In this article
Set up a Wi-Fi profile
Set up a Wi-Fi group
Set up a Wireless Phone SIP Profile
Before you register wireless phones
list-menuIn this article
list-menuFeedback?

Set up Wi-Fi profiles, groups, and templates before registering your Cisco Wireless Phone 9821. This Help article is for Cisco Wireless Phone 9821 registered to Cisco Unified Communications Manager (Unified CM).

Before you register wireless phones with your Cisco Unified Communications Manager (Unified CM), you can set up profiles, groups, and templates. These can simplify the phone setup when you have common information for all phones or groups of phones.

  • Wi-Fi profiles—Create a profile for the Wi-Fi network connections.

  • Wi-Fi profile groups—Create a group of Wi-Fi profiles that the phones can use.

  • Custom SIP Profile—(Optional) Set up a special SIP Profile, instead of the standard SIP profiles.

  • Phone button templates—Assign lines and features that users see when they access the Phones 9821 Phone app icon app. Use this if you have specific lines or features that you want all your users to access quickly. For example, you can set up a common speed dial number. Since the wireless phones have some special button requirements, see Phone button template for more information.

  • Softkey templates—Set up the list of features that users see when they press More 9821 More button. Since the wireless phones have fewer softkeys than desk phones, see Phone softkey template for more information.

  • Common phone profile—Set up a profile for the wireless phone with the phone button and softkey templates, and then use the profile for all your wireless phones.

You can find detailed instructions about these profiles and templates in the System Configuration Guide for Cisco Unified Communications Manager, Release 15 and SUs.

Set up a Wi-Fi profile

You can configure a Wi-Fi profile and assign it to Cisco Wireless Phone 9821. This profile contains the necessary parameters for the phone to establish a Wi-Fi connection and subsequently register with Cisco Unified CM. When you create and use a Wi-Fi profile, you or your users do not need to configure the wireless network for individual phones.

We recommend that you use a secure profile with TFTP encryption enabled to protect keys and passwords when you use a Wi-Fi profile.

The phones support one server certificate per install method (manual, SCEP, or TFTP).

Keep the following notes in mind before you configure the WLAN profile:

  • Username and password

    • When your network uses EAP-FAST and PEAP for user authentication, you must configure both the username and password if required on the Remote Authentication Dial-In User Service (RADIUS) and the phone.

    • The credentials that you enter in the wireless LAN profile must be identical with the credentials that you configured on the RADIUS server.
    • If you use domains within your network, you must enter the username with the domain name, in the format: domain\username.

  • The following actions could result in the existing Wi-Fi password being cleared:

    • Entering an invalid user id or password
    • Installing an invalid or expired Root CA when the EAP type is set to PEAP-MSCHAPV2 or PEAP-GTC
    • Disabling the in-use EAP type on the RADIUS server before switching the phone to the new EAP type
  • To change the EAP type, make sure that you enable the new EAP type on the RADIUS server first, then switch the phone to the EAP type. When all the phones have been changed to the new EAP type, you can disable the previous EAP type if you want.
1

In Cisco Unified Communications Manager Administration, select Device > Device Settings > Wireless LAN Profile.

2

Click Add New.

3

In the Wireless LAN Profile Information section, set the parameters:

  • Name—Enter a unique name for the Wi-Fi profile. This name displays on the phone.

  • Description—Enter a description for the Wi-Fi profile to help you differentiate this profile from other Wi-Fi profiles.

  • User Modifiable—Select an option:

    • Allowed—Indicates that the user can make changes to the Wi-Fi settings from their phone. This option is selected by default.

    • Disallowed—Indicates that the user cannot make any changes to the Wi-Fi settings on their phone.

    • Restricted—Indicates that the user can change the Wi-Fi username and password on their phone. But users are not allowed to make changes to other Wi-Fi settings on the phone. When your network uses EAP-TLS for user authentication, the user can choose the certificate type (MIC, LSC or User installed).

4

In the Wireless Settings section, set the parameters:

  • SSID (Network Name)—Enter the network name available in the user environment to which the phone can be connected. This name is displayed under the available network list on the phone and the phone can connect to this wireless network.

  • Frequency Band—Available options are Auto, 2.4 GHz, and 5 GHz. This field determines the frequency band that the wireless connection uses. If you select Auto, the phone attempts to use the 5 GHz or 6 GHz band first and only uses the 2.4 GHz band when 5 GHz or 6 GHz is not available.

5

In the Authentications Settings section, set the Authentication Method to one of these authentication methods: EAP-FAST, EAP-TLS, PEAP-MSCHAPv2, PEAP-GTC, PSK, and None.

Cisco Wireless Phone 9821 does not support WEP.

After you set this field, you may see extra fields that you need to set.

  • User certificate—Required for EAP-TLS authentication. Select MIC, LSC, or User installed. The phone requires a certificate to be installed, either automatically from the SCEP or manually from the administration page on the phone.

  • PSK passphrase—Required for PSK authentication. Enter the 8- 63 character ASCII or 64 HEX character pass phrase.

  • Provide Shared Credentials: Required for EAP-FAST, PEAP-MSCHAPv2, and PEAP-GTC authentication.

    • If the user manages the username and password, leave the Username and Password fields blank.

    • If all your users share the same username and password, you can input the information in the Username and Password fields.

    • Enter a description in the Password Description field.

    If you need to assign each user a unique username and password, you need to create a profile for each user.

Cisco Wireless Phone 9821 does not support the Network Access Profile field.

6

Click Save.

What to do next

Bind the Wireless LAN Profile to a WLAN Profile Group and then apply the WLAN Profile Group to a device pool (System > Device Pool) or directly to the phone (Device > Phone).

Set up a Wi-Fi group

You can create a wireless LAN profile group and add any wireless LAN profile to this group. The profile group can then be assigned to the phone when you set up the phone.

If your users require access to more than one profile, then a profile group can speed up phone configuration. Up to four profiles can be added to the profile group and you list the profiles in priority order.

1

In Cisco Unified Communications Manager Administration, select Device > Device Settings > Wireless LAN Profile Group.

You can also define a wireless LAN profile group from System > Device Pool.

2

Click Add New.

3

In the Wireless LAN Profile Group Information section, enter a group name and description.

4

In the Profiles for this Wireless LAN Profile Group section, select an available profile from the Available Profiles list and move the selected profile to the Selected Profiles list.

5

Click Save.

Set up a Wireless Phone SIP Profile

Cisco Unified Communications Manager (Unified CM) has standard SIP profiles available. However, a custom SIP Profile for your wireless phones is the preferred profile.

1

In Cisco Unified Communications Manager Administration, select Device > Device Settings > SIP Profile.

2

Click Find.

3

Open Standard SIP Profile, and then click the Copy icon.

4

Set the name and description to Custom 9821 SIP Profile.

5

Set the following parameters.

  • Timer Register Delta (seconds)—Set to 30 (default is 5).

  • Timer Keep Alive Expires (seconds)—Set to 300 (default is 120).

  • Timer Subscribe Expires (seconds)—Set to 300 (default is 120).

  • Timer Subscribe Delta (seconds)—Set to 15 (default is 5).

6

Click Save.

Was this article helpful?
Was this article helpful?