<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: DoS Criteria and Clients not showing in &amp;quot;Blocked Clients&amp;quot; table. in ZoneDirector</title>
    <link>https://community.ruckuswireless.com/t5/ZoneDirector/DoS-Criteria-and-Clients-not-showing-in-quot-Blocked-Clients/m-p/7840#M1411</link>
    <description>Sorry Andy, &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; A 'whitelist' allows authenticated clients to reach a server/service not allowed to&lt;BR /&gt;the typical member of that WLAN.&amp;nbsp; To insure clients can always access your WLAN,&lt;BR /&gt;you need to provide them with the PSK for your PSK WLANs, or userid/password&lt;BR /&gt;for 802.1x or HotSpot, or Guest Pass if using Guest Access, etc.&amp;nbsp; There is no "always&lt;BR /&gt;allow client MAC" to authenticate, type of feature.&amp;nbsp; Not even for Administrators.&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; WIPs prevents hackers from running thru a program of trial/error PSK, userid/pws.&lt;BR /&gt;Normal users, and guests you provide authentication info to, should not be blocked for &lt;BR /&gt;excessive attempts.</description>
    <pubDate>Mon, 16 Nov 2015 17:42:02 GMT</pubDate>
    <dc:creator>michael_brado</dc:creator>
    <dc:date>2015-11-16T17:42:02Z</dc:date>
    <item>
      <title>DoS Criteria and Clients not showing in "Blocked Clients" table.</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/DoS-Criteria-and-Clients-not-showing-in-quot-Blocked-Clients/m-p/7837#M1408</link>
      <description>Hi All,&lt;BR /&gt;&lt;BR /&gt;We currently have our ZoneDirector set to "Protect my wireless network against excessive wireless requests" under the "Configure &amp;gt; WIPS" menu, which is catching a few clients out following a recently password change.&lt;BR /&gt;&lt;BR /&gt;Does anyone know what ZoneDirector refers to as "excessive"? E.g.: How many failed attempts before the client is blocked, or time between attempts?&lt;BR /&gt;&lt;BR /&gt;When a client gets blocked it isn't appearing under "Configure &amp;gt; Access Control &amp;gt; Blocked Clients". The table is blank, so we're having to wait until the block period has expired. Is there an option I need to enable to make the blocked clients appear in this table?&lt;BR /&gt;&lt;BR /&gt;Also, is it possible to whitelist client MACs to ensure they never get blocked?&lt;BR /&gt;&lt;BR /&gt;Model: ZD1125, Version 9.8.0.0 build 373.&lt;BR /&gt;&lt;BR /&gt;Any help would be greatly appreciated.&lt;BR /&gt;&lt;BR /&gt;Thanks,&lt;BR /&gt;&lt;BR /&gt;Andy</description>
      <pubDate>Wed, 11 Nov 2015 18:14:48 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/DoS-Criteria-and-Clients-not-showing-in-quot-Blocked-Clients/m-p/7837#M1408</guid>
      <dc:creator>andy_higgins_75</dc:creator>
      <dc:date>2015-11-11T18:14:48Z</dc:date>
    </item>
    <item>
      <title>Re: DoS Criteria and Clients not showing in "Blocked Clients" table.</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/DoS-Criteria-and-Clients-not-showing-in-quot-Blocked-Clients/m-p/7838#M1409</link>
      <description>Hi Andy,&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; If you weren't temporarily blocking repeated failure attempt clients, they would likely be classified as 'excessive'.&lt;BR /&gt;I found this blurb in the ZD 9.12 User guide (great reference doc) that explains why the temporarily blocked clients&lt;BR /&gt;don't appear as 'blocked'.&lt;BR /&gt;&lt;BR /&gt;To configure the DoS protection options:&lt;BR /&gt;1 Go to Configure &amp;gt; WIPS.&lt;BR /&gt;2 In the Denial of Service (DoS) section, configure the following settings:&lt;BR /&gt;• Protect my wireless network against excessive wireless requests: If this&lt;BR /&gt;capability is activated, excessive 802.11 probe request frames and management&lt;BR /&gt;frames launched by malicious attackers will be discarded.&lt;BR /&gt;• Temporarily block wireless clients with repeated authentication failures&lt;BR /&gt;for [ ] seconds: If this capability is activated, any clients that repeatedly&lt;BR /&gt;fail in attempting authentication will be temporarily blocked for a period of&lt;BR /&gt;time (10~1200 seconds, default is 30). Clients temporarily blocked by the&lt;BR /&gt;Intrusion Prevention feature are not added to the Blocked Clients list on the&lt;BR /&gt;Configure &amp;gt; Access Control page, Blocked Clients section.</description>
      <pubDate>Fri, 13 Nov 2015 19:03:34 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/DoS-Criteria-and-Clients-not-showing-in-quot-Blocked-Clients/m-p/7838#M1409</guid>
      <dc:creator>michael_brado</dc:creator>
      <dc:date>2015-11-13T19:03:34Z</dc:date>
    </item>
    <item>
      <title>Re: DoS Criteria and Clients not showing in "Blocked Clients" table.</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/DoS-Criteria-and-Clients-not-showing-in-quot-Blocked-Clients/m-p/7839#M1410</link>
      <description>Hi Michael,&lt;BR /&gt;&lt;BR /&gt;Thanks for the information provided. If this is not possible I'm very surprised the option has been omitted, as it seems like it would be a simple feature to implement.&lt;BR /&gt;&lt;BR /&gt;Telling a visiting company director they will need to wait half an hour to access the files and websites they need for an important board meeting can be rather embarrasing, especially when we explain we have limited control over our wireless security system.</description>
      <pubDate>Mon, 16 Nov 2015 11:28:58 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/DoS-Criteria-and-Clients-not-showing-in-quot-Blocked-Clients/m-p/7839#M1410</guid>
      <dc:creator>andy_higgins_75</dc:creator>
      <dc:date>2015-11-16T11:28:58Z</dc:date>
    </item>
    <item>
      <title>Re: DoS Criteria and Clients not showing in "Blocked Clients" table.</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/DoS-Criteria-and-Clients-not-showing-in-quot-Blocked-Clients/m-p/7840#M1411</link>
      <description>Sorry Andy, &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; A 'whitelist' allows authenticated clients to reach a server/service not allowed to&lt;BR /&gt;the typical member of that WLAN.&amp;nbsp; To insure clients can always access your WLAN,&lt;BR /&gt;you need to provide them with the PSK for your PSK WLANs, or userid/password&lt;BR /&gt;for 802.1x or HotSpot, or Guest Pass if using Guest Access, etc.&amp;nbsp; There is no "always&lt;BR /&gt;allow client MAC" to authenticate, type of feature.&amp;nbsp; Not even for Administrators.&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; WIPs prevents hackers from running thru a program of trial/error PSK, userid/pws.&lt;BR /&gt;Normal users, and guests you provide authentication info to, should not be blocked for &lt;BR /&gt;excessive attempts.</description>
      <pubDate>Mon, 16 Nov 2015 17:42:02 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/DoS-Criteria-and-Clients-not-showing-in-quot-Blocked-Clients/m-p/7840#M1411</guid>
      <dc:creator>michael_brado</dc:creator>
      <dc:date>2015-11-16T17:42:02Z</dc:date>
    </item>
  </channel>
</rss>

