WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Reference Manual 350 East Plumeria Drive San Jose, CA 95134 USA December 2010 202-10755-01 1.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point ©2010 NETGEAR, Inc. All rights reserved. No part of this publication may be reproduced, transmitted, transcribed, stored in a retrieval system, or translated into any language in any form or by any means without the written permission of NETGEAR, Inc. Technical Support Thank you for choosing NETGEAR. To register your product, get the latest product updates, or get support online, visit us at http://support.netgear.com.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table of Contents Chapter 1 Introduction About the Wireless Access Point . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 7 Supported Features, Standards, and Conventions . . . . . . . . . . . . . . . . . . 8 Supported Standards and Conventions . . . . . . . . . . . . . . . . . . . . . . . . . 8 Key Features . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 8 802.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Chapter 3 Wireless Configuration and Security Wireless Data Security Options . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .33 Security Profiles . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .35 Before You Change the SSID, WEP, and WPA Settings . . . . . . . . . . . .36 Creating and Editing Security Profiles . . . . . . . . . . . . . . . . . . . . . . . . . .37 Configuring Static WEP . . .
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Viewing the Flash Management Information Screen . . . . . . . . . . . . 74 Viewing Wireless Information . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 74 Viewing the Basic Wireless Information Screen. . . . . . . . . . . . . . . . 75 Viewing the Wireless Clients Information Screen . . . . . . . . . . . . . . 75 Viewing Neighbor APs Information. . . . . . . . . . . . . . . . . . . . . . . . . . . . .
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Chapter 6 Troubleshooting Basic Functioning . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .112 No LEDs are Lit on the Wireless Access Point. . . . . . . . . . . . . . . . . . .112 The LAN LED is Not Lit. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .112 The Wi-Fi LED Does Not Light Up During Wireless Activity . . . . . . . . .
1. Introduction 1 The NETGEAR® WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Reference manual describes how to install, configure and troubleshoot the wireless access point. The information in this manual is intended for readers with intermediate computer and Internet skills The remainder of this chapter introduces the wireless access point. Minimal requirements for installation are on page 10.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Supported Features, Standards, and Conventions The WGAP150 is easy to use and provides complete wireless and networking support. Supported Standards and Conventions The following standards and conventions are supported: • Standards Compliant. The wireless access point complies with the IEEE 802.11n for Wireless LANs. • WEP support. Support for WEP is included. 64-bit, 128-bit, and 152-bit keys are supported. • Full WPA and WPA2 support.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point • Access Control. The Access Control MAC address filtering feature can ensure that only trusted wireless stations can use the WGAP150 to gain access to your LAN. • Security Profiles. When using multiple BSSIDs, you can configure unique security settings (encryption, MAC filtering, etc.) for each BSSID. • Wireless Quality of Service.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point System Requirements Before installing the WGAP150, make sure your system meets these requirements: • A category 5 UTP straight-through Ethernet cable with RJ-45 connector. • An external antenna. • A Web browser for configuration such as Microsoft Internet Explorer 6.0 or above, or Mozilla Firefox 1.5 or above. • At least one computer with the TCP/IP protocol installed. • 802.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Hardware Description The following figure shows a top view of the WGAP150 Figure 1-1 Rear Panel The following figure shows a rear panel view of the WGAP150: 1 LEDs 2 3 4 Figure 1-2 Viewed from left to right, the rear panel of the WGAP150 provides the following connectors and buttons: 1. Antenna. An RP-SMA connector for connecting an external antenna, which does not come standard with the WGAP150. 2. LAN Connector.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Viewed from left to right, the WGAP150 has these four status LEDs: Power, Status, Ethernet, and Wi-Fi (also referred to as WLAN light or Wireless activity light): Table 1-1. LED Power Status LAN Wi-Fi Activity Description Off Power off On (Green) Power on Off The unit is initializing. On (Green) The unit is ready. Off The Ethernet port is not connected. On The Ethernet port is connected. Off Wireless is not ready.
