ACLs on Cisco WiSMs

2009-04-21 Thread Lee H Badman
Wondering if anyone is doing any real ACLing on the WiSM blades? This is an area we have flirted with a few times, but never real did much with in prod- leaving the ACLing on the attached routers. Just curious... -Lee Lee H. Badman Wireless/Network Engineer Information Technology and Services

RE: [WIRELESS-LAN] ACLs on Cisco WiSMs

2009-04-21 Thread Case, Brandon J
Lee, We use ACLs on two of our walled garden SSIDs that share a subnet but have different lists of allowed resources. They seem to work pretty well although I wouldn't dare try to add them through the CLI initially. It also helps when you remember that enabling an ACL anywhere automatically

Re: [WIRELESS-LAN] PSK best practices

2009-04-21 Thread Mike King
I second the switch to some kind of EAP, most likely 802.1x with PEAP or TTLS. I'd also take the opportunity to remove WPA and exclusively use WPA2, or at least separate them. The only thing that should really require WPA at this point are consumer equipment by bad manufacturers. **