Working with VPNs
Securing wireless client sessions with VPNs
16-3
Securing wireless client sessions with VPNs
Note The ability to secure wireless client sessions is intended for low-data-volume applications
like that of wireless POS terminals.
To secure wireless client sessions, create a VPN tunnel from the wireless client to the
controller. The sample topology seen earlier serves as an example for the sample
configurations that follow. In this example, the controller LAN port has an IP address of
7.1.1.1, the APs are at 7.1.1.2 and 5.1.1.2, and the wireless POS are at 7.1.1.3 and 5.1.1.3.
To use VPNs to secure wireless client sessions, configure an IPSec policy for this purpose, or
configure the L2TP server or PPTP server.
Note Wireless clients are typically assigned IP addresses from the VPN address pool. Configure
this first via Controller >> Network > Address allocation > VPN address pool. See VPN
address pool on page 16-5.
Note Wireless clients require VPN software that is configured to work with your VPN configuration
on the controller.
Controller
Router
Internet
port
24.1.1.4
Internet
LAN
port
7.1.1.1
VPN Server/
Gateway
(Peer)
3.1.1.2 10.0.0.0
10.0.0.2
Secure
resource
7.1.1.2
AP
Router
5.1.1.0
5.1.1.2
AP
5.1.1.3
Wireless
POS
7.1.1.3
Wireless
POS