
724-746-5500 | blackbox.com
724-746-5500 | blackbox.com
Page 117
Chapter 9: Common Configuration Examples
Wireless Client Wireless Access Point DHCP Client DHCP Server
Forming an association Address and TCP/IP assignments
Association Request
Association Response
1
2
DHCP Request
DHCP ACK
DHCP Discover
DHCP Offer
The client forms an association with the
SmartPath AP but the visitor has not yet
registered. The SmartPath AP allows DHCP,
DNS, and ICMP* services through. It redirects
all HTTP and HTTPS traffic to its own web
server and drops all other traffic.
* If the SmartPath AP enforces a firewall policy that
blocks ICMP services from registered users, it
will also block them from unregistered users. In
contrast to ICMP, DHCP and DNS are essential
services that must always be permitted by the
SmartPath AP firewall.
The SmartPath AP allows DHCP traffic to pass
between the client of an unregistered user and
a DHCP server so that the client can receive
its IP address and TCP/IP assignments.
If the SmartPath AP enforces a firewall policy
that blocks ICMP services from registered users,
it will also block them from unregistered users. In
contrasttoICMP,DHCPandDNSareessential
services that must always be permitted by the
SmartPath AP firewall.
Figure9-8.CaptiveWebportalexchangesusingexternalDHCPandDNSservers.
Commentaires sur ces manuels