2. Installation and Basic Configuration 2 This chapter describes how to install and configure your access point for wireless connectivity to your LAN. This basic configuration will enable computers with 802.11b/g or 802.11n wireless adapters to connect to the Internet, or access printers and files on your LAN. In planning your wireless network, consider the level of security required. Chapter 3 describes how to set up wireless security for your network.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Note: Failure to follow these guidelines can result in significant performance degradation or inability to wirelessly connect to the wireless access point. For complete performance specifications, see Appendix A. For best results, place your wireless access point according to the following general guidelines: • Near the center of the area in which your PCs will operate.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Computer Hardware Requirements To connect to the wireless access point on your network, each computer must have a 802.11b/g or 802.11n wireless adapter installed. Installing and Configuring the Wireless Access Point Before installing the wireless access point, make sure that your Ethernet network is up and working. You will be connecting the wireless access point to the Ethernet network. Then computers with 802.11b/g or 802.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point . A B Figure 2-1 Note: Figure 2-1 shows the WGAP150 with an external antenna, which does not come standard with the product. 5. Turn on your computer, connect the power adapter to the wireless access point and verify the following: Power LED. The powerLEDt on the wireless access point should be steady green. If the power light is not lit, check the connections, and check if the power outlet is controlled by a wall switch that is turned off.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Logging in to the Wireless Access Point The default IP address of your wireless access point is 192.168.0.229. The wireless access point is set, by default, for the DHCP client to be disabled. To log in to the wireless access point: 1. Open a Web browser such as Microsoft Internet Explorer 6.0 or above, or Mozilla Firefox 1.5 or above. 2. Connect to the wireless access point by entering its default address of http://192.168.0.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Web Interface Menu The navigation tabs across the top of the Web interface menu provide access to all the configuration functions of the wireless access point, and remain constant. The menu items in the blue bar change according to the navigation tab that is selected.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Settings screen (see Figure 2-6 on page 19). The full path to this screen is Configuration > System > Basic.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 1. Specify the fields in the Basic System Settings section of the Basic Settings screen (see Figure 2-6) as explained in Table 2-1. Table 2-1. Basic System Settings Field Description AP Name Assign a unique name to the wireless access point.The default name is NETGEAR. The AP name can be retrieved through SNMP. Location Assign a unique name to the location of the wireless access point.The default name is site1.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Protocol (DHCP) server on the Ethernet segment (see “Configuring LAN Settings” on page 23). This is the default settings; no further configuration is required. • Static IP. Your Internet Service Provider (ISP) has assigned you a permanent, fixed (static) IP address. When you select Static IP, the IP Settings section of the Basic Settings screen expands: Figure 2-7 Specify the static IP fields as explained in Table 2-2. Table 2-2.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 2-8 Specify the PPPoE fields as explained in Table 2-3. Table 2-3. PPPoE Settings Field Description PPPoE Username The PPPoE user name that your ISP has assigned to you. PPPoE Password The PPPoE password that your ISP has assigned to you. PPPoE Password (confirmation) Repeat the PPPoE password that your ISP has assigned to you. PPPoE Service Name The PPPoE service name that your ISP has assigned to you.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Configuring LAN Settings If you selected “Router” as the AP mode (see “Configuring Basic System Settings” on page 19), the LAN Settings section appears at the bottom of the Basic Settings screen. Figure 2-9 To configure the LAN settings: 1. Specify the fields as explained in Table 2-4, or use the default values, which work for most users and situations. Table 2-4.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table 2-4. LAN Settings (continued) Field Description DHCP Server The wireless access point is set up by default to function as a DHCP server, which provides TCP/IP configuration for computers that are connected to it. You can either use the default settings or specify the pool of IP addresses to be assigned by setting the starting IP address and ending IP address.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point WARNING! If you configure the wireless access point from a wireless computer and you change the wireless access point’s SSID, channel, or wireless security settings, you will lose your wireless connection when you click Save to Flash and Activate. You must then change the wireless settings of your computer to match the wireless access point’s new settings. Configuring 802.11b/g Wireless Settings To configure the 802.11b/g wireless settings: 1.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 3. Specify the 802.11n profile fields as explained Table 2-5. Table 2-5. 802.11b/g Profile Settings Field Descriptions Radio Enable The radio is enabled by default. To turn off the radio, deselect the Radio Enable checkbox. Doing so disables access through the wireless access point, which can be helpful for configuration, network tuning, or troubleshooting activities.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Configuring Basic Wireless Network Settings To configure the basic wireless network settings: 1. Log in to the wireless access point at its default LAN address of http://192.168.0.229 with its default user name of admin and default password of password, or using whatever LAN address, user name, and password you have chosen for the wireless access point. 2. Select Configuration > Wireless Networks. The Wireless Networks screen displays.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table 2-6. Wireless Network Settings (continued) Field Description Security Policies The configured wireless authentication and encryption methods for the wireless security profile. BSSID The detailed BSSID for the wireless security profile. This BSSID consist of the MAC address of the wireless access point with the last digit altered.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 4. In the Basic Settings section of the Edit Wireless Network screen, specify the fields as explained in Table 2-7. Table 2-7. Wireless Network Settings Field Description Enable Select one of the following options: • Yes. Select this radio button to enable the wireless security profile. This is the default setting. • No. Select this radio button to disable the wireless security profile.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table 2-7. Wireless Network Settings (continued) Field Description Multicast Filter Select the Multicast Filter checkbox to enable filtering of egress multicast packets that are sent from the wireless access point. Multicast Rate Select the data rate for egress multicast packets from the pull-down menu. The smallest data rate that you can select is 1 Mbps; the largest is 54 Mbps. The default rate is 1 Mbps.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Testing Basic Wireless Connectivity After you configured the wireless access point as explained in the previous section, test your computers for wireless connectivity before you position and mount the wireless access point at its permanent position: 1. 1. Configure the 802.11b/g or 802.11n wireless adapters of your computers so that they all have the same SSID and channel that you have configured on the wireless access point. 2. 2.
WG102-500, WGAP150 ProSafe™ 802.
