Bluesocket BlueSecure 1800 User manual

BlueSecure™ Access Point 1800
Installation Guide
Bluesocket, Inc.
10 North Avenue
Burlington, MA 01803 USA
+1 781-328-0888
www.bluesocket.com
Part Number: 870-01500-M00
Document Version: 2.0

ii
Copyright Notice
Copyright © 2008 Bluesocket, Inc. All rights reserved.
No part of this document may be reproduced in any form or by any means, electronic or manual, including
photocopying without the written permission of Bluesocket, Inc.
The products described in this document may be protected by one or more U.S. patents, foreign patents, or pending
patents.
This document is provided “as is” without warranty of any kind, either express or implied, including, but not limited to,
the implied warranties of merchantability, fitness for a particular purpose, or non-infringement. This publication could
include technical inaccuracies or typographical errors. Changes are periodically added to the information herein; these
changes will be incorporated in new editions of the document. Bluesocket inc. may make improvements or changes in the
products or the programs described in this document at any time.
Trademarks
Bluesocket, The Bluesocket Logo, Secure Mobility, BlueView, BlueSecure, HighDataDensity, DynamicRF, and CellularLAN
are trademarks or registered trademarks of Bluesocket, Inc.
All other trademarks, trade names and company names referenced herein are used for identification purposes only and
are the property of their respective owners.
Publication Date: December 16, 2008

BlueSecure™ Access Point 1700 Installation Guide iii
Contents
Overview .................................................................................................1
Familiarizing Yourself with the BSAP Hardware ............................................2
Fixed Antennas......................................................................................3
LED Indicators .......................................................................................3
Ethernet/PoE Connector .........................................................................4
Reset Button ..........................................................................................4
Kensington Security Slot..........................................................................4
Provisioning Your Bluesocket WLAN for BSAPs .............................................4
Deploying BSAPs on the Same Layer-2 Subnet as the BSC ..........................5
Deploying BSAPs with Layer-3 Connectivity to the BSC...............................6
Selecting a BSAP Installation Location..........................................................7
Mounting the BSAP....................................................................................7
Dropped Ceiling Tool requirements..........................................................8
Conventional Ceiling Tool requirements....................................................8
Mounting Kit Contents ............................................................................8
Dropped Ceiling Kit Installation ...............................................................9
Ceiling Kit Installation...........................................................................13
Mounting on a Wall.............................................................................17
Connecting and Powering the BSAP ..........................................................19
Using the BSAP Command Line Interface (CLI).............................................20
Accessing the BSAP CLI ........................................................................20
Navigating the BSAP CLI ......................................................................20
BSAP Default Configuration...................................................................21
Setting the BSAP and Home BSC IP Addresses Using the CLI.....................22
Using the BSAP’s Site Survey Mode .......................................................23
General Specifications.............................................................................24
Declarations of Conformity and Regulatory Information................................27
Safety Warnings for BlueSecure™ Access Point 1800 .................................31

iv
Contents

BlueSecure™ Access Point 1800 Installation Guide 1
Overview
The BlueSecure Access Point 1800 is a next-generation, “thin” access point that
works in conjunction with BlueSecure Controllers (BSCs) for enterprise wireless
LAN (WLAN) deployments. The BlueSecure Access Point 1800 features dual
radios supporting 802.11a/n and 802.11b/g/n with an embedded MIMO
antenna panel under the top cover of the AP.
BSAPs are simple to configure and require only minimal provisioning to make
them fully operational on a WLAN secured and managed by a BlueSecure
Controller
BSAPs can be directly attached to any existing Layer-2 or Layer-3 Ethernet switch
and communicate with the BSC across any subnet boundary. Once the BSAP has
discovered and established Layer-2 or Layer-3 communication with its home (i.e.,
host) BlueSecure Controller, advanced configuration and provisioning may be
applied either to individual BSAPs or globally across the entire WLAN using the
BSC’s web-based Administrator Console.
Once a BlueSecure Access Point has downloaded its configuration from its home
BlueSecure Controller, the BSAP initializes its radios and begins servicing clients.
This guide provides complete installation procedures for your BSAP including:
• familiarizing yourself with the BSAP hardware
• provisioning your Bluesocket WLAN for BSAPs
• selecting a BSAP installation location
• connecting and powering the BSAP
• using the BSAP command line interface (CLI)
Figure 1: BSAPs Automatically Discover BSCs Across L2/L3 Networks

