Cisco Systems WAP121 Network Card User Manual


 
Wireless
WPS Setup
Cisco Small Business WAP121 and WAP321 Wireless-N Access Point with PoE 102
5
External and Internal Registration
It is not necessary for the WAP devices to handle the registration of clients on the
network themselves. The WAP device can either use its built-in registrar, or act as
a proxy for an external registrar. The external registrar may be accessed through
the wired or wireless LAN. An external registrar may also configure the SSID,
encryption mode, and public shared key of a WPS-enabled BSS. This capability is
very useful for out-of-box deployments; that is, when an administrator simply
attaches a new WAP device to a LAN for the first time.
If the WAP device is using a built-in registrar, it enrolls new clients using the
configuration of the VAP associated with the WPS service, whether this
configuration was configured directly on the WAP device or acquired by an
external registrar through WPS.
Client Enrollment
Push-button Control
The WAP device enrolls 802.11 clients through WPS by one of two methods: the
Push-Button Control (PBC) method, or the Personal Identification Number (PIN)
method.
The PBC method is when the user of a prospective client pushes a button on the
enrolling device, and the administrator of the WAP device with an enabled built-in
registrar pushes a similar (hardware or software) button. This sequence begins the
enrollment process, and the client device joins the network. Although the Cisco
WAP devices do not support an actual hardware button, the administrator can
initiate the enrollment for a particular VAP using a software button in the web-
based configuration utility.
NOTE There is no defined order in which the buttons on the client device and WAP device
must be pressed. Either device can initiate the enrollment. However, if the software
button on the WAP device is pressed, and no client attempts to enroll after 120
seconds, the WAP device terminates the pending WPS enrollment transaction.
PIN Control
A client may also enroll with a registrar by using a PIN. For example, the WAP
device administrator may start an enrollment transaction for a particular VAP by
entering the PIN of a client. When the client detects the WPS-enabled device, the
user can then supply its PIN to the WAP device to continue the enrollment process.
After the WPS protocol has completed, the client securely joins the network. The
client can also initiate this process.