Creating an Open Network
You can create a network that allows users to join the network without going through any authentication process.
CAUTION: RUCKUS
strongly advises against creating an open network. Wireless communication on an open
network is not secure and information (including sensitive data, such as personal
information, credit card information, and so on) that your users send over or
through the network can easily be intercepted.
-
On the navigation bar, click
Wi-Fi > Wi-Fi
Networks > Wi-Fi Networks
List.
The Networks page is displayed.
-
Click Add Wi-Fi
Network. Alternatively, select a Open Network setting that you want
to copy and click Clone at the top of the table.
The Create New Network page is displayed.
-
Complete the following settings
on the Network Details page.
- Network Name: Enter a name (up to 32 characters) that you want assign to the network.
- Set different SSID: Use this option to configure the SSID different from the network name.
- Description: Enter a description (up to 64 characters) to help you identify the network using.
- Network Type: Click Open Network.
When the network type is selected, a structure diagram of a Open Network type is displayed. -
Click Next.
The Open Settings page is displayed.
- Toggle the OWE encryption switch to enable this feature and configure OWE Transition mode.
-
Toggle the OWE
Transition mode switch to enable this feature
The migration from an open Wi-Fi network to an enhanced open Wi-Fi network is completed step by step, while user devices are also gradually upgrading. For STAs that do not support OWE authentication, the OWE transition mode is available so that such STAs can access the network in open authentication mode. Meanwhile, the OWE transition mode allows OWE-capable STAs to access the network in OWE authentication mode. The OWE transition mode is implemented as follows:
- Two SSIDs are created on an AP, for example, SSID 1 for open authentication and SSID 2 for OWE authentication.
- SSID 1 is broadcast,
and SSID 2 is hidden. Therefore, only SSID 1 is visible to STAs.
SSID 1 carries an OWE Transition Mode element and SSID 2
information. When an OWE-capable STA connects to SSID 1, it is
directly associated with SSID 2 in OWE transition mode.
- Non OWE-capable device connects SSID1
- OWE-capable device connect to SSID2 from SSID1
-
For the MAC
Authentication option, toggle the switch to enable this feature
and complete the following fields:
Note: MAC Authentication provides an additional level of secuirity for corporate networks. Client MAC addresses are passed to the configured RADUIS servers for authentication and accounting. You cannot modify previously configured MAC authentication settings. To accommodate any modifications, you must create a new MAC authentication settings.Note: You must enable the MAC Authentication and configure a authentication server to use the Dynamic VLAN feature.
- Select one option from
the following:
- MAC
Registration List: Complete the following
fields:
- MAC
Registration List: Select the MAC
registration from the drop down list or add a new MAC
registration.
- Click Add to add a new MAC registration. The Add MAC Registration List dialog box is displayed.
- Complete the following fields:
- Name: Enter a name for the MAC registration list.
- List Expiration: Select one option
from the following:
- Never expires: This license do not have a expiry date.
- Date: Select date, month, and year. This license expire after the selected date.
- After: Select a number from the drop down list and select a duration of license expiration in Hours, Days, Weeks, Months, and Years. This license expire after the selected duration.
- Automatically clean expired entries: Toggle switch to ON to enable this feature.
- Access Policy Set: Select an access
policy set from the drop down list or add a new
access policy set.
- Click Add Access Policy Set to add a new access policy set. Refer to Creating an Adaptive Policy.
- Click Apply.
- MAC
Registration List: Select the MAC
registration from the drop down list or add a new MAC
registration.
- External MAC
Auth: Select the external MAC authentication and
complete the following fields:
- Authentication Service: Select a RADIUS
authentication server from the drop down list or add a
new RADIUS authentication server.
- Click Add Server to add a new RADIUS authentication server. Refer to Adding and Managing a Radius Server Profile.
- Proxy Service: Toggle switch
to ON to enable the proxy service.Note: Use the controller as proxy in 802.1X networks. A proxy AAA server is used when APs send authentication/accounting messages to the controller and the controller forwards these messages to an external AAA server.
- Accounting Service: Toggle switch to
ON to enable the accounting service.
Select a RADIUS accounting server from the drop down
list or add a new RADIUS accounting server.
- Click Add Server to add a new RADIUS authentication server. Refer to Adding and Managing a Radius Server Profile.
- Proxy Service: Toggle switch
to ON to enable the proxy service.Note: Use the controller as proxy in 802.1X networks. A proxy AAA server is used when APs send authentication/accounting messages to the controller and the controller forwards these messages to an external AAA server.
- Authentication Service: Select a RADIUS
authentication server from the drop down list or add a
new RADIUS authentication server.
- MAC
Registration List: Complete the following
fields:
- Select one option from
the following:
-
Click Show more
settings.
By default, the VLAN sub-tab is displayed. Each sub-tab includes additional Wi-Fi configuration options to configure the settings of your preference. Refer to Configuring Additional Settings for a Wi-Fi Network to configure each of the available settings.
Note:Demonstration of Advanced Settings for a Wi-Fi Network. This video explains advanced settings for a Wi-Fi network and walks you through the process of configuring them.
-
Click Next.
The Venues page is displayed.
-
Complete the following steps to
configure a venue:
-
Select the venues in
which you want to activate this network:
- To activate the network in all of your venues, select the check box beside Venue at the top of the table and click Activate.
- To activate the network in a specific venue, locate the venue from the list, and set the switch to ON in the Activated column.
The APs, Radio, and Scheduling of the selected venue is displayed in the table.
-
By default, this network
configuration is applicable for all APs and with Radio Band of 2.4 and 5
GHz. To select specific AP groups and modify Radio Band, complete the
following steps:
- Click All APs in the APs column. The Select APs dialog box is displayed. To activate this network on all current and future APs at this venue. You can also choose a radio band of 2.4 GHz, 5 GHz, or both.
- Click Select specific AP groups to activate this network on specific AP groups including any AP that is added to selected AP groups in the future. The APs not assigned to any group option is displayed. After APs not assigned to any group is selected, VLAN and Radio Band options are displayed:
- In the VLAN option, by default VLAN-1 is selected. Click Edit (pencil icon) icon and configure the VLAN or VLAN pool for the selected AP group.
- In the Radio Band option, select 2.4 GHz, 5 GHz, or both 2.4 and 5 GHz from the drop down list for the selected AP group.
- Click Apply.
-
By default, this network
configuration is scheduled for 24/7. To configure the
Scheduling, complete the following steps:
- Click 24/7 in the Scheduling
column. The Schedule for Network
<network-name> in Venue <venue-name>
dialog box is displayed. You can also choose a schedule of 24/7
or follow below steps to customize the schedule.
- Click Custom Schedule.
- Network schedule is customized as per the your requirement. You can configure the schedule for Monday through Sunday and from midnight to midnight (from 00:00 hours through 23.59 hours). For more information, click See tips. The Network Scheduler Tips dialog box is displayed.
- Click OK to close the Network Scheduler Tips dialog box.
- Click Apply.
- Click 24/7 in the Scheduling
column. The Schedule for Network
<network-name> in Venue <venue-name>
dialog box is displayed. You can also choose a schedule of 24/7
or follow below steps to customize the schedule.
-
Select the venues in
which you want to activate this network:
-
Click Next.
The Summary page is displayed.
- Review the settings that you configured.
- Click Finish.