Adding Prohibited APs

To add a Prohibited AP:

  1. To add access points manually to the Prohibited APs list, from the Prohibited APs screen, click New. The Prohibited APs dialog displays.
    Click to expand in new window
    Graphics/prohibited_aps_dialog.jpg
  2. For MAC Address, specify the MAC address for the Prohibited AP.
  3. For Description, enter a brief description of the AP.
  4. For Action, select from the following options:
    • Report presence only - When the MAC address of the prohibited AP is detected by an authorized scanning AP, the prohibited AP's presence will be reported in an event message. This in turn will result in the presence of the MAC being included in the Radar threat reports. No countermeasures will be taken against the device with the MAC address by Radar.

    • Treat like an internal honeypot AP - The device with the MAC address is considered to be as harmful as an AP that is 'impersonating' one of the authorized APs. If countermeasures are enabled, no devices will be allowed to associate to this MAC address, including devices of other neighboring enterprises.

    • Treat like an external honeypot - The device with the entered MAC address is considered to be as harmful as an AP that is advertising a popular SSID. Authorized devices will be prohibited from roaming to the device with this MAC address. Unauthorized devices and unrecognized devices will be allowed to roam to the device with the MAC address.

  5. Click Save. The new access point is displayed in the Prohibited APs list.

    For information about reclassifying an existing AP to Prohibited, see .