Creating an Open Network

You can create a network that allows users to join the network without going through any authentication process.

Complete the following steps to create an open network.
CAUTION: RUCKUS strongly advises against creating an open network. Wireless communication on an open network is not secure and information (including sensitive data, such as personal information, credit card information, and so on) that your users send over or through the network can easily be intercepted.
  1. On the navigation bar, click Wi-Fi > Wi-Fi Networks > Wi-Fi Networks List.
    The Networks page is displayed.
  2. Click Add Wi-Fi Network. Alternatively, select a Open Network setting that you want to copy and click Clone at the top of the table.
    The Create New Network page is displayed.
  3. Complete the following settings on the Network Details page.
    • Network Name: Enter a name (up to 32 characters) that you want assign to the network.
    • Set different SSID: Use this option to configure the SSID different from the network name.
    • Description: Enter a description (up to 64 characters) to help you identify the network using.
    • Network Type: Click Open Network.
    When the network type is selected, a structure diagram of a Open Network type is displayed.
  4. Click Next.
    The Open Settings page is displayed.
  5. Toggle the OWE encryption switch to enable this feature and configure OWE Transition mode.
  6. Toggle the OWE Transition mode switch to enable this feature
    The migration from an open Wi-Fi network to an enhanced open Wi-Fi network is completed step by step, while user devices are also gradually upgrading. For STAs that do not support OWE authentication, the OWE transition mode is available so that such STAs can access the network in open authentication mode. Meanwhile, the OWE transition mode allows OWE-capable STAs to access the network in OWE authentication mode. The OWE transition mode is implemented as follows:
    • Two SSIDs are created on an AP, for example, SSID 1 for open authentication and SSID 2 for OWE authentication.
    • SSID 1 is broadcast, and SSID 2 is hidden. Therefore, only SSID 1 is visible to STAs. SSID 1 carries an OWE Transition Mode element and SSID 2 information. When an OWE-capable STA connects to SSID 1, it is directly associated with SSID 2 in OWE transition mode.
      • Non OWE-capable device connects SSID1
      • OWE-capable device connect to SSID2 from SSID1
    Enabling OWE Encryption
  7. For the MAC Authentication option, toggle the switch to enable this feature and complete the following fields:
    Enabling MAC Authentication
    Note: MAC Authentication provides an additional level of secuirity for corporate networks. Client MAC addresses are passed to the configured RADUIS servers for authentication and accounting. You cannot modify previously configured MAC authentication settings. To accommodate any modifications, you must create a new MAC authentication settings.
    Note: You must enable the MAC Authentication and configure a authentication server to use the Dynamic VLAN feature.
    • Select one option from the following:
      • MAC Registration List: Complete the following fields:
        • MAC Registration List: Select the MAC registration from the drop down list or add a new MAC registration.
          1. Click Add to add a new MAC registration. The Add MAC Registration List dialog box is displayed.
            Add MAC Registration List Dialog Box
          2. Complete the following fields:
            • Name: Enter a name for the MAC registration list.
            • List Expiration: Select one option from the following:
              • Never expires: This license do not have a expiry date.
              • Date: Select date, month, and year. This license expire after the selected date.
              • After: Select a number from the drop down list and select a duration of license expiration in Hours, Days, Weeks, Months, and Years. This license expire after the selected duration.
            • Automatically clean expired entries: Toggle switch to ON to enable this feature.
            • Access Policy Set: Select an access policy set from the drop down list or add a new access policy set.
              1. Click Add Access Policy Set to add a new access policy set. Refer to Creating an Adaptive Policy.
          3. Click Apply.
      • External MAC Auth: Select the external MAC authentication and complete the following fields:
        • Authentication Service: Select a RADIUS authentication server from the drop down list or add a new RADIUS authentication server.
          1. Click Add Server to add a new RADIUS authentication server. Refer to Adding and Managing a Radius Server Profile.
        • Proxy Service: Toggle switch to ON to enable the proxy service.
          Note: Use the controller as proxy in 802.1X networks. A proxy AAA server is used when APs send authentication/accounting messages to the controller and the controller forwards these messages to an external AAA server.
        • Accounting Service: Toggle switch to ON to enable the accounting service. Select a RADIUS accounting server from the drop down list or add a new RADIUS accounting server.
          1. Click Add Server to add a new RADIUS authentication server. Refer to Adding and Managing a Radius Server Profile.
        • Proxy Service: Toggle switch to ON to enable the proxy service.
          Note: Use the controller as proxy in 802.1X networks. A proxy AAA server is used when APs send authentication/accounting messages to the controller and the controller forwards these messages to an external AAA server.
  8. Click Show more settings.

    By default, the VLAN sub-tab is displayed. Each sub-tab includes additional Wi-Fi configuration options to configure the settings of your preference. Refer to Configuring Additional Settings for a Wi-Fi Network to configure each of the available settings.

    Note:

    Demonstration of Advanced Settings for a Wi-Fi Network. This video explains advanced settings for a Wi-Fi network and walks you through the process of configuring them.

    Click to play video in full screen mode.

  9. Click Next.
    The Venues page is displayed.
  10. Complete the following steps to configure a venue:
    1. Select the venues in which you want to activate this network:
      • To activate the network in all of your venues, select the check box beside Venue at the top of the table and click Activate.
      • To activate the network in a specific venue, locate the venue from the list, and set the switch to ON in the Activated column.

      The APs, Radio, and Scheduling of the selected venue is displayed in the table.

      Selecting Venues
    2. By default, this network configuration is applicable for all APs and with Radio Band of 2.4 and 5 GHz. To select specific AP groups and modify Radio Band, complete the following steps:
      1. Click All APs in the APs column. The Select APs dialog box is displayed. To activate this network on all current and future APs at this venue. You can also choose a radio band of 2.4 GHz, 5 GHz, or both.
        Select APs Dialog Box
      2. Click Select specific AP groups to activate this network on specific AP groups including any AP that is added to selected AP groups in the future. The APs not assigned to any group option is displayed. After APs not assigned to any group is selected, VLAN and Radio Band options are displayed:
        Select specific AP groups
      3. In the VLAN option, by default VLAN-1 is selected. Click Edit (pencil icon) icon and configure the VLAN or VLAN pool for the selected AP group.
      4. In the Radio Band option, select 2.4 GHz, 5 GHz, or both 2.4 and 5 GHz from the drop down list for the selected AP group.
      5. Click Apply.
    3. By default, this network configuration is scheduled for 24/7. To configure the Scheduling, complete the following steps:
      1. Click 24/7 in the Scheduling column. The Schedule for Network <network-name> in Venue <venue-name> dialog box is displayed. You can also choose a schedule of 24/7 or follow below steps to customize the schedule.
        Schedule for Network Dialog Box
        1. Click Custom Schedule.
        2. Network schedule is customized as per the your requirement. You can configure the schedule for Monday through Sunday and from midnight to midnight (from 00:00 hours through 23.59 hours). For more information, click See tips. The Network Scheduler Tips dialog box is displayed.
          Network Scheduler Tips
        3. Click OK to close the Network Scheduler Tips dialog box.
        4. Click Apply.
  11. Click Next.
    The Summary page is displayed.
  12. Review the settings that you configured.
  13. Click Finish.