AMP Frequently Asked Questions
General Information
What is the AMP Management Platform?
Why do I need AMP?
How many APs can I manage with AMP?
What are the advantages of a multi-vendor management solution like AMP?
Is AMP an appliance?
Where does AMP reside on my network?
What are the hardware requirements?
With AMP, can I upgrade my hardware platform at no cost?
Can I manage more than one AMP server from a single console?
Does AMP integrate with CiscoWorks WLSE appliance?
Does AMP support wireless LAN switches and thin APs as well as intelligent APs?
Does AMP require any client software?
Which version of AMP is right for me?
AP Discovery
How does AMP automatically “discover” APs on my network?
Can I monitor a newly discovered AP without making a configuration change?
AP Configuration
What APs does AMP support?
Does AMP support access points with two radios (i.e., 802.11b and 802.11g)?
How do I autoconfigure an AP?
Can I use AMP to control RF transmission power on my APs?
Can I use AMP to update the firmware on my access points?
Can I schedule configuration changes or firmware upgrades for a future time?
Can I see which APs on my network have specific firmware configurations?
Does AMP let me view and confirm configuration changes before I apply them to an AP?
Monitoring
What type of monitoring information does AMP provide?
How often is monitoring information updated?
Can I use AMP to locate a particular user on my network?
Can I view a user’s roaming history?
Will AMP integrate with my existing network management solution (NMS)?
Is an existing network management solution (NMS) required?
Is AMP certified for interoperability with HP OpenView?
Can I view a topology map of my wireless APs with AMP?
Reports & Alerts
Does AMP provide reports?
Can I define my own alert thresholds and severity codes?
Can AMP generate email alerts?
Does AMP retain historical data?
Security
How does AMP make my wireless network more secure?
Can WEP keys be configured with AMP?
Does AMP support 802.1x-based security?
Does AMP support secure SNMPv3?
Does AMP support WPA encryption?
How does AMP detect rogue APs?
Can all access points wirelessly scan for rogue APs?
Purchasing Information
Can I see a demonstration of the AMP Management Platform?
How do I purchase the AMP Management Platform?
General Information
Q: What is the AMP Management Platform?
A: The AMP Management Platform (AMP) is a wireless network management software application that enables users to manage and control even large, multi-vendor Wi-Fi networks from a single, web-based management console. AMP provides a single point of intelligent control for:
- Automatic discovery of all wireless access points (APs) on your network
- Auto-configuration of access points and network infrastructure
- Centralized auditing and enforcement of wireless network security policies
- Real-time network monitoring
- AP-based RF scanning
- Automated detection of unauthorized "rogue access points"
- Integration with your existing network management solution (NMS)
Q: Why do I need AMP?
A: Any organization deploying a wireless LAN with more than a few wireless access points and users will need a specialized wireless network management solution. Wireless networks rely on fundamentally different technologies than traditional wired networks, and thus introduce a wide range of new management and security concerns. AMP delivers:
- Reduced operating costs. According to META Group estimates, operating expenses represent more than 85% of the total cost of ownership of a wireless LAN. AMP reduces operating costs by enabling efficient, centralized management of your entire wireless LAN infrastructure.
- Improved network performance. AMP continuously monitors the RF environment and all critical aspects of network performance, alerting you whenever performance parameters are outside acceptable ranges. In many cases, AMP can automatically implement corrective measures to ensure that you achieve the same levels of performance on your wireless network as you do on your wireline network.
- Enhanced security. AMP ensures that all security policies are uniformly applied across your entire wireless network and automatically restores the proper settings if any discrepancies are found. AMP also detects any unauthorized APs connected to your network and helps you identify and locate any unauthenticated users.
Q: How many APs can I manage with AMP?
A: AMP’s scalable, distributed architecture enables you to efficiently manage a virtually unlimited number of APs. There is no restriction to the number of APs that can be connected to a single server with AMP software. Most large organizations with 1,000-plus APs take advantage of AMP’s distributed architecture, using multiple networked AMP servers to deliver up-to-date network monitoring data and a highly responsive UI without generating excessive SNMP management traffic.
Q: What are the advantages of a multi-vendor management solution like AMP?
A: As a vendor-neutral, non-proprietary software solution, AMP delivers clear advantages that no proprietary solution can offer:
- Provides “best-of-breed” management practices by working with all leading vendors
- Manages existing, heterogeneous networks
- “Future-proofs” your network by ensuring that all new standards and features will be supported, regardless of vendor
- Avoids expensive “forklift updates” and allows you to set the timeline for hardware upgrades
- Eliminates dependence on specific vendors
- Gives you the flexibility to use specialized hardware where required (rugged APs in manufacturing areas, “hotspot” APs for guest access, etc.)