3. Wireless Configuration and Security 3 This chapter describes how to configure the wireless features of your wireless access point. In planning your wireless network, consider the level of security required. WARNING! If you are configuring the wireless access point from a wireless PC and you change the wireless access point’s SSID, channel, or wireless security settings, you will lose your wireless connection when you click Apply.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point foot radius. Such distances can allow for others outside your immediate area to access your network. Unlike wired network data, your wireless data transmissions can extend beyond your walls and can be received by anyone with a compatible adapter. For this reason, use the security features of your wireless equipment. The wireless access point provides highly effective security features that are covered in detail in this chapter.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point • WEP. Wired Equivalent Privacy (WEP) data encryption provides data security. WEP Shared Key authentication and WEP data encryption block all but the most determined eavesdropper. This data encryption mode has been superseded by WPA-PSK and WPA2-PSK. For information about how to configure static and dynamic WEP, see “Configuring Static WEP” on page 40 and “Configuring Legacy 802.1X (or Dynamic WEP)” on page 41. • WPA and WPA-PSK (TKIP).
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point network authentication setting above (otherwise, the default is None). The data encryption settings are explained in “Creating and Editing Security Profiles” on page 37. • Wireless Client Security Separation If enabled, the associated wireless clients (using the same SSID) will not be able to communicate with each other. This feature is useful for hotspots and other public access situations. By default, wireless client separation is disabled.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Choose the key format by circling one: ASCII or HEX. Choose the authentication type by circling one: Open or Shared. Passphrase: ___________________________________ Note: If you select shared key, the other devices in the network will not connect unless they are set to shared key and have the same keys in the same positions as those in the wireless access point.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 2. Select Configuration > Wireless Networks. The Wireless Networks screen opens, displaying 16 wireless security profiles. Figure 3-2 Table 3-1 explains the fields of the Wireless Network Settings table. Table 3-1. Wireless Network Settings Field Description Wireless Network SSID The wireless network name (SSID) for the wireless security profile. Default VLAN ID The default VLAN ID that is associated with the wireless security profile.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table 3-1. Wireless Network Settings (continued) Field Description BSSID The detailed BSSID for the wireless security profile. This BSSID consist of the MAC address of the wireless access point with the last digit altered. If the MAC address ends with F0, the BSSID for the first profile ends with F1, for the second profile with F2, for the thirds profile with F3, and so on.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Configuring Static WEP Static WEP provides pre-shared WEP key encryption without (RADIUS) authentication. The security level of static WEP is not very strong.When you select Static WEP from the Security Policy pull-down menu, the section expands to display the static WEP fields. Figure 3-4 Specify the fields that are explained in Table 3-2. Table 3-2.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table 3-2. Field Descriptions Shared Key Authentication The default authentication setting is Open System authentication. Select the Shared Key Authentication checkbox to enable shared key authentication. Note: The authentication method is separate from the data encryption. You can select an authentication method that requires a shared key but still leaves the data transmissions unencrypted.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point When you select WPA-TKIP from the Security Policy pull-down menu, the section expands to display the WPA-TKIP fields. Figure 3-6 shows Pre-Shared Key user authentication as an example. Figure 3-6 Specify the fields that are explained in Table 3-4. Table 3-4. Field Descriptions User Authentication Pre-Shared Key From the User Authentication pull-down menu, select the Pre-Shared Key to enable WPA-PSK.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Configuring WPA2 and WPA2-PSK (AES) WPA2 security requires RADIUS-based 802.1x authentication, so you also must define RADIUS server settings. For information about RADIUS servers, see “Configuring RADIUS Server Settings” on page 45. WPA2-PSK security uses a pre-shared key (PSK) and does not require authentication from a RADIUS server. Both methods use Advanced Encryption Standard (AES) encryption.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Configuring WPA+WPA2 and WPA-PSK+WPA2-PSK Mixed Modes WPA+WPA2 security requires RADIUS-based 802.1x authentication, so you also must define RADIUS server settings. For information about RADIUS servers, see “Configuring RADIUS Server Settings” on page 45. WPA-PSK+WPA2-PSK security uses a pre-shared key (PSK) and does not require authentication from a RADIUS server.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table 3-6. Field Descriptions Re-key if any station disassociates Select the Re-key if any station disassociates checkbox to require rekeying after any wireless station logs off from the wireless access point. Configuring RADIUS Server Settings For authentication, accounting, or both authentication and accounting using RADIUS, you must configure primary servers and optional secondary servers.