Http:// 802.11b Access Point and Device Point Technical training.

88
http://www.axis.com 802.11b Access Point and Device Point Technical training
  • date post

    19-Dec-2015
  • Category

    Documents

  • view

    214
  • download

    0

Transcript of Http:// 802.11b Access Point and Device Point Technical training.

Page 1: Http:// 802.11b Access Point and Device Point Technical training.

http://www.axis.com

802.11b Access Point and Device PointTechnical training

Page 2: Http:// 802.11b Access Point and Device Point Technical training.

Agenda

Marketing information

System Overview

WLAN Technology

Security

802.11b Access point

802.11b Device Point

Hands on Training

Page 3: Http:// 802.11b Access Point and Device Point Technical training.

Marketing information (not yet)

Page 4: Http:// 802.11b Access Point and Device Point Technical training.

System Overview

Page 5: Http:// 802.11b Access Point and Device Point Technical training.

System Overview

The 802.11b Access Point is connected on the main network.

The Camera is connected to the 802.11b Device Point.

Page 6: Http:// 802.11b Access Point and Device Point Technical training.

System Overview

Access Point

Wired N

etwork

Device Point

Internet Device Point

Device Point

Page 7: Http:// 802.11b Access Point and Device Point Technical training.

*Today only one device can be connected to the Device Point through the network interface but in next SW-release will contain multiple device support. This is not a big issue in our customers cases. Our customers will probably only connect one camera to each Device Point.

Future overview

Page 8: Http:// 802.11b Access Point and Device Point Technical training.

Future overview

Access Point

Wired N

etwork

Device Point

Wired N

etwork

Internet

Multi-Client Support

(will be available)

Device Point

Page 9: Http:// 802.11b Access Point and Device Point Technical training.

How to connect the 802.11b Access Point

Connect the 802.11b Access Point on the main network.

Configure the 802.11b Access Point from a computer on the main network (Smart AP utility)

Configure the network parameters and the Security-settings.

Page 10: Http:// 802.11b Access Point and Device Point Technical training.

How to connect the Camera to the 802.11b Device Point

Use a cross over connected UTP Ethernet cable to connect the Camera Server to the Device Point.

The 802.11b Device Point is a bridge (converter) between cabled Ethernet and wireless Ethernet (IEEE 802.11b).

Today only one camera can be connected to each Device Point.

Page 11: Http:// 802.11b Access Point and Device Point Technical training.

Wireless LAN Technologies Overview

Page 12: Http:// 802.11b Access Point and Device Point Technical training.

Channel─ The medium use for passing data in specific frequency, such as 2.4GHz.

BSS (Basic Service Set): The conceptual area within which members of a basic service set may communicate Infrastructure mode

ESS (Extended Service Set): A set of one or more interconnected BSSs and integrated WLANs. Infrastructure mode

IBSS (Independent BSS)─ Ad-Hoc modeAuthentication

Association Wired Equivalent Privacy (WEP) Wireless Distribution System (WDS)

The whole interconnected Wireless LAN, including the different cells, their respective Access Points and the Distribution System

Network Definitions

Page 13: Http:// 802.11b Access Point and Device Point Technical training.

Infrastructure-BSS

BSS/ESS uses infrastructure mode.

Wired Network

Access Point

Client

Basic Service Set – single cell

Page 14: Http:// 802.11b Access Point and Device Point Technical training.

Infrastructure-ESS

Wired NetworkAccess Point

Client

Access Point

Client

Page 15: Http:// 802.11b Access Point and Device Point Technical training.

Ad-Hoc (IBSS)

IBSS uses Ad-Hoc mode

Page 16: Http:// 802.11b Access Point and Device Point Technical training.

How to Join the Infrastructure Network

Wired Network

Access Point

Client

ID : SanDisk1

Channel 7

Open system

w/o WEP

Searching

Auth.

Assoc.

Connected

ΘΞΠ

ΘΞΠ

ΘΞΠ

Page 17: Http:// 802.11b Access Point and Device Point Technical training.

Synchronization Searching target wireless networks

Active Scanning (STA probes a frame) Passive Scanning (STA waits for a Beacon) – XI-815

The Authentication Process To get authenticated from the target wireless network

The Association Process A state where a client is allowed to pass data through an AP

Additional Authentication(802.1x) Exchange the ID & Password with RADIUS server

How to Join Infrastructure Network

Page 18: Http:// 802.11b Access Point and Device Point Technical training.