Q: Is AMP an appliance?
A: No. AMP is a software application that can be loaded on almost any server hardware. This gives you tremendous flexibility to increase your management capacity by using more powerful server hardware as your wireless LAN grows. With AMP, your ability to manage your network will never be constrained by your hardware platform.
Q: Where does AMP reside on my network?
A: AMP is a software solution that resides on standard PC hardware in your network operations center (NOC). AMP typically uses standard protocols such as SNMP and HTTP to manage your wireless infrastructure across a LAN or WAN, enabling you to control a geographically dispersed, global wireless network from a single location. For large wireless networks, AMP software is typically distributed among multiple servers, which are controlled from a master console. Because AMP has a web-based UI, you can manage your wireless LAN remotely from anywhere you have secure Internet access.
Q: What are the hardware requirements?
A: AMP is a software solution that typically runs on a standard PC server. AMP recommends a 3GHz Pentium® III–class processor, 1GB RAM, 20GB hard drive, and one 10/100 Ethernet network interface card.
Q: With AMP, can I upgrade my hardware platform at no cost?
A: Yes. You can install and move your licensed copy(ies) of AMP to any hardware platform of your choosing.
Q: Can I manage more than one AMP server from a single console?
A: Yes. The AMP Master Console™ provides a single console from which you can manage multiple servers running the AMP Management Platform software, enabling the seamless management of Wi-Fi networks with 20,000-plus APs. Network user permissions and AP groups may be established via the AMP Master Console, to reflect the logical structure and management responsibilities of individuals in your organization.
Q: Does AMP integrate with CiscoWorks WLSE?
A: Yes. AMP integrates directly with WLSE to gather advanced RF statistics and to enable Cisco Aironet access points to be used to wirelessly detect rogue access points in conjunction with AMP.
Q: Does AMP support wireless LAN switches and thin APs as well as intelligent APs?
A: Yes. AMP has been specifically designed to support multi-architecture as well as multi-vendor Wi-Fi networks. AMP today primarily supports intelligent, enterprise-class wireless access points from leading vendors such as Avaya, Cisco, Colubris, Enterasys, HP ProCurve, Symbol, LANCOM, Funkwerk, Nomadix, and Proxim. AMP supports both Cisco's Aironet and Airespace product lines. Support for other leading providers of switch-based Wi-Fi solutions will be announced shortly.
Q: Does AMP require any client software?
A: No. AMP is a 100% server-side software solution that requires no client software. The AMP Management Client™ software is an optional utility that enables two-way communication between connected client devices and the AMP Management Platform. By using this client software, which AMP uses to detect RF problems and rogue access points, you gain valuable additional information on the RF environment.
Q: Which version of AMP is right for me?
A: An AMP sales representative or partner will help you determine which version of AMP will best meet your needs. The following are general guidelines only:
- AMP Enterprise Edition is a multi-server license for customers with 1,000-plus wireless access points in one or more geographic locations. The base Enterprise Edition license includes four AMP server licenses with the AMP Master Console, for integrated management. Additional server licenses may be purchased separately.
- AMP Professional Edition is a single-server software license with no restriction on the number of access points managed. AMP Professional Edition typically supports 500 to 1,000 access points in normal network environments.
- AMP-200 Edition is a single-server software license for customers with 200 or fewer wireless access points.
- AMP-100 Edition is a single-server software license for customers with 100 or fewer wireless access points.
- AMP-50 Edition is a single-server software license for customers with 50 or fewer wireless access points.
- AMP-25 Edition is a single-server software license for customers with 25 or fewer wireless access points.
AP Discovery
Q: How does AMP automatically “discover” APs on my network?
A: AMP uses SNMP and HTTP scans as well as layer-2 discovery protocols (OSU, CDP, WNMP, IAPP, etc.) to discover wireless APs on your network. You can also manually input APs to the management system.
Q: Can I monitor a newly discovered AP without making a configuration change?
A: Yes. AMP lets you place an AP in “Monitor Only” mode. In this mode, AMP will examine the AP’s current configuration and display any changes that would be made to its configuration if it were assigned to one of your predefined or default configuration groups. Changes to the configuration will be applied only when you shift the AP to “Managed” mode.
AP Configuration
Q: What APs does AMP support?
A: AMP supports most major enterprise access points from leading manufacturers such as Cisco (Aironet and Airespace), Symbol, Colubris, Proxim (ORiNOCO), Enterasys, Avaya, HP ProCurve, LANCOM, Funkwerk Artem, and others. AMP continually adds support for additional access points.
