Security Mode
Security mode defines how the controller behaves when registering new, unknown devices. During the registration process, the controller‘s approval of the AP‘s serial number depends on the security mode that has been set:
- Allow all APs to
connect
- If the
controller does not recognize the registering serial number, a new
registration record is automatically created for the AP (if within MDL
license limit). The AP receives a default configuration. The default
configuration can be the default template assignment.
- If the
controller recognizes the serial number, it indicates that the registering
device is pre-registered with the controller. The controller uses the
existing registration record to authenticate the AP and the existing
configuration record to configure the AP.
- Allow only
approved APs to connect (this is also known as secure mode)
- If
controller does not recognize the AP, the AP's registration record is
created in pending state (if within MDL limits). The administrator is
required to manually approve a pending AP for it to provide active service.
The pending AP receives minimum configuration only, which allows it to
maintain an active link with the controller for future state change. The
AP's radios are not configured or enabled. Pending APs are not eligible for
configuration operations (VNS Assignment, default template, Radio
parameters) until approved.
- If the
controller recognizes the serial number, the controller uses the existing
registration record to authenticate the AP. Following successful
authentication, the AP is configured according to its stored configuration
record.
During the initial setup of the network, Extreme Networks recommends that you select the
Allow all Wireless APs to connect option.
This option is the most efficient way to get a large number of APs
registered with the controller. Once the initial setup is complete,Extreme Networks recommends that you reset the security mode to
the Allow only approved Wireless APs to connect
option. This option ensures that no unapproved APs are allowed to
connect. For more information, see Configuring Wireless AP Properties.