SonicPoint > Virtual Access Point
553
SonicOS 5.8.1 Administrator Guide
A network security zone is a logical method of grouping one or more interfaces with friendly,
user-configurable names, and applying security rules as traffic passes from one zone to
another zone. With the zone-based security, the administrator can group similar interfaces and
apply the same policies to them, instead of having to write the same policy for each interface.
Network zones are configured from the Network > Zones page.
For detailed information on configuring zones, see Chapter 18, Configuring Zones.
The Wireless Zone
The Wireless zone type, of which the “WLAN Zone” is the default instance, provides support to
SonicWALL SonicPoints. When an interface or subinterface is assigned to a Wireless zone, the
interface can discover and provision Layer 2 connected SonicPoints, and can also enforce
security settings above the 802.11 layer, including WiFiSec Enforcement, SSL VPN redirection,
Guest Services, Lightweight Hotspot Messaging and all licensed Deep Packet Inspection
security services.
Note SonicPoints can only be managed using untagged, non-VLAN packets. When setting
up your WLAN, ensure that packets sent to the SonicPoints are non VLAN tagged.
Custom Wireless Zone Settings
Although SonicWALL provides the pre-configured Wireless zone, administrators also have the
ability to create their own custom wireless zones. When using VAPs, several custom zones can
be applied to a single, or multiple SonicPoint access points. The following three sections
describe settings for custom wireless zones:
• “General” section on page 554
• “Wireless” section on page 555
• “Guest Services” section on page 556