2
Familiarizing Yourself with the BSAP Hardware
Figure 2 illustrates the BSAP hardware. Familiarize yourself with the labeled
components before attempting to install the BSAP.
Figure 2: BSAP Hardware Components

Familiarizing Yourself with the BSAP Hardware
BlueSecure™ Access Point 1800 Installation Guide 3
Fixed Antennas
The BSAP-1800 utilizes an embedded MIMO antenna panel under the top cover
of the AP for wireless communications. There are three elements for each band
and all elements are used for both transmit and receive operations. The BSAP-
1800 also leverages the embedded Atheros radios and antenna panel to support
high-throughput communications with mobile devices.
LED Indicators
The following grouping of LED indicators is located on the top of the BSAP-1800
housing:.
The two status LEDs together indicate the following software operational modes,
depending on whether each LED is off, on, or blinking:
Link1 refers to the 802.11b/g/n Link and Link 2 refers to the 802.11a/n Link.
When the LED is on, it indicates that the unit is on and the radio active (note that
when unit is booting, the LED defaults to on even though the radio is disabled).
Activity 1refers to 802.11b/g/n Activity and Activity 2 refers to 802.11a/n
Activity. When the LED is on, it indicates data activity on the Ethernet link.
The BSAP does not have a power switch. It is powered on when connected to an
optional external AC power adapter (BSAP-PWR-000-00-0), and the power
adapter is connected to a power source. The BSAP power adapter automatically
adjusts to any voltage between 100-240 volts at 50 or 60 Hz. No voltage range
settings are required.
The BSAP may also receive Power over Ethernet (PoE) from a model BSC-600/
1200 Controller, switch or other network device that supplies power over the
network cable based on the IEEE 802.3af standard.
Table 1: BSAP Status LEDs
Left Status
LED
Right Status
LED Indicates
Off Off Failure
On Off Waiting for IP Address
Blinking Off BSC discovery in progress
On On System is operational
Blinking Blinking Software download in progress

4
Ethernet/PoE Connector
The BSAP-1800 has one auto-sensing 10BASE-T/100BASE-TX/1000BaseT RJ-45
connector that can be attached directly to 10BASE-T/100BASE-TX/1000BaseT
switches to provide a full-duplex link. These segments must conform to the IEEE
802.3 or 802.3u specifications.
This connector uses an MDI (i.e., internal straight-through) pin configuration. You
can use straight-through twisted-pair cable to connect this port to most network
interconnection devices such as a switch or router that provide MDI-X ports.This
connector will sense and correct wiring polarity, so no crossover cable is
required.
This connector uses an MDI (i.e., internal straight-through) pin configuration. You
can use straight-through twisted-pair cable to connect this port to most network
interconnection devices such as a switch or router that provide MDI-X ports.
The BSAP appears as an Ethernet node and performs a bridging function by
moving packets from the wired LAN to remote workstations on the wireless
infrastructure.
The Ethernet/PoE RJ-45 connector also supports Power over Ethernet (PoE) based
on the IEEE 802.3af standard.
802.3af specifies Power over Ethernet for “mid-span”, where a PoE injector are
located in the path between the network and the AP, as well as “PSE”, where the
power is supplied by the network switch the AP is attached to. Mid-span devices
typically provide power on the unused pairs (4+5 & 7+8) and only provide
100Mbps maximum throughput. To realize the full benefit of 802.11n, the BSAP-
1800 should be connected to a Gigabit Ethernet PoE switch or injector, such as
Bluesocket model BSAP-POE-001-00-0.
Reset Button
Use this button to reset the BSAP or restore its factory default configuration. If you
hold down the button for less than 5 seconds, the BSAP will perform a hardware
reset. If you hold down the button for 5 seconds or more, any configuration
changes you may have made are removed, and the factory default configuration
is restored to the BSAP.
Kensington Security Slot
The BSAP includes a Kensington security slot on the side panel. You can prevent
unauthorized removal of the BSAP by wrapping a Kensington security cable (not
provided) around an unmovable object, inserting the lock into the slot, and
turning the key.
Provisioning Your Bluesocket WLAN for BSAPs
There are prerequisites that must be met before deploying BSAPs in a live
network environment. These prerequisites ensure that the BSAPs are able to
discover and connect to a host BlueSecure Controller. Implementing these
prerequisites also relieves you from the need to manually configure each
deployed BSAP.