Roaming

Page 19: Http:// 802.11b Access Point and Device Point Technical training.

Inter-cell Roaming

Page 20: Http:// 802.11b Access Point and Device Point Technical training.

The Unlicensed Radio Frequency Spectrum

5.15-5.35

5.725-5.825GHz

IEEE 802.11a

HiperLAN/2

Page 21: Http:// 802.11b Access Point and Device Point Technical training.

Physical Layer

802.11a 802.11g 802.11b

Standard Approved

September 1999 September 1999 September 1999

Available Bandwidth

300MHz 83.5MHz 83.5MHz

Unlicensed Frequencies of

Operation

5.15-5.35GHz

5.725-5.825GHz

2.4-2.4835GHz 2.4-2.4835GHz

Number of Non-overlapping Channels

4(Indoor)

4(Indoor/Outdoor)

4(Indoor/Outdoor)

3(Indoor/Outdoor) 3(Indoor/Outdoor)

Data Rate Per Channel

6,9,12,18,24,36,48,54Mbps

1,2,5.5,11

6,9,12,18,22,24,33,36,48,54Mbps

1,2,5.5,11Mbps

Modulation OFDM DSSS,OFDM

PBCC(O),CCK-OFDM(O)

DSSS

CCK

Page 22: Http:// 802.11b Access Point and Device Point Technical training.

Channel Plan – 802.11/11b/11g

Page 23: Http:// 802.11b Access Point and Device Point Technical training.

2.412

2.437

2.462

Non-overlapping channels

Channel Spacing (5MHz)

Page 24: Http:// 802.11b Access Point and Device Point Technical training.

111

11

116

66

1

1 1

11

1

11

6

1111

6

6

1

13

3

32

22

1

1 1

11

1

3

2

33

2

2

Channel Plan : {1,6,11} or {…}Hidden notes interfere

Co-Channel Interference

Page 25: Http:// 802.11b Access Point and Device Point Technical training.

Sources of interference in 2.4GHz band Main Source: consumer microwave ovens – Spread Spectrum Receiver design allows narrowband interference – Rate reduction allows even more robust operation Other radios – RFID tag ( radio frequency ID tag ) – Generally, various systems , such as FHSS and DSSS in the 2.4GHz and will interfere with each other All FHSS systems will interfere with each other to some extent Bluetooth, IEEE802.11 and Home RF are currently imcompatible and

will interfere IEEE802.11 and Home RF interoperability is currently being evaluated

by Home RF working group

Robust for Interference

Page 26: Http:// 802.11b Access Point and Device Point Technical training.

Security

Page 27: Http:// 802.11b Access Point and Device Point Technical training.

Why Security is so important?

Privacy Preventing Unauthorized Access

Information security (read only/fully authorized)

Preventing Attacks Virus

Personal Security Policy Networking Security Policy

Tunnel Firewall

Page 28: Http:// 802.11b Access Point and Device Point Technical training.

How to protect your network?

Use virus protection software Use firewall Set up personal and group firewall. Do not open unknown email attachments Do not run programs of unknown origin Disable hidden filename extensions Keep all applications (including your operating system) patched Turn off your computer or disconnect from the network when not in

use Disable Java, JavaScript, and ActiveX if possible Disable scripting features in email programs Make regular backups of critical data Make a boot disk in case your computer is damaged or

compromised

Page 29: Http:// 802.11b Access Point and Device Point Technical training.

SSID (Wireless network name)

Authentication

Open system

Share Key

MAC address Control

WEP-keys

Security in the 802.11b

Page 30: Http:// 802.11b Access Point and Device Point Technical training.

However…

Wireless Network Vulnerability

2.4GHz radio signal and unlicensed band

Broadcasting all the time WEP Encryption has been broken by certain

means, it is not secure any more. Authentication process is not strong enough since

WEP encryption has been defeated.

Page 31: Http:// 802.11b Access Point and Device Point Technical training.

Recommendation 1

More secure with WEP on than with WEP off. The wireless link between the AP and client is only one

small part of a secure network. Large companies should implement end-to-end security

VPN, RADIUS, IEEE 802.1x Home and small business can take several measures to

improve security until a solution is available

Page 32: Http:// 802.11b Access Point and Device Point Technical training.

