Comments
-
Yes! Finally got the certificate! Can't wait to take the full course!
-
AD Server only confirms whether user credential is correct or not. In my opinion, two approaches you can try to reach the goal (only allowed access from specified user group in AD Server): 1. On your windows server, add another role called "Network Policy Server", so that you can set network policy rules to control which…
-
I prioritize the physical cable over Smart Mesh, while both ways have their target scenarios for network extension. Physical cable provides dedicate media for signal transmission, so you don't need to worry about interference, channel loading, radio pattern.... and other factors which may drop the Wi-Fi performance. On the…
-
It sounds like you're worrying if anyone unplug your AP and directly use existing cable to access your home network? If so, there is nothing to do with AP(since it has been unplugged.), more related to security settings on connecting switch.
-
@emiliano79 Just summarize the scenario: NXC is in VLAN100 AP is in VLAN4 Employee SSID is in VLAN4 Now you want to establish a guest SSID on VLAN3? ---------- And the answer is, Yes. AP can broadcast two SSIDs in different VLANs. You just need to make sure the VLAN settings are correct on the switch ports that traffic may…
-
@Gi11y I think the interference that Freda means is from wireless part and not caused by the wall or any physical object. You can try if changing the using channel improves the wireless performance. Also, since the Ethernet only provides around 100 Mbps, you can simply use 20/40MHz channel width on 5G radio, which can…
-
@Phaedrus In the date firmware, we add security check for the number of multicast addresses inside IGMP packet. This way we optimize how AP handling IGMP packets and keep its performance . Best Regards, Richard
-
I'll have a PM discussion with @Talkabout and share the result here. Richard
-
@drmi Did you buy any additional APC license for USG110? By default USG110 is only allowed to manage 2 APs. You can buy additional license to expand the management quota (By contacting to your regional sales.) You can search for your regional sales from the link below: https://www.zyxel.com/where_to_buy/where-to-buy.shtml
-
I just had a detail discussion with @Talkabout , sharing the result below: This issue can be local reproduced in my site The reason is, when "reauth time" (On security settings GUI) is set with value, AP will cache clients key-information. Therefore, when station roams back to original AP, since user's key information is…
-
@Talkabout Is that mean, after you set the reauth time to "0", internal wireless clients can get correct VLAN ip address, even in roaming? If so, please help me checking if there is RADIUS negotiation when station roams to AP1? or still there is no negotiate when station roams to AP1, but this time station gets correct IP…
-
@Talkabout I've mentioned the full "issuing" roaming process in the E-mail, where you're also looped. This issue will be handled by other specialist, we'll keep contacting through the mail. However, if there is any update about this issue, I'll also update the progress here. Richard
-
@Talkabout Thanks for your instant reply and captured information for us. I'll open a ticket and keep tracking with you. Best Regards,
-
@Talkabout Hi, you can capture above packets on the path between AP and RADIUS Server. The story is, when wireless station execute 802.1X authentication, AP must negotiate with RADIUS Server to verify user's credential. After station passes the authentication on RADIUS server, then RADIUS server then sends an…
-
Base on your statement, is this a dynamic VLAN application with RADIUS attribute settings? While internal user should get IP address in VLAN1, and other guest stations get IP address in SSID VLAN. Since the behavior can be reproduced in roaming case, I want to clarify some settings and try to reproduced it in my own site:…