User's Manual
Table Of Contents
- WFS709TP ProSafe Smart Wireless Switch Software Administration Manual
- Contents
- About This Manual
- Chapter 1 Overview of the WFS709TP
- Chapter 2 Deploying a Basic WFS709TP System
- Chapter 3 Configuring Network Parameters
- Chapter 4 RF Plan
- Chapter 5 Configuring WLANS
- Chapter 6 Configuring AAA Servers
- Chapter 7 Configuring 802.1x Authentication
- Chapter 8 Configuring the Captive Portal
- Chapter 9 Configuring MAC-Based Authentication
- Chapter 10 Adding Local WFS709TPs
- Chapter 11 Configuring Redundancy
- Chapter 12 Configuring Wireless Intrusion Protection
- Chapter 13 Configuring Management Utilities
- Chapter 14 Configuring WFS709TP for Voice
- Appendix A Configuring DHCP with Vendor-Specific Options
- Appendix B Windows Client Example Configuration for 802.1x
- Appendix C Internal Captive Portal
- Appendix D Related Documents
- Index

WFS709TP ProSafe Smart Wireless Switch Software Administration Manual
1-12 Overview of the WFS709TP
v1.0, June 2007
.
A user is assigned to a VLAN by one of several methods, and there is an order of precedence to
these methods.The methods for assignment of VLANs are (from lowest to highest precedence):
1. The VLAN is configured for the AP location.
2. The VLAN is derived from rules based on user attributes SSID, BSSID (Basic Service Set
Identifier), user MAC, location, and encryption type. Within the set of possible user-derivation
rules, a rule that derives a specific VLAN takes precedence over a rule that derives a user role
that may have a VLAN configured for it.
3. The VLAN is configured for a default role for an authentication method, such as 802.1x or
VPN.
Figure 1-5
WFS709TP
Internet
Floor
Wiring
closet
VLAN 20
VLAN 20
Data center
Netgear AP