Recommendation 2

Turn WEP on and manage your WEP key by changing the default key

Changing the WEP key, daily to weekly. Password protect drives and folders. Change the default SSID (Wireless Network Name). Use MAC address control. Use a VPN system. Though it would require a VPN server,

the VPN client is already included in many operating systems such as Windows 98 Second Edition, Windows 2000 and Windows XP.

Page 33: Http:// 802.11b Access Point and Device Point Technical training.

802.11b Access Point

Page 34: Http:// 802.11b Access Point and Device Point Technical training.

Solution

Atmel (Z-Com)

Power Supply- 5V

LAN Port One 10Base RJ-45 LAN port – a cross Ethernet cable is included

Antenna Design One Dipole and one PIFA

Hardware Overview

Page 35: Http:// 802.11b Access Point and Device Point Technical training.

PWR Yellow Power enabled

WLAN Yellow

Flashing: Wireless LAN traffic activity

LAN Yellow

Off: No Ethernet traffic activity

Flashing: Wired LAN traffic activity

On: Connect to the Ethernet.

Led Status

Off: No Wireless LAN activity

Page 36: Http:// 802.11b Access Point and Device Point Technical training.

Feature Highlights

AP Operation ModesAP Operation Modes AP AP RepeaterRepeater AP with RepeatingAP with Repeating

Configuration Management Web-based and Windows-based

configuration SNMP MIBII support

Page 37: Http:// 802.11b Access Point and Device Point Technical training.

AP with Repeating

AP with Repeating

Wired Network

AP with Repeating

AP with Repeating

Wired Network The AP is capable of performing AP and Wireless Bridge function at the

same time. Same channel is required for all bridges.

Page 38: Http:// 802.11b Access Point and Device Point Technical training.

AP / Repeater only

AP with Repeating

Wired Network

Wired Network

Repeater BridgeWhile using a wireless bridge in this configuration has the advantage of extending the link, it has the disadvantage of decreased throughput due to having to repeat all frames using the same half duplex radio. Same channel is required for all bridges.

Bridge

(repeater)

Bridge

(repeater)

Page 39: Http:// 802.11b Access Point and Device Point Technical training.

Standard:Standard:

Wi-Fi Compliant (not certified)Wi-Fi Compliant (not certified)

SecuritySecurity

WEP encryption up to 128-bitsWEP encryption up to 128-bits

MAC Filtering (up to 128 wireless nodes)MAC Filtering (up to 128 wireless nodes)

Hidden Access PointHidden Access Point

Feature Highlights (Cont.)

Page 40: Http:// 802.11b Access Point and Device Point Technical training.

What security means does 802.11b Access Point provide? (I)

WEP 40bit encryption

Alphanumeric: 5 characters Hexadecimal: 10 hexadecimal digits

128bit encryption Alphanumeric: 13 characters Hexadecimal: 26 hexadecimal digits

Page 41: Http:// 802.11b Access Point and Device Point Technical training.

What security means does 802.11b Access Point provide? (II)

MAC Access Control Enable MAC access control

Click “Add” to enter MAC addresses

Click “Apply”

Only the client with the MAC address that is listed on the table is allowed to associate with the Access Point

At most 128 clients

Page 42: Http:// 802.11b Access Point and Device Point Technical training.

What security means does 802.11b Access Point provide? (III)

Enable Security and select “Hide Access Point” to make AP invisible for AP browsing engaged by stations.

If stations get the correct SSID, stations still can connect to AP by assigning SSID manually.

Page 43: Http:// 802.11b Access Point and Device Point Technical training.

802.11b Access Point Management/Configuration

Page 44: Http:// 802.11b Access Point and Device Point Technical training.

How to configure the 802.11b Access Point

Via Web-based utility

Via Windows-based utility

Page 45: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility

Password: default

By installing and using Wireless Access Point

Utility in Any PC on the local network,

you may then access and

configure the Wireless

Station Adapter Anywhere

on the local network.

Page 46: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility - Info

Shows the Current

Information of the Wireless

Station Adapter, including

ESSID, AP name, Channel, Mode, SNMP, DHCP Client,

IP address, subnetmask and

default gateway.

Page 47: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility – Parameter Setup

Configurable parameters

includes ESSID, AP name, Channel, Mode, SNMP, DHCP Client, IP address subnetmask, default gateway and password.

Page 48: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility – Security

To prevent unauthorized

wireless stations from

accessing data transmitted

over the network, the

Wireless LAN Micro Access Point offers security

Options such as WEP, MAC Access Control as well as Hide AP Access.

