Pr oC ur v e 5400zl S w it c h e s
Inst al l a t i o n an d G e t t i n g S t art e d G u i d e
HP MSM7xx Controllers CLI Reference Guide
HP MSM7xx Controllers CLI
Reference Guide
HP MSM7xx Controllers
CLI Reference Guide
Copyright and Disclaimer Notices
© Copyright 2011 Hewlett-Packard Development Company, L.P. The
information contained herein is subject to change without notice.
This document contains proprietary information, which is
protected by copyright. No part of this document may be
photocopied, reproduced, or translated into another language
without the prior written consent of Hewlett-Packard.
Publication Number
5998-1432
December 2011
Applicable Products
See Products covered on page 1-2 .
Trademark Credits
Windows NT®, Windows®, and MS Windows® are US
registered trademarks of Microsoft Corporation.
Disclaimer
HEWLETT-PACKARD COMPANY MAKES NO WARRANTY OF
ANY KIND WITH REGARD TO THIS MATERIAL, INCLUDING,
BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF
MERCHANTABILITY AND FITNESS FOR A PARTICULAR
PURPOSE. Hewlett-Packard shall not be liable for errors
contained herein or for incidental or consequential damages in
connection with the furnishing, performance, or use of this
material.
The only warranties for HP products and services are set forth
in the express warranty statements accompanying such
products and services. Nothing herein should be construed as
constituting an additional warranty. HP shall not be liable for
technical or editorial errors or omissions contained herein.
Hewlett-Packard assumes no responsibility for the use or
reliability of its software on equipment that is not furnished by
Hewlett-Packard.
Hewlett-Packard Company
8000 Foothills Boulevard
Roseville, California 95747
www.hp.com/networking
Contents
1 Introduction
About this guide ...........................................................................................................1-2
Products covered...................................................................................................1-2
Important terms.....................................................................................................1-2
Typographical conventions ..................................................................................1-2
Command syntax ............................................................................................1-2
Management tool ............................................................................................1-3
New in this release.......................................................................................................1-4
HP support ....................................................................................................................1-4
Before contacting support............................................................................. 1-4
Online documentation .................................................................................................1-5
Configuring CLI support..............................................................................................1-5
Secure shell access................................................................................................1-6
Authentication .......................................................................................................1-6
Serial port access...................................................................................................1-7
Starting a CLI session on the serial port ......................................................1-7
Entering strings ............................................................................................................1-8
Context hierarchy ........................................................................................................1-9
Sample CLI sessions ..................................................................................................1-10
Example 1 ......................................................................................................1-10
Example 2 ......................................................................................................1-11
Example 3 ......................................................................................................1-11
File transfer.................................................................................................................1-12
A. The controller gets the file using a URL................................................1-12
B. Send a file to the controller ....................................................................1-12
iii
2 CLI commands
View context .................................................................................................................2-3
arping ......................................................................................................................2-3
enable......................................................................................................................2-3
nslookup ................................................................................................................. 2-3
ping..........................................................................................................................2-3
ps .............................................................................................................................2-3
quit...........................................................................................................................2-3
show license...........................................................................................................2-4
show logging filtered.............................................................................................2-4
top............................................................................................................................2-4
traceroute ...............................................................................................................2-4
Enable context..............................................................................................................2-5
reboot device..........................................................................................................2-5
show certificate .....................................................................................................2-5
show certificate binding ....................................................................................... 2-5
iperf .........................................................................................................................2-5
ping..........................................................................................................................2-5
arping ......................................................................................................................2-6
arp............................................................................................................................2-6
end........................................................................................................................... 2-6
quit...........................................................................................................................2-6
rcapture...................................................................................................................2-6
show arp .................................................................................................................2-6
show bridge............................................................................................................2-7
show bridge forwarding........................................................................................2-7
show dns cache......................................................................................................2-7
show interfaces......................................................................................................2-7
show ip....................................................................................................................2-7
show ip route .........................................................................................................2-7
show system info ...................................................................................................2-7
show vsc overview ................................................................................................2-7
show controlled-aps wireless clients ..................................................................2-8
disassociate controlled-ap wireless client _.......................................................2-8
show ip dhcp database..........................................................................................2-8
show satellites........................................................................................................2-8
show web content .................................................................................................2-8
show client log....................................................................................................... 2-8
iv
show radius statistics............................................................................................2-8
show radius users..................................................................................................2-8
show users..............................................................................................................2-9
show discrete pin...................................................................................................2-9
config.......................................................................................................................2-9
show all config.......................................................................................................2-9
controlled network................................................................................................2-9
show controlled network config..........................................................................2-9
Config context ............................................................................................................2-10
vlan ........................................................................................................................2-10
New interface................................................................................................................2-10
dhcp public ip default lease period ...................................................................2-10
dhcp public ip subnet..........................................................................................2-10
certificate..............................................................................................................2-10
certificate binding................................................................................................2-10
certificate revocation ..........................................................................................2-11
end......................................................................................................................... 2-11