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 3-9 3. Specify the fields that are explained in Table 3-7. Table 3-7. RADIUS Server Settings Field Descriptions Primary Authentication Server The IP address of the primary RADIUS server for authentication. The default address is 0.0.0.0. Secret The shared key between the wireless access point and the primary RADIUS server during authentication.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table 3-7. RADIUS Server Settings (continued) Field Descriptions Secondary Authentication Server The IP address of the secondary RADIUS server for authentication. The default address is 0.0.0.0. The secondary RADIUS server is used when the primary RADIUS server is not available. Secret The shared key between the wireless access point and the secondary RADIUS server during authentication.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Configuring Alternate RADIUS Server Settings Alternate RADIUS server settings override the general RADIUS server settings and apply only to the devices that are connected to the individual SSID for which you configure the Alternate RADIUS server settings. To configure alternate RADIUS server settings for an individual SSID: 1. Log in to the wireless access point at its default LAN address of http://192.168.0.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 3-10 3. Next to 802.1X Version, select one of the following radio buttons: • v1. Both EAPOL v1 and v2 devices can associate with the wireless access point. • v2. Only EAPOL v2 devices can associate with the wireless access point. This is the default setting. 4. Click Save or Save to Flash & Activate to save your settings. WAPI Certificates You can Install WAPI certificates to be used for authentication.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 3-11 Restricting Wireless Access by MAC Address For increased security, you can restrict access to an SSID to allow only specific computers or wireless cards based on their MAC addresses. You can restrict access to only trusted computers so that unknown computers cannot wirelessly connect to the wireless access point.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 2. Select Configuration > Wireless Networks. The Wireless Networks screen opens, displaying 16 wireless security profiles (see Figure 3-2 on page 38). 3. To configure or edit a wireless security profile, select the corresponding Edit hyperlink to the right of the wireless security profile. The Edit Wireless Network screen opens for the selected wireless security profile. Scroll down to the Access Control Settings section. 4.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point To delete MAC addresses from the Listed MAC Addresses table, select (highlight) one or more MAC addresses in the Listed MAC Addresses table, then click Delete highlighted. 5. Click Save or Save to Flash & Activate to save your settings.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point • Server. The wireless access point allocates and provides IP addresses locally. When you select this option, the screen expands as shown in Figure 3-14 on page 53. Specify the fields as explained in Table 3-8 on page 53. There are no default values for this screen. Figure 3-14 . Table 3-8. Alternate DHCP Server Settings Field Description IP Start Range The first address in the range of IP addresses to be assigned to DHCP clients.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Configuring Wireless Quality of Service To control reliability and availability of the wireless access point, you can allocate quality of service (QoS) levels per SSID. For information about general default QoS levels (Gold, Silver, and Bronze), multicast filtering, and multicast data rates, see “Configuring Basic Wireless Network Settings” on page 27, in particular Figure 2-12 and Table 2-7.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Configuring Wireless Traffic Filtering You can filter incoming wireless traffic based on MAC addresses, IP addresses, and protocols. Traffic can be either accepted or dropped. To configure filters for incoming wireless traffic for an individual SSID: 1. Log in to the wireless access point at its default LAN address of http://192.168.0.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 5. Specify the fields as explained in Table 3-9. Table 3-9. Filter Settings Field Descriptions Name Assign a name to the filter policy. Source MAC Address The source MAC address of the incoming traffic Destination MAC Address The destination MAC address for the incoming traffic. Source IP Address The source IP address and optional netmask of the incoming traffic. This field is / Netmask not applicable when you select ARP as the protocol.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Configuring Advanced QoS Settings To configure advanced QoS settings for an individual SSID: 1. Log in to the wireless access point at its default LAN address of http://192.168.0.229 with its default user name of admin and default password of password, or using whatever LAN address, user name, and password you have chosen for the wireless access point. 2. Select Configuration > Wireless Networks.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Configuring Wireless Client Separation Wireless client separation prevents associated wireless clients (using the same SSID) from communicating with each other, which is useful for hotspots and other public access situations. This feature is either globally enabled or globally disabled. However, per individual SSID, you can specify to allow or block unicast and/or broadcast and multicast traffic between the clients of that same SSID.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 2. Select Configuration > Wireless Networks. The Wireless Networks screen opens, displaying 16 wireless security profiles (see Figure 3-2 on page 38). 3. To configure or edit a wireless security profile, select the corresponding Edit hyperlink to the right of the wireless security profile. The Edit Wireless Network screen opens for the selected wireless security profile. Scroll down to the Alternative Layer 2 Communication Settings section. 4.
WG102-500, WGAP150 ProSafe™ 802.