Page 49: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility – WEP

For 40-bit WEPASCII: 5 characters (case sensitive) ranging from “a-z”, “A-Z” and “0-9” (e.g. MyKey) Hex: 10 hexadecimal digits in the range of “A-F”, “a-f” and “0-9” (e.g. 11AA22BB33) Passphrase: click Generate to generate WEP keys automatically.

For 128-bit WEPASCII: 13 characters (case sensitive) ranging from “a-z”, “A-Z” and “0-9” (e.g. MyKey12345678) Hex: 26 hexadecimal digits in the range of “A-F”, “a-f” and “0-9” (e.g. 00112233445566778899AABBCC)Passphrase : click Generate to generate WEP keys automatically.

Page 50: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility – MAC Access Control

With the Access Control Table enabled, you can authorize wireless units to access the Access Point by identifying the MAC address of the wireless devices that are allowed access to transmit data.

Page 51: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility – Hide AP Access

With hide AP access enabled by checking “Hide AP Access” check box, wireless stations with ESSID

“ANY” will not browser and associate to the Wireless Micro Access Point.

Page 52: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility – About

Shows the Current

Utility and Firmware of the

Wireless Access point

Page 53: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility – About

With the Firmware Upgrade Utility, you will be able to upgrade any of the 802.11b Access Point on the network.

Password : default

Page 54: Http:// 802.11b Access Point and Device Point Technical training.

WEB-Based Utility – Login

Page 55: Http:// 802.11b Access Point and Device Point Technical training.

WEB-Based Utility – Info

Page 56: Http:// 802.11b Access Point and Device Point Technical training.

WEB-Based Utility – Configuration

Page 57: Http:// 802.11b Access Point and Device Point Technical training.

WEB-Based Utility – WEP

Page 58: Http:// 802.11b Access Point and Device Point Technical training.

WEB-Based Utility – Hide AP and MAC Access Control

Page 59: Http:// 802.11b Access Point and Device Point Technical training.

WEB-Based Utility – TCP/IP

Page 60: Http:// 802.11b Access Point and Device Point Technical training.

802.11b Access Point FAQs

Page 61: Http:// 802.11b Access Point and Device Point Technical training.

How to reset 802.11b Access Point to the default?

Software Press the “Default”

button of the utility.

Hardware Press the “Default”

button by the side of the LAN port on hardware

Page 62: Http:// 802.11b Access Point and Device Point Technical training.

How to upgrade firmware

Firmware upgrade utility

Add *.bin file

Press “Upgrade” button.

Page 63: Http:// 802.11b Access Point and Device Point Technical training.

How many Wireless Bridges can the 802.11b Access Point grant the connection with?

Software limit At most 256 clients

Suggestion No more than 4 clients

Cells around each repeater will overlap by a minimum of 50%

Page 64: Http:// 802.11b Access Point and Device Point Technical training.

How to use the “AP with Repeating Mode”

From the “Mode” item on utility, select “AP+Repeater” .

The same channel is required to all Access Points.

Page 65: Http:// 802.11b Access Point and Device Point Technical training.

How does SNMP work in 802.11b Access Point?

Enable SNMP. Install a SNMP

management tool to compile the 802.11 MIB files and use the tool or other tools to monitor the SNMP agent in WL-013.

Page 66: Http:// 802.11b Access Point and Device Point Technical training.

802.11b Device Point

Page 67: Http:// 802.11b Access Point and Device Point Technical training.

802.11b Device point Hardware Overview

Solution

Atmel (Z-Com)

Power Supply- 5V

LAN Port One 10Base RJ45 LAN port, a cross Ethernet cable is included

Antenna Design One Dipole and one PIFA

Output Power18dBm typical

Page 68: Http:// 802.11b Access Point and Device Point Technical training.

802.11b Access Point Operation ModeOperation Mode Perform as wireless client stationPerform as wireless client station

Configuration Management Web-based and Windows-based configuration (support

98\ME\NT\2K\XP.

802.11b Access Point Feature Highlights

Type of Approval Europe: EC-Type Approval Certificate ETS 300 328 Test Report North America: FCC, IC Japan: MKK/TELEC/JATE Taiwan: DGT/BSMI

Page 69: Http:// 802.11b Access Point and Device Point Technical training.

