Virtual AP & Secutiry on WLAN1

Hello everyone,

iam unsing some MT with Wireless interface (Multiple SSIDs)

The virtual APs are using EAP-PEAP, WPA2, and operating in different VLANs.

My Question is, do i have to enable security on wlan1, even if i don’t publish a SSID (only using VirtualAPs)

Is it save to let it “open”? What shuld i do? strong WPA2 key?

Kind Regards!

If you leave it open anyone will be able to connect, AFAIK you cannot run VirtualAPs and disable the “hardware” one, so you’ll have to:

a) Move any of the virtualAPs to the “hardware SSID”

b) If you’re going to use that SSID, you could either:

  • Use security (WPA2 EAP with a strong key will do) .

  • You could prevent its use with deselecting “default authenticate” and “default forward” so that no one (unless the mac is listed in Access List with proper authentication and forward defaults) will be able to connect to it.