4. Managing Your Network 4 This chapter describes how to use the management features of your wireless access point.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 4-1 The following sections explain how to back up the configuration file, restore the configuration file, revert the configuration file to factory default settings, and perform other tasks from the Configuration screen. Backing up the Configuration To back up the configuration file: 1. On the Configuration screen (see Figure 4-1), next to Download Active Configuration, click Proceed. 2.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 3. After completing the upload, the changes do not take effect until you activate them. On the Configuration screen, next to Activate Changes, click Proceed. If your browser requires a confirmation to proceed, confirm the action. Rebooting and Restoring the Default Configuration You can erase the wireless access point configurations, and return to the factory default settings.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Scheduling to Activate the Changes This procedure lets you schedule the activation of any configuration changes, so that changes can be activated at a time when a minimum number of users are impacted. However, this procedure does not save the changes to flash memory, so the changes are lost when you reload the wireless access point. To schedule the activation of changes: 1.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point LED of the wireless access point remains on, indicating that the wireless access point has rebooted. After several minutes the wireless access point will be ready for use. Upgrading the Wireless Access Point Firmware WARNING! When uploading firmware to the wireless access point, do not interrupt the Web browser by closing the window, clicking a link, or loading a new page.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 4. Select Maintenance >Firmware. The Firmware screen displays, showing the current symbol indicates the Flash module selected. firmware version. The Figure 4-3 5. Next to Firmware Image File, click Browse to navigate to the location where the upgrade file is stored. 6. The Click Proceed to upgrade the firmware. If your browser requires a confirmation to proceed, confirm the action.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 1. Log in to the wireless access point at its default LAN address of http://192.168.0.229 with its default user name of admin and default password of password, or using whatever LAN address, user name, and password you have chosen for the wireless access point. 2. Select Configuration >WEB Administration > Admin Password. The Admin Password screen displays. Figure 4-4 3. Next to Restore Default password, select the No radio button. 4.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 2. Select Configuration >WEB Administration > Admin Username. The Admin Username screen displays. Figure 4-5 3. Enter the new user name in the New Admin Username field. 4. Click Save or Save to Flash & Activate to save your settings. Viewing Network Management Information The wireless access point provides a variety of status and usage information, which are discussed in the following sections.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 2. Select Monitor > Event Log. The Event Log screen displays. Figure 4-6 The Activity Log Window displays the wireless access point’s system activity. Sending the Activity Log to a Syslog Server To send the activity log to a syslog server: 1. Log in to the wireless access point at its default LAN address of http://192.168.0.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 4. Enter the syslog information in the following fields: • Syslog Server Address. The IP address of the syslog server. • SysLog Server Port. The port number for the syslog server on the LAN segment. The default port is 514. 5. Click Save or Save to Flash & Activate to save your settings. Viewing System Information The System Information is a summary of the wireless access point configuration settings. To view the system information screens: 1.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Viewing the Basic System Information Screen Figure 4-8 Table 4-1. Field Description System Information You can configure some of these settings in “Configuring Basic System Settings” on page 19 AP Name The name of the wireless access point. Location The name of the location of the wireless access point. Software Version The version of the firmware currently installed. Serial Number The serial number of the wireless access point.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table 4-1. Field Description Domain Name The optional name of the domain. Network IP Settings You can configure these settings in “Configuring IP Settings” on page 20. Network IP Mode The IP setting that specifies how the wireless access point acquires its IP address (DHCP, static IP, or PPPoE). Network IP Address The IP address of the wireless access point. Network Subnet Mask The subnet mask of the wireless access point.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Viewing the L2TP Tunnel Information Screen Figure 4-9 Table 4-2. Field Description System Information You can configure these settings in “Configuring L2TP Tunnel Management” on page 82. Status The current status of the L2TP tunnel. The modes are: • Disabled. The L2TP tunnel is torn down. • Connecting. The L2TP tunnel is in the process of being set up. • Connected. The L2TP tunnel is up. Server Address Address of the L2TP Server.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Viewing the Flash Management Information Screen Figure 4-10 Table 4-3. Field Description Flash Management Firmware Version The version of the firmware currently stored in the Flash memory. Flash Status The status of the active flash memory. The modes are: • Bootable. The flash memory is bootable. • ---. The flash memory is not bootable. Boot from The indicates the Flash memory to boot from.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Viewing the Basic Wireless Information Screen Figure 4-11 Table 4-4. Field Description Wireless Information Name The name of the wireless access point. To change the AP name, see “Configuring Basic System Settings” on page 19. Number of WLANs The number of wireless networks that are enabled on the wireless access point.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table 4-5. Field Description Wireless Client Manufacturer The manufacturer of the wireless client. This information is based on the prefix of the wireless client’s MAC address. MAC Address The wireless client’s MAC address. WLAN SSID The wireless network to which the wireless client is attached. VID The VLAN ID that is used on the wireless network to which the wireless client is attached. Type The radio policy of the wireless client (802.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 4-13 Table 4-6. Neighbor APs Information Fields Field Description Neighbor APs Discovery Settings You can configure these settings in “Configuring Neighbor AP Discovery” on page 101. Neighbor AP Discovery The status (enabled or disabled) of the Neighbor AP Discovery feature. Scanning Interval The frequency in seconds that the wireless access point scans the channels to discover neighboring APs.