about on-demand user. A sample list is shown
below.
Figure 4-40
On-Demand User List
To delete specific users accounts, click on the checkboxes besides those user
accounts then click the
Delete
button. To delete all user accounts, click
Delete All
.
(3) Local
User Group Configuration:
DSA-3100 provides 5 local user groups; each
group can be set different outbound traffic bandwidth. A sample list is shown
below.
Figure 4-41 Local User Group configuration
(4) On-demand User Configuration:
Table 4-3
On-demand user Page Field and Description
Field
Description
Store Name
You can specify the prefix of the user name, max is 8 char., for
example: D-Link.
Account Range
You can specify the max user amount, max is 2000
Receipt Header
You can configure the receipt’s header in this filed.
Receipt Footer
You can configure the receipt’s header in this filed.
Printer baud rate
You can specify the baud rate to support specific printer, which
provide from D-Link. The default setting is 9600.
Page 47 / 87
DSA-3100 Airspot Public/Private Gateway User Manual
40
Account expires
after
__ days
You can specify the expires day in this filed, If this user account is
not login (first time), and time is expired, this user account will
not be use anymore.
Session expire after
__ minutes
You can specify how long will this account can use when he (she)
login successful.
Idle timer
You can specify the idle duration in this field.
WLAN ESSID
You can specify the AP’s ESSID in this filed.
WEP Key
You can specify the AP’s WEP key in WEP Key filed.
Price
You can specify the price in this filed.
Figure 4-42
On-Demand User Configuration
2.)
POP3:
To use POP3 as the Public LAN method, just input the POP3 server IP address or
domain name and its POP3 server port. The settings will take effect immediately after you
click the
Apply
button. However, it is recommended that you restart the DSA-3100 after
these changes if there is any on-line user
.
Page 48 / 87
DSA-3100 Airspot Public/Private Gateway User Manual
41
Figure 4-43
POP3 Configuration
3.)
RADIUS:
To use RADIUS as the Public LAN method, input the RADIUS server IP address
or domain name, Public LAN Port, Accounting Port, Secret Key and select the “Accounting
Service” and “Public LAN Method” function. The settings will take effect immediately after
you click the
Apply
button. However, it is recommended that you restart the DSA-3100
after these changes if there is any on-line user
.
Figure 4-44
RADIUS Configuration
Page 49 / 87
DSA-3100 Airspot Public/Private Gateway User Manual
42
802.1x:
DSA-3100 support integrated single sign-on when using combine with the 802.1x
enabled APs. By using the integrated RADIUS proxy function in DSA-3100, users can use the
EAP methods such as EAP-MD5 or EAP-TLS to login and get the service depending on the
Public LAN methods which the backend RADIUS server and APs support.
The assumption is that user had configured a EAP enabled RADIUS server like Microsoft
Internet Public LAN Service on Windows 2000 or .NET Server 2003. If EAP-TLS is required for
the dynamic key exchange, a CA integrated with Microsoft Active Directory or an external
trusted CA is also required. Of course the user should get the certificate from the CA before
he/she connects to the Wireless LAN.
We suggest the system administrator perform the Public LAN test and make sure everything is
correct before you connect the network to DSA-3100.
Note:
The function of 802.1x can only be enabled when the user Public LAN method was set
to “RADIUS”
There are some settings should be configured at these three components in the network:
±
RADIUS server:
System administrator should create a client account for DSA-3100 first and
define the required secret (We suggest you to use the one differ than the ones
APs using).
±
DSA-3100:
Please select the manual in “Home->User Management” then select the Public
LAN method to “RADIUS”.
±
Access Points:
Please specify the Primary and Secondary RADIUS server IP address (Some
APs may have different wording such as IAS server or Public LAN server etc.) to
the IP address of “Public LAN” port on DSA-3100.
The corresponding secrets for each AP should match the settings in DSA-3100
just as the values, as shown in sample figure below:
Page 50 / 87
DSA-3100 Airspot Public/Private Gateway User Manual
43
Figure 4-45 802.1x Device Configuration
Note:
If you are using the 802.1x supplicant provided by Microsoft, the idle time out will be the
longer one of the settings in RADIUS/AP and DSA-3100. Except the idle timer, there is no way
for user to logoff from the 802.1x AP in the current 802.1x implementation by Microsoft.
4.)
LDAP:
To use LDAP as the Public LAN method, just input the LDAP server IP address or
domain name and its LDAP server port. The settings will take effect immediately after you
click the
Apply
button. However, it is recommended that you restart the DSA-3100 after
these changes if there is any on-line user
.
Figure 4-46 LDAP Configuration
5.)
External Web Server:
Not only the 5 authentication methods as descript above, but
DSA-3100 can also support external web server (including database), enable user to put the
login page on external web server and change the login page anytime as per customer’s
requirement.

Rate

4.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top