Q: Does AMP support access points with two radios (i.e., 802.11b and 802.11g)?
A: Yes. AMP enables you to configure multiple radios independently on access points.
Q: How do I autoconfigure an AP?
A: AMP allows you to define AP groups that share common configurations. When AMP discovers a new AP on the network, you simply assign it to the appropriate group, and all appropriate configurations are applied automatically.
Q: Can I use AMP to control RF transmission power on my APs?
A: Yes. Transmission power is a configurable variable with AMP. Because AMP provides up-to-date information on client signal strength, you can proactively detect when signal strength is below acceptable levels and increase transmission power to alleviate the problem. Future versions of AMP will introduce automated RF management that will automatically fine-tune RF settings on the APs to optimize network performance in a dynamic usage environment.
Q: Can I use AMP to update the firmware on my access points?
A: Yes. AMP allows you to remotely upgrade the firmware on your access points and to specify the minimum acceptable firmware version for each AP manufacturer and model that you use. Upgrades are applied automatically and efficiently to large groups of APs or to an individual access point, and can be scheduled to minimize the impact on network performance. AMP works closely with leading access point vendors to ensure that new features and firmware are supported quickly.
Q: Can I schedule configuration changes or firmware upgrades for a future time?
A: Yes. AMP lets you schedule any configuration changes for specified time or maintenance windows.
Q: Can I see which APs on my network have specific firmware configurations?
A: Yes. AMP provides a standard daily AP inventory report that provides detailed information about the configurations of all APs on your network.
Q: Does AMP let me view and confirm configuration changes before I apply them to an AP?
A: Yes. When you assign an AP to a new configuration group, AMP gives you a detailed onscreen report that highlights any discrepancies between the existing AP configuration and the new configuration. Changes to the AP will go into effect only after you provide confirmation, which helps you avoid the errors that occur when AP configurations are accidentally overwritten.
Monitoring
Q: What type of monitoring information does AMP provide?
A: AMP provides near-real-time information on all aspects of WLAN performance, including AP status, associated users (by username, MAC address, and IP address), bandwidth utilization, signal strength per client, authentication status, duration of session, etc. This is displayed via AMP’s easy-to-use graphical UI.
Q: How often is monitoring information updated?
A: AMP’s SNMP polling interval is user-configurable, with standard polling periods ranging from 15 seconds to 10 minutes, depending on the size of the network, the network architecture, and the need for up-to-date monitoring information.
Q: Can I use AMP to locate a particular user on my network?
A: Yes. AMP identifies associated users by username and MAC address, enabling you to quickly locate any user on your network and identify the AP to which he or she is connected.
Q: Can I view a user’s roaming history?
A: Yes. AMP retains historical user association data in a database, enabling you to view detailed roaming and usage histories for every user on your network.
Q: Will AMP integrate with my existing network management solution (NMS)?
A: Yes. AMP can pass SNMP traps and alerts to almost any existing NMS. AMP customers who use HP OpenView Network Node Manager use the AMP Management Link™ software to enable AMP to be launched and used within the HP OpenView environment. APs and other wireless devices appear as icons in the NNM topology map and can be fully managed through AMP.
Q: Is an existing network management solution (NMS) required?
A: No. AMP provides a comprehensive yet easy-to-use, standalone, web-based console through which you can view and manage all network devices from anywhere in the world.
Q: Is AMP certified for interoperability with HP OpenView?
A: Yes. AMP’s AMP Management Link™ software is certified for interoperability with HP OpenView Network Node Manager.
Q: Can I view a topology map of my wireless APs with AMP?
A: Yes. Through AMP’s certified integration with HP OpenView Network Node Manager, your wireless network is displayed as a set of symbols on a network topology map. Colors indicate device status onscreen, ranging from “normal” (green) to “critical” (red). Future versions of AMP software will provide a visual representation of the RF airspace, enabling network administrators to view RF maps depicting coverage areas, dead zones, weak signal strength, etc. AMP’s RF mapping functionality will not require time-consuming surveys or placement of APs on floor-plan drawings.
Reports & Alerts
Q: Does AMP provide reports?
A: Yes. The AMP Management Platform includes comprehensive daily and ad hoc reporting packages to enable you to quickly assess the health and performance of your wireless network. Information contained in the reports can be extracted via XML into other applications for analysis.
Standard reports include graphical network usage reports, client reports, AP summary reports, and inventory reports for accurate asset tracking.
Q: Can I define my own alert thresholds and severity codes?
A: Yes. AMP lets you define trigger thresholds and define both severity codes and alerting procedures.