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point To specify the number of neighboring APs that are shown in the table, use the pull-down menu below the table and click the Refresh hyperlink. Configuring Remote Management You can remotely configure, upgrade, and check the status of your wireless access point by using a variety of methods: • Establish an Internet connection (either wired or wireless) to the wireless access point.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 4-14 3. Complete the Web access fields and select the Web access radio buttons and checkboxes as explained in Table 4-7. Table 4-7. Web Access Settings Field Description Access Settings Web Access Protocol Select a radio button to specify a protocol: • HTTP. Hypertext Transfer Protocol. • HTTPS. Hypertext Transfer Protocol over Secure Socket Layer.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table 4-7. Web Access Settings (continued) Field Description Management IP Web Access Control Web access control is disabled by default. Select the Enable checkbox to specify clients that are allowed Web management access. The screen expands to display the fields that let you add clients to the Management IP table. After you have completed these fields, click the Add button to add the client to the table.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 4-15 3. Next to Management from Wireless Clients, the Enabled checkbox is selected by default. To disable Web management from wireless clients, deselect the Enabled checkbox. WARNING! If you access the wireless access point from a wireless client and you disable management from wireless clients, you will lose your Web management access when you click Save to Flash and Activate.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point To disable Web management: 1. Log in to the wireless access point at its default LAN address of http://192.168.0.229 with its default user name of admin and default password of password, or using whatever LAN address, user name, and password you have chosen for the wireless access point. 2. Select Configuration > WEB Administration > Web Administration. The Web Administration screen displays. Figure 4-16 3.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 4-17 4. Complete the L2TP tunnel fields and select the L2TP tunnel checkboxes as explained in Table 4-8. These settings are typically provided by your Internet Service Provider (ISP). Table 4-8. L2TP Tunnel Settings Field Description L2TP Server Address Enter the IP address of the server with which the wireless access point establishes an L2TP tunnel. L2TP/PPP Username Enter the user name to access the L2TP server.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 5. Click Save or Save to Flash & Activate to save your settings. Configuring Telnet Server Access You can allow a remote host to establish a Telnet connection to the wireless access point over the LAN port.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 4-18 3. Next to Telnet Server, select the Enabled checkbox. This checkbox is deselected by default. 4. Click Save or Save to Flash & Activate to save your settings. SNMP Remote Management SNMP forms part of the internet protocol suite as defined by the Internet Engineering Task Force (IETF). SNMP is used in network management systems to monitor network-attached devices for conditions that warrant administrative attention.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 4-19 3. Complete the basic SNMP fields and select the basic SNMP checkboxes as explained in Table 4-9. Table 4-9. SNMP Basic Settings Field Description Server Name Assign a unique name to the SNMP server. The default name is NETGEAR. SNMPv1 SNMP version 1 (SNMPv1) is supported by default. Deselect the Enable checkbox to disable support for SNMPv1. SNMPv2 SNMP version 2 (SNMPv2) is supported by default.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 1. Log in to the wireless access point at its default LAN address of http://192.168.0.229 with its default user name of admin and default password of password, or using whatever LAN address, user name, and password you have chosen for the wireless access point. 2. Select Configuration > SNMP > Communities. The SNMP Communities Settings screen displays. Figure 4-20 3.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 4. Complete the SNMP community fields and select the Status checkbox as explained in Table 4-10. Table 4-10. SNMP Community Settings Field Description Community Name The community string to allow the SNMP manager to access the MIB objects of the wireless access point. The default setting is public (for Access Mode “Read Only”) or private (for Access Mode “Read & Write”).
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 4-22 3. Take one of the following actions: • Click the Add button to add a new SNMP user. The Edit Users screen displays (see Figure 4-23 on page 89). • Click the Edit hyperlink to the right of an existing user in the SNMP Users Settings table. The Edit Users screen displays (see Figure 4-23 on page 89). • Click the Remove hyperlink to the right of an existing user in the SNMP Users Settings table to delete the user.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 4. If you selected to add or edit an SNMP user, complete the SNMP user fields and select a Status checkbox as explained in Table 4-11. Table 4-11. SNMP User Settings Field Description SNMPv3 User Name The name of the SNMPv3 user that is allowed to access the SNMP agent that collects the MIB objects from the wireless access point. Authentication Protocol The protocol for authenticating the SNMPv3 user.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point ACS Password - Defines ACS password for TR069 login Periodic Inform Interval - Interval for client to push information to ACS server To configure TR-069 operation: 1. Log in to the wireless access point at its default LAN address of http://192.168.0.229 with its default user name of admin and default password of password, or using whatever LAN address, user name, and password you have chosen for the wireless access point. 2.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 2. Select Configuration > Advanced > Schedule. The Schedule Tasks screen displays. Figure 4-25 3. Schedule one or both tasks for the wireless access point as explained in Table 4-12. Table 4-12. Schedule Tasks Settings Task Field Description Reboot Checkbox Select the checkbox next to Reboot to enable a previously scheduled reboot task or to configure a reboot task.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Accessing Online Documentation This reference manual (also referred to as user manual) is accessible from the Web interface. To access the reference manual online from the Web interface: 1. Log in to the wireless access point at its default LAN address of http://192.168.0.229 with its default user name of admin and default password of password, or using whatever LAN address, user name, and password you have chosen for the wireless access point. 2.
WG102-500, WGAP150 ProSafe™ 802.
