Users Guide

Table Of Contents
468 | Wireless Intrusion Prevention Dell PowerConnect ArubaOS 5.0 | [User Guide
Configuring the General Profile via the WebUI
1. Navigate to the Configuration > AP Configuration page. Select either AP Group or AP Specific.
If you selected AP Group, click Edit for the AP group name for which you want to configure IDS.
If you selected AP Specific, select the name of the AP for which you want to configure IDS.
2. Expand the IDS menu. Select IDS profile to display the IDS profiles that are contained in the top-level
profile.
3. Select IDS General profile.
4. Select a predefined IDS general profile from the drop-down menu, or modify parameters and click Save As to
create a new IDS general profile.
5. Click Apply.
Configuring the General Profile via the CLI
To configure this profile via the command-line interface, access the CLI in config mode and issue the following
commands:
ids general-profile <profile>
ap-inactivity-timeout <seconds>
clone <profile>
min-pot-ap-beacon-rate <percent>
min-pot-ap-monitor-time <seconds>
mobility-manager-rtls
signature-quiet-time <seconds>
sta-inactivity-timeout <seconds>
stats-update-interval <seconds>
wired-containment
wireless-containment
wireless-containment-debug
Denial of Service Attack Detection
Table 92 describes the parameters you can configure in the IDS DoS profile.
Note: If you selected a predefined IDS profile, you cannot select or create a different IDS general profile instance. You can modify
parameters within the IDS general profile instance.
Table 92 IDS Denial of Service Profile Configuration Parameters
Parameter Description
Detect Disconnect Station Attack Enables or disables detection of station disconnection attacks.
Default: disabled
Disconnect STA Detection Quiet
Time
After a station disconnection attack is detected, the time (in seconds) that must elapse
before another identical alarm can be generated.
Default: 900 seconds
Detect AP Flood Attack Enables or disables the detection of flooding with fake AP beacons to confuse legitimate
users and to increase the amount of processing need on client operating systems.
Default: disabled
AP Flood Threshold Number of Fake AP beacons that must be received within the Flood Increase Time to
trigger an alarm.
Default: 50