This article describes the SSID settings available for Datto access points.
- Datto Access Points
- Datto Network Manager
Each Datto access point can broadcast four unique SSIDs that users can connect to. A network will configure every access point to broadcast the same SSID, and to use the same settings.
1. Navigate to a device web session for your access point.
2. In the Navigation menu, click Access Points, then click an SSID.
Each SSID contains the following settings and options:
- SSID name: Enter the name users will see and connect to using their device. You can also select the checkbox for Use access point name to combine both the SSID and access point names.
- Enable: When toggled on, an SSID will broadcast on all access points in this network. When toggled off, the SSID will not broadcast, and users cannot connect to it even when entering the name manually.
- Visible: When toggled on, an SSID will advertise itself publicly so users can select it from their list of available networks. When toggled off, users must enter the SSID name manually.
- Band: Access points broadcast their signal on specific radio frequencies. Use the Band drop-down to control what radio and frequency an SSID uses. You can select from the following options:
- Both - Combined SSID: Both 2.4 GHz and 5 GHz SSID broadcasts will use the same name. Client devices will make their own roaming decisions on which frequency to connect to.
- Both - Unique SSIDs: Each radio will broadcast its own unique SSID, even if the access point has multiple radios using the same frequency. For example, an access point that has two radios using the 5 GHz frequency will have two fields for SSID name (5GHz #1), and SSID name (5GHz #2).
- 2.4 GHz only: An SSID will only use the 2.4 GHz frequency.
- 5 GHz only: An SSID will only use the 5 GHz frequency.
- Authentication: Enable this to authenticate users as they connect to an SSID. You can choose from one of the following authentication methods:
- Pre-shared key (Password): Users will enter a password when connecting to an SSID. Enter a password in the WPA password field. It must be eight characters or longer with no spaces. Selecting the WPA2-only checkbox will only authenticate client devices supporting WPA2.
- WPA Enterprise: Users will enter a username and password defined in a server configured for 802.1x authentication. All connecting client devices must support WPA2. For more information on configuring 802.1x, read our WPA Enterprise/802.1x Setup with Windows Server article.
The Captive Portal allows you to configure splash pages, custom authentication settings, and more. The following settings and options are available:
- Bandwidth throttling: When enabled, each client device on an SSID will have its speed throttled. Use the Download and Upload sliders to set their throttled speed, or enter their values in Mbps. This is required if you are configuring throttling on vouchers, PayPal, RADIUS and HTTP Authentication using Datto Networking.
- Splash page: When enabled, you can configure the page that users will see when connecting to an SSID. Datto Networking offers multiple splash page options that can integrate with third-party services, such as Facebook WiFi or PayPal. You can also create and host your own splash page using Datto Networking's built-in editor. The following articles describe all splash page options available:
- Blocked devices: Enter MAC addresses of devices that you wish to block from connecting to an SSID.
- Block message: Enter a message that will display when a blocked device attempts to connect to an SSID.
Each SSID has a WiFi schedule that allows you to enable or disable each SSID for specific times of the day. For more information, read our WiFi Scheduling article.
- Band Steering: Toggle band steering on or off.
- 802.11k: This option improves client device roaming performance by providing client devices with a list of neighboring access points and their channels to select from prior to roaming. For more information, read our Client Device Roaming article.
- 802.11r: This option improves client device roaming by reducing the handoff delay in situations where client devices are roaming from one access point to another. This is only available if an SSID has WPA authentication enabled.
- Block LAN Access: This option prevents users on this wireless network from accessing your wired LAN.
- Client isolation: This option prevents your wireless users from accessing other local users and machines.
- DNS Intercept: This option prevents client devices from overriding the DNS settings of the SSID, and instead uses the default gateway DNS, or the Alternate DNS address when set. Disabling this feature will also disable Block Clients, Splash Pages, and Alternate DNS.
- SMTP Redirect: This option allows you to enter an alternate SMTP server IP address for your network. Users can then send SMTP email by using your ISP's SMTP server.
- Alternate DNS: This option allows you to enter alternate DNS server IP addresses, one per line, for an SSID. This will override any other alternate DNS servers configured on other SSIDs.
- Access Control List: This option allows you to enter MAC addresses that can use an SSID. This will prevent all other users not on the list from using an SSID.
- Bridge to LAN: This option will give client devices connecting to an SSID access to your local LAN. This will allow users to use local services and devices, such as printers and locally hosted file servers.
- Bridge to VLAN: This option allows you to enter a VLAN ID from 2-4094 for an SSID, and will bridge and tag traffic to the entered VLAN ID. Using a VLAN automatically bridges the SSID to the LAN.
Datto Networking automatically generates an Item ID that connects a network and an SSID to PayPal. For more information, read our article on Using PayPal in Datto Networking.