Configuration Procedure for Wireless Bridge Point-to-Point Access
The University of North Carolina at Greensboro
Policy Reference: Wireless Communications Policy
Approved: November 30, 2006
Document Maintainer: Information Technology Manager, ITS - Data and Voice Operations
Wireless bridges used as point-to-point between UNCG campus and remote locations need to meet the minimum specification laid out by the WiFi Alliance to be able to do 802.11i standardized security setup with WPA(1) or WPA(2) with 802.1x point to point authentication.
To configure a bridge, please register it in MACMASTER and then contact one of the Senior Network Engineers to prepare UNCG template configuration using TFTP. Physical installation and wiring needs to be done by the physical plant along with the contractor.
Once you have installed the access point, please verify that the bridge is working as a full fledge 802.11i specification setup. By doing the following, log into the bridge and check association mechanism and encryption. The following shows an example of an IOS access-point acting as a bridge and doing highest possible 128 bit WPA(1) encryption and 802.1x encapsulation.
Check Associations
APBR-1605-SPRING-ROOT#show dot11 associations
802.11 Client Stations on Dot11Radio0:
SSID [1605-SPRING]:
MAC Address, IP address, Device, Name, Parent, State
0014.f2f4.9013, 10.9.240.11, bridge, APBR-1605-SPRIN self, EAP-Assoc
Check encryption level
APBR-1605-SPRING-ROOT#show logging
Jan 5 22:38:12.654: %DOT11-6-ASSOC: Interface Dot11Radio0, Station APBR-1605-SPRIN 0014.f2f4.9013 Associated KEY_MGMT[WPA]
Check bandwidth and traffic capacity
APBR-1605-SPRING-ROOT# dot11 dot11Radio 0 linktest
GOOD (0% retries) Time, Strength, Quality %, Retries
msec % In dBm % Out dBm, In, Out, In, Out
Sent :9000, Avg 2 100 - 35 100 - 36 NA NA Tot: 11 5
Lost to Tgt: 0, Max 19 100 - 35 100 - 36 NA NA Max: 1 1
Lost to Src: 0, Min 1 100 - 38 100 - 38 NA NA
Rates (Src/Tgt) 54Mb 9000/9000
Access Point Configuration Details Omitted
