Hello Gus,
I’m in Ruckus support and will provide you with best effortas the product is EOL and there is no support entitlement. However, you can still purchase support forthe product for a full suite of support options. See EOL doc, https://support.ruckuswireless.com/documents/1060-zoneflex-zf7055-end-of-life-eol-notification,for your purchasing support options. Theproduct is EOL but you can still purchase support till 2021. I will also suggest upgrading the AP to thelast stand-alone available SW = 104.0.0.0.1347 = https://support.ruckuswireless.com/software/1017-zoneflex-solo-access-point-104-0-0-0-1347-ga-software-release
1. Is there a way tobackup the config of the AP.
--I saw a couple backup options but when I tried to restoreafter a factory reset the restore failed to set some values. This would be a timesaver if I screwup theconfig again.
Answer = there isno way to do a straight backup of the APs. You can do screen caps, of course, get the support info file (underMaintenance / Support Info) and see the configuration from the RPM keys withinthe support info file for future configuration reference.
2. Is a walledgarden/portal setup possible with this model AP?
--I got it close to working once then lost connection when Ichanged a setting. I've never been ableto get back that close. I've tried acouple version of software but I'm not sure which is the best for hotspot.
Answer = you candefinitely use Radius and Clearpass for the 802.1x certification. As you know, you have to create the 802.1xWLAN and work with a Hotspot configuration. Within the hotspot, you can definitely create a walled garden and allowyour network elements for pre-authentication access. This with accordance of having the latest SWrunning in the AP(s). Also, wouldrecommend to use Firefox or Chrome.
3. How doeswhitelisting walled garden work?
-- I've whitelisted our dns,dhcp,and portal servers but thisdoesnt seem to allow traffic to these servers. At least pings and dns lookups fail, packet captures show no correspondingtraffic at the switchports.
Answer = you also have to define the radiusserver, the clearpass cert server, gateway, etc (any elements that your AP willneed to communicate to on behalf of your client for authentication). Also, you will need to ping the gateway,clearpass server, radius server from the AP (unless you have statics routes defined within your network).
4. On the SSID screenthere is an access vlan field. Is thisan actual untagged vlan on the switchport or can I just trunk all vlans to theAP?
--I'd like to have vlan 1 as management for ap, vlan 2 forportal, vlan 3 for 802.1x, vlan 4 for mac-auth or no auth (I'll deal with thisafter I get above working).
Answer = under Configure/ Internet is where you find the AP management VLAN. AP Management VLAN is for AP access. By default, management VLAN is 1. For client traffic VLAN assignments, you dothat at the WLAN/ SSID configuration option (Configuration / Radio 2.4G,Configuration / Radio 5G), the access vlan fill in within the WLAN configuration.
Thank you,
-Roberto Flores.