Release Notes 4.4.0.50

Release Notes, Version 4.4.0.50
2
Please go to the support web site located at http://www.procurve.com for the latest information on
the ProCurve Secure Access 700wl Series products. The current release notes, manuals, FAQs,
and problem reports are always available at this site.
Important information required for updating system software is available on a secure page at the
ProCurve Networking web site:
http://www.procurve.com. Click on Software updates (in the
sidebar). Under Latest software, choose 700wl series. Please read the Help information
provided for the "Update Software" screen in the Administrative Interface before you start to
update your system software.
Note: The number in parentheses following a description is an internal tracking number.
NEW FEATURES IN THIS RELEASE
Following are the major new features of the HP ProCurve Secure Access 700wl Series 4.4.0.50
software.
VLAN Enhancements. The ProCurve Access Controller 720wl now provides native support
for VLANs by supporting explicit tagged Default Gateway, DHCP, DNS, WINS Server
configurations per VLAN. The Access Controller performs subnet/VLAN validation and only
allows traffic to be admitted to the uplink for properly configured VLAN’s/Subnets or QoS
marked VLAN tags at a given Access Controller. Access Controllers now act as a Layer-2
entity and expose the Mac addresses of its real IP clients via the uplink port.
Clock Synchronization. Access Controllers now synchronize their clocks to the ProCurve
Access Control Server 740wl. The internal clock on the Access Control Server is used as the
synchronization source for all Access Controllers. The Access Control Server acts as an NTP
server and all Access Controllers act as NTP clients.
HTTP Enhancement. The HTTP enhancement offers the ability to specify an external HTTP
proxy server at the Access Policy level. Specifying an HTTP proxy server in an Access
Policy allows finer grain control of which class of users use which HTTP proxy servers. All
HTTP traffic is redirected to the externally configured HTTP proxy server associated with the
Access Policy without being passed through the internal HTTP proxy server on the Access
Controller.
QoS. The QoS feature offers the ability to classify traffic based on 802.1p, DiffServ, IP
Precedence, and ToS Settings. Ingress (packets entering the network from the downlink port)
priority settings can be retained, mapped to different priority settings, or removed. In
addition, packet classification can be based on a variety of other criteria, including VLAN ID,
IP protocol, source and destination IP addresses and ports, MAC address, user identity,
slot/port combination, and Ethertype.
Ingress packets with VLAN tags can retain their 802.1p settings, while their VLAN ID is
replaced. This includes packets with a VLAN ID of zero (0), also called the null VLAN ID.
Just like the VLAN support feature, VLAN tags can be removed, replaced, or retained.
802.1X/WPA Authentication. The 802.1X/WPA Authentication Service uses the 700wl
Series system‘s built-in RADIUS server to actively participate in Wi-Fi Protected Access
(WPA) and IEEE‘s 802.1X standards. This authentication service offers a fully encrypted
connection among WPA and 802.1X compliant products. As the 802.1X authentication
server, the built-in RADIUS server supports Lightweight Extensible Authentication Protocol
(LEAP) and Protected Extensible Authentication Protocol (PEAP). As the RADIUS proxy