5. Advanced Configuration 5 This chapter describes how to configure the advanced features of your wireless access point. This chapter includes: • Configuring Ethernet Links on this page.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 5-1 3. From the Speed pull-down menu, select one of the following options: • auto. Detects and sets the speed and type of the Ethernet link automatically. • 100baseTx-FD. 100-Mbps full-duplex speed. • 100baseTx-HD. 100-Mbps half-duplex speed. • 10baseT-FD. 10-Mbps full-duplex speed. • 10baseT-HD. 10-Mbps half-duplex speed. • Manual.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Figure 5-2 5. Enter the hotspot settings as explained in Table 5-1. Table 5-1. Hotspot (or Captive Portal) Settings Field Description Redirect URL Select one of the following options from the pull-down menu: • HTTP. The URL to which the user must be redirected starts with HTTP. • HTTPS. The URL to which the user must be redirected starts with HTTPS. To the right of the pull-down menu, enter the URL to which the user must be redirected.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table 5-1. Hotspot (or Captive Portal) Settings (continued) Field Description Pass-through IPs The IP addresses that a user can go to without being redirected to the Redirect URL or without being authenticated, that is, the IP addresses that form the walled garden. You can enter up to three IP addresses with their subnet masks. The subnet masks must be entered in Classless Inter-Domain Routing (CIDR) notation.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 1. Log in to the wireless access point at its default LAN address of http://192.168.0.229 with its default user name of admin and default password of password, or using whatever LAN address, user name, and password you have chosen for the wireless access point. 2. Select Configuration > Advanced > Wireless. The Advanced (Wireless) Settings screen displays: Figure 5-3 3.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 4. Click Save or Save to Flash & Activate to save your settings. Table 5-2. Advanced Wireless Settings Field Description Max. Total Associated Clients Specify the total maximum number of wireless clients that are allowed to connect to the wireless access point. The default setting is 0, which indicates a limitless number of wireless clients.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Configuring Neighbor AP Discovery The Neighbor AP Discovery feature lets the wireless access point automatically register other wireless devices in its area and includes these devices in the Neighbor APs List (see “Viewing Neighbor APs Information” on page 76). To configure the Neighbor AP Discovery feature: 1. Log in to the wireless access point at its default LAN address of http://192.168.0.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Configuring Wireless Bridging and Repeating The wireless access point supports a wireless distributing system (WDS) that lets you build large bridged wireless networks. Examples of wireless bridged configurations are: • Point-to-point bridge. The wireless access point communicates with another bridge-mode wireless access point. See “Configuring Point-to-Point Bridge Mode” on page 104. • Multi-point bridge.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point nodes. To configure WDS settings, click the Edit hyperlink to the right of one of the nodes in the WDS Settings table (see Figure 5-5 on page 102). The Edit WDS screen displays. Figure 5-6 4. Specify the manual WDS settings as explained in Table 5-4 and go to step 5. Table 5-4. Manual WDS Settings Field Description WDS Settings Enable Select one of the following radio buttons: • Yes. The WDS node is enabled. • No. The WDS node is disabled.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table 5-4. Manual WDS Settings (continued) Field Description Security Policy Select a security setting for the WDS node from the pull-down menu: • None. There is no security to protect communication over the WDS node. This is the default setting. • Static WEP. Pre-shared WEP key encryption without (RADIUS) authentication. When you select this option, the screen expands to let you configure the WEP settings.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point following figure shows an example in which two wireless access points (APs) function in point-to-point bridge mode. Figure 5-7 Note: Figure 5-7 shows the WGAP150 with an external antenna, which does not come standard with the product. To set up a point-to-point bridge configuration. 1. Configure the wireless access point (AP1 on LAN Segment 1 in Figure 5-7): a. Select Configuration > WDS. b. Next to WDS Mode, select the Manual radio button. c.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point • Both wireless access points must use the same channel, authentication mode, and security settings. 4. Verify connectivity across LAN 1 and LAN 2. A computer on either LAN segment should be able to connect to the Internet or share files and printers of any other computers or servers connected to LAN Segment 1 or LAN Segment 2.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Note: Figure 5-8 shows the WGAP150 with an external antenna, which does not come standard with the product. To set up the point to multi-point bridge configuration: 1. Configure the wireless access point (AP1 on LAN Segment 1 in Figure 5-8): a. Select Configuration > WDS. b. Next to WDS Mode, select the Manual radio button. c. Click the Edit hyperlink to the right of one of the nodes in the Manual WDS Settings table. d.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point • A computer on any LAN segment should be able to connect to the Internet or share files and printers with any other PCs or servers connected to any of the three LAN segments. Note: You can extend this multi-point bridging configuration by adding additional wireless access points that are configured in point-to-point mode for each additional LAN segment.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point To configure a LAN segment using the wireless access point in repeater mode: 1. Configure the wireless access point (AP1 on LAN Segment 1 in Figure 5-9): a. Select Configuration > WDS. b. Next to WDS Mode, select the Manual radio button. c. Click the Edit hyperlink to the right of one of the nodes in the Manual WDS Settings table. d.
WG102-500, WGAP150 ProSafe™ 802.