Q: Can AMP generate email alerts?
A: Yes. Depending on the severity of the problem, AMP can be configured to deliver alerts via the onscreen console, via SNMP traps to other management solutions, or directly to support personnel via email or pager.
Q: Does AMP retain historical data?
A: Yes. AMP can typically store one to two years of historical performance information. Because AMP is a software solution, customers may use a hardware platform with expanded storage to increase capacity. Our customers typically archive detailed client association data after several months.
Security
Q: How does AMP make my wireless network more secure?
A: To secure your wireless LAN, you must (1) encrypt wireless traffic, (2) control access to your network, and (3) ensure that no unauthorized users are on your network. AMP plays a critical role in all these areas. While AMP does not encrypt wireless data and is not an authentication server, AMP does support and integrate with leading encryption and authentication solutions.
- Encryption. Most common encryption solutions for WLANs (WEP, WPA, 802.11i, proprietary solutions such as LEAP, etc.) require that proper configuration settings be enabled at the AP. If settings are not properly configured on any AP, network security is inherently compromised. AMP addresses this vulnerability by (a) ensuring that all security settings are applied correctly to every AP, (b) continually auditing all settings to ensure that they remain in compliance with security policies, and (c) auto-repairing any AP configurations that do not comply with policies.
- Access control. AMP ensures that all APs are configured to support your access control policies: enable/disable 802.1x, specify primary/secondary RADIUS servers, manage access control lists (ACLs), etc. In addition, AMP communicates with your authentication server (RADIUS, VPN, wireless gateway, etc.) via an accounting interface to provide near-real-time monitoring information that indicates which users (by username and MAC address) are connected to your wireless network, making it easy for you to detect and locate any unauthorized users on the network.
- Rogue AP detection. AMP provides a unique, three-pronged method of identifying potential unauthorized “rogue” APs on a network. (1) AMP uses existing, authorized APs to conduct wireless environmental RF scans to detect any unknown access points in range. (2) AMP supplements this with wireline scans in which the “fingerprints” of access points are identified over the wired network, providing a comprehensive system for identifying rogue APs anywhere on the network. (3) AMP provides optional AMP Management Client software for WiFi-enabled Windows devices to enable them to serve as wireless RF scanners to detect rogue APs.
Q: Can WEP keys be configured with AMP?
A: Yes.
Q: Does AMP support 802.1x-based security?
A: Yes. AMP supports the configuration of 802.1x settings on access points and integrates with leading RADIUS servers.
Q: Does AMP support secure SNMPv3?
A: Yes. AMP utilizes SNMPv3 to manage APs that support this communications protocol. However, most AP manufacturers have not yet implemented support for SNMPv3.
Q: Does AMP support WPA encryption?
A: Yes. AMP supports WPA settings on most APs that comply with this standard, which encompasses: (1) 802.1x with EAP authentication, and (2) Temporal Key Integrity Protocol (TKIP).
Q: How does AMP detect rogue APs?
A: Rogue access points are unsecured, unmanaged APs that have been connected to your network, often by your own employees, without the knowledge of the IT staff. AMP employs a unique, patent-pending, three-pronged approach to detect rogue APs:
- (1) AMP can use your existing, authenticated APs to wirelessly scan the airwaves for unauthorized APs and alert you to their presence; and
- (2) AMP has developed a sophisticated method of polling your existing routers and switches to determine whether rogue APs are connected to the network. This unique combination of wireless and wireline techniques assures that you can detect and locate rogue APs efficiently, anywhere in the enterprise;
- (3) AMP provides optional AMP Management Client software for WiFi-enabled Windows devices to enable them to serve as wireless RF scanners to detect rogue APs.
Q: Can all access points wirelessly scan for rogue APs?
A: Most enterprise-grade APs today provide this capability. AMP integrates with CiscoWorks WLSE to enable Cisco Aironet APs to detect rogue APs wirelessly via AMP. AMP communicates directly with APs from Avaya, Intel, Proxim, Symbol, LANCOM, and Colubris to provide this functionality. Some other manufacturers do not yet support this advanced functionality.
Purchasing Information
Q: Can I see a demonstration of the AMP Management Platform?
A: For qualified potential customers, AMP will arrange an online demonstration of the capabilities of the AMP Management Platform. Contact AMP at sales@amp-solutions.net or 866-WIFI-AMP (866-943-4267) to arrange a live demo.
Q: How do I purchase the AMP Management Platform?
A: AMP software is installed and supported by members of a world-class network of highly trained resellers and systems integrators. Email AMP at sales@amp-solutions.net or call 866-802-1121 for the name of a reseller in your area.
|