Provisioning Your Bluesocket WLAN for BSAPs
BlueSecure™ Access Point 1800 Installation Guide 5
The deployment prerequisites for BSAPs are:
•BSAP IP Address - Each BSAP requires a unique IP address.
•Host BlueSecure Controller IP Address - Each BSAP also needs the IP
address of the host BSC to which it will connect and from which it will obtain
its software image and configuration.
This section describes how to provision your Bluesocket WLAN when deploying
BSAPs:
• On the same Layer-2 subnet as the BSC
• Across a routed network with Layer-3 connectivity to the BSC
Deploying BSAPs on the Same Layer-2 Subnet as the BSC
If the BSAPs are on the same subnet as the home BlueSecure Controller as shown
in Figure 3, you can run a DHCP server on the BSC to manage IP address
assignment to BSAPs. In this scenario, the BlueSecure Controller must be the only
DHCP server for the subnet.
Alternatively, you can configure the BlueSecure Controller to run a DHCP relay
agent to relay DHCP communications between the BSAPs and a DHCP server on
your network.
When you run a DHCP server or a DHCP relay agent on the BSC to assign IP
addresses to BSAPs on the managed side, the BSC will also pass its IP address to
the BSAPs automatically using vendor-specific option 43. The BSAP will then
connect to the IP provided by the DHCP vendor option as its host BSC.
See the
BlueSecure Controller Setup and Administration Guide
for detailed DHCP
server and DHCP relay agent configuration procedures.
In this deployment scenario, simply connect and power on the BSAPs. They will
automatically discover and communicate with their home BSC.
Figure 3: Deploying BSAPs on the Same Layer-2 Subnet as the BSC
Run a DHCP Server or
a DHCP Server Relay
Agent on the BSC
BSAPs will Automatically
Discover and Communicate
with their Home BSC

6
Deploying BSAPs with Layer-3 Connectivity to the BSC
You can also deploy BSAPs on a routed network with Layer-3 connectivity to the
BSC as shown in Figure 4.
In this deployment scenario, you must ensure that each BSAP is able to
communicate with the BSC across the routed network by verifying that:
• There are no NAT devices between the BSAPs and the BSC
• Protocol 97, UDP Port 53, and TCP/UDP Port 33333 traffic is allowed
between the BSAPs and the BSC
Each BSAP will receive its IP address from your existing network DHCP server. An
exception case is if the BSAP is beyond a managed side router, running IP
helper. Then the BSAP will receive its IP address from the BSC, and be able to
discover it without any additional configuration.
The BSAP also needs the IP address of the home BSC to which it will connect and
from which it will obtain its software image and configuration. Again, this is not
needed if the BSAP is on the managed side getting a relayed IP address from the
BSC. You can provide the home BSC IP address to a BSAP using one of the
following methods:
•DHCP Server Option 43 - You can manually configure the DHCP server
on your network to send BSC IP addresses to BSAPs using DHCP vendor-
specific option 43.
In DHCP requests sent from the BSAP, the BSAP uses option 60 Vendor class
identifier with a value of BlueSecure.AP1500 to identify itself to the DHCP
server (Note that all BSAPs —1500,1540,1800 —identify as AP1500 for
option 43).
Refer to the documentation supplied with your DHCP server when configuring
vendor-specific option 43
•DNS Server Configuration - BSAPs are factory configured with
apdiscovery as the DNS hostname. You can configure a DNS server on
your network with an entry for apdiscovery with the home BSC Controller IP
address as the resolution.
Figure 4: Deploying BSAPs Across a Routed Network
Network
DHCP
Server
Network
DNS
Server
BSAPs Receive their IP
Addresses from
Network DHCP Server
BSAPs Receive Home BSC
IP Address Using DHCP
Option 43 or DNS
Other manuals for BlueSecure 1800
1
Table of contents
Other Bluesocket Wireless Access Point manuals

Bluesocket
Bluesocket BlueSecure 1700 User manual

Bluesocket
Bluesocket BlueSecure 1800v2 User manual

Bluesocket
Bluesocket BlueSecure Access Point 1540 User manual

Bluesocket
Bluesocket BlueSecure 1840 User manual

Bluesocket
Bluesocket BlueSecure Access Point 1500 User manual

Bluesocket
Bluesocket BlueSecureBSAP-1500 User manual

Bluesocket
Bluesocket BlueSecure 1840 User manual

Bluesocket
Bluesocket BlueSecure 1500 User manual

