PWR Yellow Power enabled

WLAN Yellow

Off: No Wireless LAN traffic activity

Flashing: Wireless LAN traffic activity

On: Associated to the Wireless AP.

LAN Yellow

Off: No Ethernet traffic activity

Flashing: Wired LAN traffic activity

On: Connect to the Ethernet.

Hardware Overview (Cont.)

Page 70: Http:// 802.11b Access Point and Device Point Technical training.

SecuritySecurity WEP encryption up to 128-bitsWEP encryption up to 128-bits

MAC Filtering (up to 128 wireless nodes)MAC Filtering (up to 128 wireless nodes)

Support of 802.1x (not yet)Support of 802.1x (not yet)

Feature Highlights (Cont.)

Page 71: Http:// 802.11b Access Point and Device Point Technical training.

What security means does the 802.11b Device

Point provide?

WEP 64bit encryption

Alphanumeric: 5 characters Hexadecimal: 10 hexadecimal digits

128bit encryption Alphanumeric: 13 characters Hexadecimal: 26 hexadecimal digits

Passphrase ASCII string

802.1x later

Page 72: Http:// 802.11b Access Point and Device Point Technical training.

Act just like Wireless Station

Access Point

Wired N

etwork

Device Point

Device Point

Internet

Page 73: Http:// 802.11b Access Point and Device Point Technical training.

Act just like Wireless Station

Access Point

Wired N

etwork

Device Point

Multi-Client Support

(will be available)

Device Point

Internet

Page 74: Http:// 802.11b Access Point and Device Point Technical training.

How to configure the 802.11b Device Point?

Via Web-based utility

Via Windows-based utility

Page 75: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility

Password: default

By installing and using

Station Adapter Utility in

Any PC on the local network,

you may then access and

configure the 802.11b

Device Point Anywhere

on the local network.

Page 76: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility - Info

Shows the Current

Information of the Device point, including

ESSID, AP name, TX rate,

IP address, subnetmask and

default gateway.

Page 77: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility – Parameter Setup

Configurable parameters

includes ESSID, AP name, TX

rate, IP address subnetmask,

default gateway and password.

Page 78: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility – Security

To prevent unauthorized

wireless stations from

accessing data transmitted

over the network, the 802.11b Device Point offers

WEP security

options.

Page 79: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility – Security

For 40-bit WEPASCII: 5 characters (case sensitive) ranging from “a-z”, “A-Z” and “0-9” (e.g. MyKey) Hex: 10 hexadecimal digits in the range of “A-F”, “a-f” and “0-9” (e.g. 11AA22BB33) Passphrase: click Generate to generate WEP keys automatically.

For 128-bit WEPASCII: 13 characters (case sensitive) ranging from “a-z”, “A-Z” and “0-9” (e.g. MyKey12345678) Hex: 26 hexadecimal digits in the range of “A-F”, “a-f” and “0-9” (e.g. 00112233445566778899AABBCC)Passphrase : click Generate to generate WEP keys automatically.

Page 80: Http:// 802.11b Access Point and Device Point Technical training.

Windows-Based Utility – About

Shows the Current

Utility and Firmware of the

802.11b Device Point

Page 81: Http:// 802.11b Access Point and Device Point Technical training.

Firmware UpgradeUtility

Allow you to upgrade the firmware for the Device point.

Password: default

Page 82: Http:// 802.11b Access Point and Device Point Technical training.

WEB-Based Utility – Info

Page 83: Http:// 802.11b Access Point and Device Point Technical training.

802.11b Device Point FAQs

Page 84: Http:// 802.11b Access Point and Device Point Technical training.

How to reset the 802.11b Device Point to the default?

Software Press the “Default”

button of the utility.

Hardware Press the “Default”

button by the side of the LAN port on hardware

Page 85: Http:// 802.11b Access Point and Device Point Technical training.

How to upgrade firmware

Firmware upgrade utility

Add *.bin file

Press “Upgrade” button.

Page 86: Http:// 802.11b Access Point and Device Point Technical training.

Does the 802.11b Device Point support Wireless Workgroup Bridge?

No, not today: But it will support Wireless Ethernet Bridge

(same as Wireless Workgroup Bridge) on the later version.

The number of Ethernet clients will be limited to under 8.

Page 87: Http:// 802.11b Access Point and Device Point Technical training.

Demonstration/ Hands On Training

Page 88: Http:// 802.11b Access Point and Device Point Technical training.

Questions