Creating a Restricted AP Access Profile
The Access Point (AP) is a critical node
in the network that can be at risk of the malicious attacks as some of its ports
are open.
The Restricted AP Access Profile addresses this kind of risk and enhances AP security.
- By blocking access to the standard well know open ports on the AP, such as:
- By blocking access to the Internal ports on the AP (used mainly for Ruckus internal communication), such as:
- By providing a mechanism to block any ports or port range to restrict access.
- By allowing the AP to be accessed by authorized users.
To create a Restricted AP Access profile, perform the following steps.
- Click .
- In the Restricted AP Access screen, select a zone from the system tree, and click Create
- Enter the following:
- Name: Type a name to identify the Restricted AP Access Profile.
- Description: Type a short description for the Restricted AP Access Profile.
- Blocked Port List: Select the protocol (TCP, UDP or Both) from the Protocol drop-down, and enter the port number in the Port field and click Add to add the entries or click Cancel to re-type and add the entry. The protocol and the port get listed in the table below the Blocked Port List. Select an entry and click Delete to remove the values in the table.
- Block well known ports: Click the toggle button to enable blocking all well known ports.
- IP Address Whitelist: When Restricted AP Access is enabled, network devices may use a non-whitelisted IPv6 IP address for Restricted AP Access related operations, which may cause unexpected result. So, it is recommended to add IPv6 IP addresses manually.
- Click OK.
%20Security%20Guide,%207.0.0_v2_GUID-9776BC06-4AEA-4521-AB37-73BC6B335D0F/Creating%20Restricted%20AP%20Access%20Profile=GUID-DCA66C16-5C74-4A4A-B99F-C3C49BC7764E=1=en-US=Low.png)