Bluesocket BlueSecure 1500 Manual de usuario

BlueSecure™ Access Point 1500
Installation Guide
Bluesocket, Inc.
10 North Avenue
Burlington, MA 01803 USA
+1 781-328-0888
www.bluesocket.com
Part Number: 870-01500-M00
Document Version: 2.0

ii
Copyright Notice
Copyright © 2005 Bluesocket, Inc. All rights reserved.
No part of this document may be reproduced in any form or by any means, electronic or manual, including
photocopying without the written permission of Bluesocket, Inc.
The products described in this document may be protected by one or more U.S. patents, foreign patents, or pending
patents.
This document is provided “as is” without warranty of any kind, either express or implied, including, but not limited to,
the implied warranties of merchantability, fitness for a particular purpose, or non-infringement. This publication could
include technical inaccuracies or typographical errors. Changes are periodically added to the information herein; these
changes will be incorporated in new editions of the document. Bluesocket inc. may make improvements or changes in the
products or the programs described in this document at any time.
Trademarks
Bluesocket, The Bluesocket Logo, Secure Mobility, BlueView, BlueSecure, HighDataDensity and CellularLAN are
trademarks or registered trademarks of Bluesocket, Inc.
All other trademarks, trade names and company names referenced herein are used for identification purposes only and
are the property of their respective owners.

BlueSecure™ AP 1500 Installation Guide iii
Contents
Overview .................................................................................................1
Familiarizing Yourself with the BSAP Hardware ............................................2
Fixed Antennas......................................................................................3
LED Indicators .......................................................................................3
Power Supply Connector ........................................................................4
Mounting Bracket Screw .........................................................................4
Ethernet/PoE Connector .........................................................................4
Reset Button ..........................................................................................4
Serial Console Port ................................................................................4
Kensington Security Slot..........................................................................5
Provisioning Your Bluesocket WLAN for BSAPs .............................................5
Deploying BSAPs on the Same Layer-2 Subnet as the BSC ..........................5
Deploying BSAPs with Layer-3 Connectivity to the BSC ...............................6
Selecting a BSAP Installation Location ..........................................................7
Connecting and Powering the BSAP ............................................................8
Using the BSAP Command Line Interface (CLI)...............................................9
Accessing the BSAP CLI ..........................................................................9
Navigating the BSAP CLI ......................................................................10
BSAP Default Configuration...................................................................10
Setting the BSAP and Home BSC IP Addresses Using the CLI .....................11
General Specifications.............................................................................13
BSAP Wall Mounting Template .................................................................16

iv
Contents

BlueSecure™ Access Point 1500 Installation Guide 1
Overview
The BlueSecure Access Point 1500 is a next-generation, “thin” access point that
works in conjunction with BlueSecure Controllers (BSCs) for enterprise wireless
LAN (WLAN) deployments. BlueSecure Access Points (BSAPs) feature dual radios
supporting 802.11a and 802.11b/g in a plenum-rated housing with fixed omni-
directional antennas.
BSAPs are simple to configure and require only minimal provisioning to make
them fully operational on a WLAN secured and managed by a BlueSecure
Controller.
BSAPs can be directly attached to any existing Layer-2 or Layer-3 Ethernet switch
and communicate with the BSC across any subnet boundary. Once the BSAP has
discovered and established Layer-2 or Layer-3 communication with its home (i.e.,
host) BlueSecure Controller, advanced configuration and provisioning may be
applied either to individual BSAPs or globally across the entire WLAN using the
BSC’s web-based Administrator Console.
Once a BlueSecure Access Point has downloaded its configuration from its home
BlueSecure Controller, the BSAP and the BSC will establish a tunnel through
which all wireless client traffic received by the BSAP will pass for the application
of policy by the BSC.
You can configure BSAPs to function as access points or RF sensors. The BSC
manages and configures BSAPs operating in AP-only mode, AP/sensor mode, or
sensor-only mode, and uses BSAPs operating in AP/sensor and sensor mode to
perform RF intrusion detection and containment.
This guide provides complete installation procedures for your BSAP including:
• familiarizing yourself with the BSAP hardware
• provisioning your Bluesocket WLAN for BSAPs
• selecting a BSAP installation location
• connecting and powering the BSAP
• using the BSAP command line interface (CLI)
Figure 1: BSAPs Automatically Discover BSCs Across L2/L3 Networks