6. Troubleshooting 6 This chapter provides information about troubleshooting your wireless access point. After each problem description, instructions are given to help you diagnose and solve the problem. For the common problems listed, go to the section indicated. • Is the wireless access point on? Go to “Basic Functioning” on page 112. • Have I connected the wireless access point correctly? Go to “Basic Functioning” on page 112. • I cannot access the Internet or the LAN.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Basic Functioning After you turn on power to the wireless access point, the following sequence of events should occur: • The power LED should be lit. • The status LED should be lit. • The LAN LED should be lit. • The Wi-Fi LED should be lit. If any of these conditions do not occur, see to the appropriate following section. No LEDs are Lit on the Wireless Access Point It takes a few seconds for the power LED to light up.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point You Cannot Access the Internet or the LAN from a Wireless-Capable Computer There is a configuration problem. Check the following: • You may not have restarted the computer with the wireless adapter to allow TCP/IP changes take effect. Restart the computer. • The computer with the wireless adapter may not have the correct TCP/IP settings to communicate with the network.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point • If you are using the NetBIOS name of the wireless access point to connect, ensure that your computer and the wireless access point are on the same network segment or that there is a WINS server on your network. • If your computer uses a fixed (static) IP address, ensure that it is using an IP address in the range of the wireless access point. The wireless access point default IP address is 192.168.0.229 and the default subnet mask is 255.255.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Troubleshooting a TCP/IP network is made very easy by using the ping utility in your computer. Testing the LAN Path to Your Wireless Access Point You can ping the wireless access point from your computer to verify that the LAN path to your wireless access point is set up correctly. To ping the wireless access point from a PC running Windows 95 or later: 1. From the Windows toolbar, click the Start button, and select Run. 2.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point PING -n 10 IP address where IP address is the IP address of a remote device such as your ISP’s DNS server. If the path is functioning correctly, replies as in the previous section display. If you do not receive replies: • Check that your PC has the IP address of your router listed as the default wireless access point. If the IP configuration of your PC is assigned by DHCP, this information is not visible in your PC’s Network Control Panel.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point page 19). Each entry in the Event Log is stamped with the date and time of day. Problems with the date and time function can include: • Date and time shown is Fri Dec 31 00:00:00 1999 or a similar incorrect date and time. Cause: The wireless access point has not yet successfully reached the Network Time Server. Check that your Internet access settings are configured correctly.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 3. From the Method pull-down menu, select Ping. The screen expands, enabling you to configure ping fields. 4. Specify the fields that are explained in the following table. Table 6-1. Health Check Settings Field Description Ping Host The IP address of the host to which the continuous ping should be sent.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point 2. Select Tools. The Diagnostic Tools screen displays. Figure 6-2 3. Enter an IP address or domain name in the Destination field.W 4. From the Diagnostic Tolls menu, select one of the following options: • Ping. Ping a device. If the request times out (no reply is received), it usually means that the destination is unreachable. However, some network devices can be configured not to respond to a ping. • Traceroute. Trace a route.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point whatever LAN address, user name, and password you have chosen for the wireless access point. 2. Select Maintenance > Misc. The Miscellaneous screen displays. Figure 6-3 3. Next to Download Debug Information, click the Proceed button. 4. Save the debug.dump file to a location on your computer and follow the instructions of NETGEAR technical support.
A. Technical Specifications A This appendix provides technical specifications and factory default settings for the WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point. General Specifications Specification Description Network Management • Web-based configuration and status monitoring • Telnet support • SNMP support Status LEDs • • • • Power Source 12V 1.5A power adapter Power Status Ethernet Wireless (Wi-Fi) Optional: Power Over Ethernet (PoE) conform 802.3af.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Specification Description Maximum Computers Per Wireless Network Limited by the amount of wireless network traffic generated by each node. Typically 20-30 nodes. Radio Data Rates 802.11b and g 1, 2, 5.5, 6, 9, 11, 12, 18, 24, 36, 48, and 54 Mbps 802.11b,g Operating Frequencies and Channels 2.412 ~ 2.462 GHz (North America), Channels 1-11 2.412 ~ 2.472 GHz (Europe including France and Spain, and Japan), Channels 1-13 802.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point Table 0-1. Feature Factory Default Settings SNMP Enabled VLAN (802.
WG102-500, WGAP150 ProSafe™ 802.
B. Related Documents B This appendix provides links to reference documents you can use to gain a more complete understanding of the technologies used in your NETGEAR product. Document Link Using Microsoft Vista and Windows XP to Manage Wireless Network Connections http://documentation.netgear.com/reference/enu/winzerocfg/ vistaxpconfig.pdf ITCP/IP Networking Basics http://documentation.netgear.com/reference/enu/tcpip/index.htm Wireless Networking Basics http://documentation.netgear.
WG102-500, WGAP150 ProSafe™ 802.
Index Numerics 64-bit, 128-bit, and 152-bit encryption keys 8 802.11b 26 802.11e 9, 57 802.
WG102-500, WGAP150 ProSafe™ 802.
WG102-500, WGAP150 ProSafe™ 802.
WG102-500, WGAP150 ProSafe™ 802.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point R S radio disabling 26 policy mode (802.11b, 802.
WG102-500, WGAP150 ProSafe™ 802.
WG102-500, WGAP150 ProSafe™ 802.
WG102-500, WGAP150 ProSafe™ 802.11g Wireless Access Point WDS, static WEP 104 wireless settings advanced wireless 98 basic 24 basic wireless network 27 wireless traffic filtering configuring 55 source and destination ports 56 WMM (Wi-Fi Multimedia) 802.