About the Configuration Guides for HP Unified Wired-WLAN Products HP 830 Unified Wired-WLAN PoE+ Switch Series HP 850 Unified Wired-WLAN Appliance HP 870 Unified Wired-WLAN Appliance HP 11900/10500/7500 20G Unified Wired-WLAN Module Part number: 5998-4779 Software version: 3507P22 (HP 830 PoE+ Switch Series) 2607P22 (HP 850 Appliance) 2607P22 (HP 870 Appliance) 2507P22 (HP 11900/10500/7500 20G Module) Document version: 6W101-20140418
Legal and notice information © Copyright 2014 Hewlett-Packard Development Company, L.P. No part of this documentation may be reproduced or transmitted in any form or by any means without prior written consent of Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Contents About the configuration guides for HP unified wired-WLAN products ···································································· 1 Typical network scenarios ··········································································································································· 5 HP 11900/10500/7500 20G unified wired-WLAN module network scenario ············································· 5 HP 830 series PoE+ unified wired-WLAN switch/HP 870 unified wired-WLAN appliance n
About the configuration guides for HP unified wired-WLAN products The configuration guides for HP unified wired-WLAN products describe the software features for the HP 830 series PoE+ unified wired-WLAN switches, HP 850/870 unified wired-WLAN appliances, and HP 11900/10500/7500 20G unified wired-WLAN modules, and guide you through the software configuration procedures. These configuration guides also provide configuration examples to help you apply the software features to different network scenarios.
Configuration guide Content Covers Layer 2 technologies and features used on a LAN switched network, such as Ethernet interface, loopback and null interfaces, VLAN technology, MAC address table management, Ethernet link aggregation, Layer 2 forwarding, and PPPoE.
Configuration guide Content Covers security features. The major security features available on the device include: identity authentication (AAA, public Key, and PKI), access security (802.1X, MAC authentication, portal, and port security), secure management (SSH, user profile, and password control), SSL, and security protection (TCP attack protection and ARP attack protection). This guide includes: Security Configuration Guide • • • • • • • • • • • • • • • • • • • • • • • Security overview AAA 802.
Configuration guide Content Describes features that help you manage and monitor your network, for example, display system information, and use the ping and tracert commands to check and debug network connectivity.
Typical network scenarios HP 11900/10500/7500 20G unified wired-WLAN module network scenario As shown in Figure 1, an HP 11900/10500/7500 20G unified wired-WLAN module is installed on a Layer 2 or Layer 3 switch, which is connected to APs directly or over an IP network.
Figure 2 HP 830 series PoE+ unified wired-WLAN switch network Scenario The HP 870 unified wired-WLAN appliance and HP 830 series PoE+ unified wired-WLAN switch have the same network scenarios. HP 850 unified wired-WLAN appliance network scenario As shown in Figure 3, an HP 850 unified wired-WLAN appliance is installed on a Layer 2 or Layer 3 switch, which is connected to APs directly or over an IP network.
Feature matrixes In this document, "Yes" means a feature or command is supported, and "No" means not supported. The HP 11900/10500/7500 20G unified wired-WLAN module adopts OAA architecture and is installed on the slot as an OAP card. The module exchanges data, state and control information with the switch interface board through internal interfaces. Do not configure services such as QoS rate limiting and 802.1X authentication on the internal interfaces.
Table 1 Feature matrix Configurati on guide Function HP 11900/ 10500/ 7500 20G unified wired-W LAN module HP 830 24-Port PoE+ unified wired-W LAN switch access controlle r engine HP 830 8-Port PoE+ unified wired-W LAN switch access controlle r engine HP 850 Unified WiredWLAN Applian ce HP 870 unified wired-W LAN applianc e access controlle r engine AUX user interface Yes. No. No. No. No. Console user interface Yes. Yes. Yes. Yes. Yes. Storage media supported CF card. Flash. CF card.
Configurati on guide Layer 3 Configuratio n Guide Security Configuratio n Guide HP 830 8-Port PoE+ unified wired-W LAN switch access controlle r engine HP 850 Unified WiredWLAN Applian ce HP 870 unified wired-W LAN applianc e access controlle r engine Feature Function WLAN IDS Maximum number of dynamic blacklist entries 512. 256. 256. 512. 512. WLAN high availability AC hot backup Yes. No. No. Yes. Yes. Single combo interface configuration No. No. No. Yes. No. Duplex mode Auto.
Configurati on guide Feature Portal Port security IPsec Function HP 11900/ 10500/ 7500 20G unified wired-W LAN module HP 830 24-Port PoE+ unified wired-W LAN switch access controlle r engine HP 830 8-Port PoE+ unified wired-W LAN switch access controlle r engine HP 850 Unified WiredWLAN Applian ce HP 870 unified wired-W LAN applianc e access controlle r engine Specifying the authentication method for PPP users Yes. No. No. No. No. Specifying the authorization method for PPP users Yes. No.
HP 830 24-Port PoE+ unified wired-W LAN switch access controlle r engine HP 830 8-Port PoE+ unified wired-W LAN switch access controlle r engine HP 850 Unified WiredWLAN Applian ce HP 870 unified wired-W LAN applianc e access controlle r engine The maximum number of VRRP groups on an interface is 255. Feature Function HP 11900/ 10500/ 7500 20G unified wired-W LAN module VRRP Creating a VRRP group and configuring virtual IP address The maximum number of VRRP groups on an interface is 255. No. No.
Support and other resources Contacting HP For worldwide technical support information, see the HP support website: http://www.hp.
Conventions This section describes the conventions used in this documentation set. Command conventions Convention Description Boldface Bold text represents commands and keywords that you enter literally as shown. Italic Italic text represents arguments that you replace with actual values. [] Square brackets enclose syntax choices (keywords or arguments) that are optional. { x | y | ... } Braces enclose a set of required syntax choices separated by vertical bars, from which you select one.
Network topology icons Represents a generic network device, such as a router, switch, or firewall. Represents a routing-capable device, such as a router or Layer 3 switch. Represents a generic switch, such as a Layer 2 or Layer 3 switch, or a router that supports Layer 2 forwarding and other Layer 2 features. Represents an access controller, a unified wired-WLAN module, or the switching engine on a unified wired-WLAN switch. Represents an access point.
Index CR C R Contacting HP,12 Related information,12 Conventions,13 15