2
Familiarizing Yourself with the BSAP Hardware
Figure 2 illustrates the BSAP hardware. Familiarize yourself with the labeled
components before attempting to install the BSAP.
Figure 2: BSAP Hardware Components
Fixed
Antennas
LED
Indicators
Captive Mounting
Bracket Screw
Reset
Button
Power Supply
Connector
Ethernet/PoE
Connector
Serial Console
Connector
Kensington
Security
Slot

Familiarizing Yourself with the BSAP Hardware
BlueSecure™ Access Point 1500 Installation Guide 3
Fixed Antennas
The BSAP includes two omni-directional antennas for wireless communications.
The antennas support diversity whereby the signal transmitted from both antennas
is identical, but only the best signal received on one of the antennas is used. The
antennas transmit the outgoing signal along a horizontal plane perpendicular to
the antenna (in the shape of a toroidal sphere). Therefore, you may want to
position the antennas in a range of 45 to 90 degrees from each other to provide
better coverage.
LED Indicators
The BSAP provides four
status light-emitting diodes
(LEDs). These status LEDs
are illustrated at right and
described in Table 1.
Table 1: BSAP Status LEDs
LED Status Indicates
PWR On Power is supplied to the BSAP
Flashing Self-test is running, or firmware is being loaded
Flashing
(Prolonged)
System Errors
Ethernet Link On Valid 10/100 Mbps Ethernet link
Flashing Data activity on Ethernet link
.11a On Valid 802.11a wireless link
Very Slow
Flashing
Searching for 802.11a network association
Slow
Flashing
Associated with 802.11a network but no activity
Fast Flashing BSAP is transmitting/receiving data on its 802.11a
wireless link
.11b/g On Valid 802.11b or 802.11g wireless link
Very Slow
Flashing
Searching for 802.11b/g network association
Slow
Flashing
Associated with 802.11b/g network but no activity
Fast Flashing BSAP is transmitting/receiving data on its 802.11b/g
wireless link
Power Ethernet
Link/Activity
802.11a
Link/Activity
802.11b/g
Link/Activity

4
Power Supply Connector
The BSAP does not have a power switch. It is powered on when connected to the
supplied AC power adapter, and the power adapter is connected to a power
source. The BSAP automatically adjusts to any voltage between 100-240 volts at
50 or 60 Hz. No voltage range settings are required.
The BSAP may also receive Power over Ethernet (PoE) from a model BSC-400
Controller, switch or other network device that supplies power over the network
cable based on the IEEE 802.3af standard.
Note that if the BSAP is connected to a PoE source device and also connected to
a local power source through its AC power adapter, PoE will be disabled.
Mounting Bracket Screw
If you are wall-mounting the BSAP, use this captive screw to secure the BSAP to its
mounting bracket.
Ethernet/PoE Connector
The BSAP has one 10BASE-T/100BASE-TX RJ-45 connector that can be attached
directly to 10BASE-T/100BASE-TX LAN segments to provide a full-duplex link.
These segments must conform to the IEEE 802.3 or 802.3u specifications.
This connector uses an MDI (i.e., internal straight-through) pin configuration. You
can therefore use straight-through twisted-pair cable to connect this port to most
network interconnection devices such as a switch or router that provide MDI-X
ports.
However, when connecting the BSAP to a workstation or other device that does
not have MDI-X ports, you must use crossover twisted-pair cable.
The BSAP appears as an Ethernet node and performs a bridging function by
moving packets from the wired LAN to remote workstations on the wireless
infrastructure.
The Ethernet/PoE RJ-45 connector also supports Power over Ethernet (PoE) based
on the IEEE 802.3af standard. Note that if the BSAP is connected to a PoE source
device and also connected to a local power source through the AC power
adapter, PoE will be disabled.
Reset Button
Use this button to reset the BSAP or restore its factory default configuration. If you
hold down the button for less than 5 seconds, the BSAP will perform a hardware
reset. If you hold down the button for 5 seconds or more, any configuration
changes you may have made are removed, and the factory default configuration
is restored to the BSAP.
Serial Console Port
Use this port to connect a console device to the BSAP via a serial cable. The
console device can be a laptop PC or workstation running a VT-100 terminal
emulation program, or a VT-100 terminal.

