Use the switches under IDS to enable AirDefense to work with some specific
features. The following configurations are available under IDS:
- SSLv3—Use this switch to
enable/disable support for SSLv3, TLSv1.0 and
TLSv1.1
protocols. Recently these protocols were found vulnerable and we recommend that
you do not use them. However, if your deployment has access points and sensors
that support these protocols, we recommend that you enable this switch.
Otherwise, you should evaluate the devices in your network and consider
disabling support for SSLv3, TLSv1.0 and TLSv1.1 protocols
using this switch.
- FTMODE—Use this switch to
enable/disable Fast Termination. When enabled, AirDefense internally adjusts various
operating parameters and configurations to support Fast Termination.
- SPOOF—Use this switch to
enable/disable AirDefense's new MAC Spoof
Detection algorithm. This algorithm uses Forensic data and
forensic queries to raise the new "MAC Spoof Detected" alarm. If you are not
interested in this new alarm, we recommend you disable this alarm using this
switch. By default, this switch is enabled.