Configuring Ruckus GRE and IPsec in the WLAN

You can configure the Ruckus GRE tunnel profile and IPsec profile in the WLAN to manage AP traffic.

  1. Follow the steps listed in the "Creating an IPsec Profile" of the SmartZone Administrator Guide for this release to create a IPsec profile.
    Note: The following IKE and ESP proposals are supported:
    • AES128-SHA1-MODP2048
    • AES256-SHA384-ECP384
    IKE encryption proposals should be greater than or equal to ESP encryption proposal. RuckusGRE over IPsec supports IKEv2 authentication by X.509 certificate only.
  2. Follow the steps listed in "Creating a Ruckus GRE Profile" of the SmartZone Administrator Guide for this release to create a Ruckus GRE profile.
    Note: For Tunnel mode , select RGRE.

    Set Tunnel Encryption to Disable.

  3. Create an AP zone with the appropriate Ruckus GRE and IPSec profiles. Go to Access Points.
    Note: RuckusGRE over IPsec is supported in transport mode only.
  4. Select the FIPS zone and click the + icon to configure the AP GRE Tunnel Options from the Configuration tab.
    Refer to "Creating an AP Zone" of the SmartZone Administrator Guide for this release.
    Figure 1. AP GRE Tunnel Configurations
  5. Go to Wireless LAN.
  6. Select the zone. The Creating WLAN Configuration page displays.
  7. Go to Data Plan Options and select the Ruckus GRE tunnel profile. By default, Ruckus GRE and IPsec are enabled and attached at the zone level to the WLAN.