Provisioning Your Bluesocket WLAN for BSAPs
BlueSecure™ Access Point 1500 Installation Guide 5
Kensington Security Slot
The BSAP includes a Kensington security slot on the rear panel. You can prevent
unauthorized removal of the BSAP by wrapping a Kensington security cable (not
provided) around an unmovable object, inserting the lock into the slot, and
turning the key.
Provisioning Your Bluesocket WLAN for BSAPs
There are prerequisites that must be met before deploying BSAPs in a live
network environment. These prerequisites ensure that the BSAPs are able to
discover and connect to a host BlueSecure Controller. Implementing these
prerequisites also relieves you from the need to manually configure each
deployed BSAP.
The deployment prerequisites for BSAPs are:
•BSAP IP Address - Each BSAP requires a unique IP address.
•Host BlueSecure Controller IP Address - Each BSAP also needs the IP
address of the host BSC to which it will connect and from which it will obtain
its software image and configuration.
This section describes how to provision your Bluesocket WLAN when deploying
BSAPs:
• on the same Layer-2 subnet as the BSC
• across a routed network with Layer-3 connectivity to the BSC
Deploying BSAPs on the Same Layer-2 Subnet as the BSC
If the BSAPs are on the same subnet as the home BlueSecure Controller as shown
in Figure 3, you can run a DHCP server on the BSC to manage IP address
assignment to BSAPs. In this scenario, the BlueSecure Controller must be the only
DHCP server for the subnet.
Alternatively, you can configure the BlueSecure Controller to run a DHCP relay
agent to relay DHCP communications between the BSAPs and a DHCP server on
your network.
Figure 3: Deploying BSAPs on the Same Layer-2 Subnet as the BSC
Run a DHCP Server or
a DHCP Server Relay
Agent on the BSC
BSAPs will Automatically
Discover and Communicate
with their Home BSC

6
When you run a DHCP server or a DHCP relay agent on the BSC to assign IP
addresses to BSAPs on the managed side, the BSC will also pass its IP address to
the BSAPs automatically using vendor-specific option 43. In this way, the BSAPs
will learn the home BSC to which they should connect.
See the
BlueSecure Controller Setup and Administration Guide
for detailed DHCP
server and DHCP relay agent configuration procedures.
In this deployment scenario, simply connect and power on the BSAPs. They will
automatically discover and communicate with their home BSC.
Deploying BSAPs with Layer-3 Connectivity to the BSC
You can also deploy BSAPs on a routed network with Layer-3 connectivity to the
BSC as shown in Figure 4.
In this deployment scenario, you must ensure that each BSAP is able to
communicate with the BSC across the routed network by verifying that:
• there are no NAT devices between the BSAPs and the BSC
• Protocol 97 and TCP/UDP Port 33333 traffic is allowed between the BSAPs
and the BSC
Each BSAP will receive its IP address from your existing network DHCP server.
The BSAP also needs the IP address of the home BSC to which it will connect and
from which it will obtain its software image and configuration. You can provide
the home BSC IP address to a BSAP using one of the following methods:
•DHCP Server Option 43 - You can manually configure the DHCP server
on your network to send BSC IP addresses to BSAPs using DHCP vendor-
specific option 43.
In DHCP requests sent from the BSAP, the BSAP uses option 60 Vendor class
identifier with a value of BlueSecure.AP1500 to identify itself to the DHCP
server.
Refer to the documentation supplied with your DHCP server when configuring
vendor-specific option 43
Figure 4: Deploying BSAPs Across a Routed Network
Network
DHCP
Server
Network
DNS
Server
BSAPs Receive their IP
Addresses from
Network DHCP Server
BSAPs Receive Home BSC
IP Address Using DHCP
Option 43 or DNS
Tabla de contenidos
Otros manuales de Punto de acceso inalámbrico de Bluesocket

Bluesocket
Bluesocket BlueSecure 1840 Manual de usuario

Bluesocket
Bluesocket BlueSecure 1800 Manual de usuario

Bluesocket
Bluesocket BlueSecure 1840 Manual de usuario

Bluesocket
Bluesocket BlueSecure Access Point 1500 Manual de usuario

Bluesocket
Bluesocket BlueSecure 1700 Manual de usuario

Bluesocket
Bluesocket BlueSecureBSAP-1500 Manual de usuario

Bluesocket
Bluesocket BlueSecure Access Point 1540 Manual de usuario

Bluesocket
Bluesocket BlueSecure 1800v2 Manual de usuario

















