Users Guide

Table Of Contents
Dell PowerConnect ArubaOS 5.0 | User Guide Access Points | 121
Station Blacklisting Select the Station Blacklisting checkbox to enable detection of denial of service (DoS) attacks,
such as ping or SYN floods, that are not spoofed deauth attacks.
Default: Enabled
Blacklist Time Number of seconds that a client is quarantined from the network after being blacklisted. Default:
3600 seconds (1 hour)
Multicast Optimization for
Video
Enable/Disable dynamic multicast optimization. This parameter is disabled by default, and cannot
be enabled without the PEFNG license.
Multicast Optimization
Threshold
Maximum number of high-throughput stations in a multicast group beyond which dynamic
multicast optimization stops.
Range: 2-255 stations
Default: 6 stations.
Authentication Failure
Blacklist Time
Time, in seconds, a client is blocked if it fails repeated authentication. The default setting is 3600
seconds (1 hour). A value of 0 blocks the client indefinitely.
Multi Association Enables or disables multi-association for this virtual AP. When enabled, this feature allows a
station to be associated to multiple APs. If this feature is disabled, when a station moves to new AP
it will be de-authorized by the AP to which it was previously connected, deleting station context
and flushing key caching information.
Important things to know when using the Multi Association feature:
z When enabled, the system allows multiple associations per client. If the maximum number of
clients allowed per AP is limited to a small number there is a risk of increased association
failures.
z If a client has multiple associations, it may not do active scanning before roaming event which
could result in it not being associated to nearest AP.
z Multiple associations may result in more frequent roaming.
Strict Compliance If enabled, the AP denies client association requests if the AP and client station have no common
rates defined. Some legacy client stations which are not fully 802.11-compliant may not include
their configured rates in their association requests. Such non-compliant stations may have
difficulty associating with APs unless strict compliance is disabled. This parameter is disabled by
default.
VLAN Mobility Enable or disable VLAN (Layer-2) mobility.
Default: Disabled
Remote-AP Operation Configures when the virtual AP operates on a remote AP:
z always—Permanently enables the virtual AP (Bridge Mode only). No authentication
supported.
z backup—Enables the virtual AP if the remote AP cannot connect to the controller (Bridge
Mode only). No authentication supported.
z persistent—Permanently enables the virtual AP after the remote AP initially connects to the
controller (Bridge Mode only).
z standard—Enables the virtual AP when the remote AP connects to the controller. Use
standard option for tunneled, split-tunneled, and Bridge SSIDs.
NOTE: Only open/PSK security mode is allowed for always/backup RAP operation. No
authentication is supported for always/backup
.
Table 27 Virtual AP Profile Parameters
Parameter Description