Configuring Wireless Intrusion Prevention
Intrusion Detection and Prevention
Figure 67. Denial of Service (DoS) prevention options
Intrusion Detection and Prevention
ZoneDirector's intrusion detection and prevention features rely on background
scanning results to detect rogue access points connected to the network and
optionally, prevent clients from connecting to malicious rogue APs.
Rogue Access Points
A "Rogue Access Point" is any access point detected by a ZoneDirector-managed
access point that is not part of the ZoneFlex network managed by ZoneDirector.
Rogue devices are detected during off channel scans (background scanning) and
are simply other access points that are not being managed by ZoneDirector (e.g.,
an access point at a nearby coffee shop, a neighbor's apartment or shopping mall).
Typically, rogue access points are not a threat, however there are certain types that
do pose a threat that will be automatically identified by ZoneDirector as "malicious
rogue APs". The three automatically identified malicious access point categories are
as follows:
125
ZoneDirector 9.8 User Guide, 800-70599-001 Rev B
Need help?
Do you have a question about the ZoneDirector 1100 and is the answer not in the manual?
Questions and answers