factory settings ....................................................................................................2-11
network-profile ....................................................................................................2-11
reboot device........................................................................................................2-11
show certificate ...................................................................................................2-11
show certificate binding ..................................................................................... 2-11
show config factory.............................................................................................2-12
show network-profiles........................................................................................ 2-12
show tech..............................................................................................................2-12
interface ethernet ................................................................................................2-12
interface ip............................................................................................................2-12
interface pptp client-default...............................................................................2-12
interface gre .........................................................................................................2-12
New show lacp..............................................................................................................2-13
New show mac-address ...............................................................................................2-13
New show mac-address count ....................................................................................2-13
New show trunks..........................................................................................................2-13
New show vlans ............................................................................................................2-13
virtual ap...............................................................................................................2-13
cap-switch to........................................................................................................ 2-13
show subscription plan.......................................................................................2-14
subscription plan .................................................................................................2-14
mac list..................................................................................................................2-14
v
show mac list .......................................................................................................2-14
ipsec policy...........................................................................................................2-14
admin local authentication.................................................................................2-14
admin radius authentication ..............................................................................2-15
admin radius authentication server ..................................................................2-15
ip http port............................................................................................................2-15
ip https port..........................................................................................................2-15
snmp-server trap certificate-expired.................................................................2-15
snmp-server trap certificate-expires-soon .......................................................2-16
snmp-server trap web-fail...................................................................................2-16
snmp-server trap web-login................................................................................2-16
snmp-server trap web-logout .............................................................................2-16
username ..............................................................................................................2-16
web admin kickout..............................................................................................2-17
web allow..............................................................................................................2-17
web access internet-port ....................................................................................2-17
web access lan-port.............................................................................................2-17
web access interface vlan...................................................................................2-17
web access interface gre ....................................................................................2-18
web access vpn ....................................................................................................2-18
web access lan .....................................................................................................2-18
dhcp mode............................................................................................................2-18
enable console password reset..........................................................................2-18
console authentication........................................................................................2-18
dhcp server...........................................................................................................2-19
dhcp server default domain name.....................................................................2-19
dhcp server default lease period .......................................................................2-19
dhcp server default permanent lease period....................................................2-19
dhcp server controller.........................................................................................2-19
dhcp server controller discovery.......................................................................2-19
dhcp server logout html user .............................................................................2-20
dhcp server access centralized clients .............................................................2-20
dhcp server access lan........................................................................................ 2-20
dhcp relay .............................................................................................................2-20
dhcp relay circuit id ............................................................................................2-20
dhcp relay remote id ...........................................................................................2-21
dhcp relay access centralized clients................................................................2-21
dhcp relay access lan ..........................................................................................2-21
New dhcp relay access access network ....................................................................2-21
vi
dhcp relay extend internet port......................................................................... 2-21
New dhcp relay extend internet network..................................................................2-22
clock......................................................................................................................2-22
clock auto adjust dst ...........................................................................................2-22
clock timezone.....................................................................................................2-22
clock use custom dst rules.................................................................................2-22
ntp protocol..........................................................................................................2-23
ntp server..............................................................................................................2-23
clock custom dst begins .....................................................................................2-23
clock custom dst begins format.........................................................................2-23
clock custom dst ends ........................................................................................2-24
clock custom dst ends format............................................................................2-24
ntp server..............................................................................................................2-24
ntp server failure trap .........................................................................................2-24
config-update automatic.....................................................................................2-25
config-update operation......................................................................................2-25
config-update start ..............................................................................................2-25
config-update time...............................................................................................2-25
config-update uri..................................................................................................2-25
config-update weekday.......................................................................................2-25
snmp-server trap config-change ........................................................................2-26
snmp-server trap config-update.........................................................................2-26
logging destination ..............................................................................................2-26
snmp-server trap syslog-severity .......................................................................2-26
snmp-server..........................................................................................................2-26
snmp-server allow ...............................................................................................2-27
snmp-server chassis-id........................................................................................2-27
snmp-server contact............................................................................................2-27
snmp-server heartbeat period............................................................................2-27
snmp-server location...........................................................................................2-27
snmp-server port..................................................................................................2-28
snmp-server readonly..........................................................................................2-28
snmp-server readwrite........................................................................................2-28
snmp-server trap..................................................................................................2-28
snmp-server trap community............................................................................. 2-28
snmp-server trap destination ............................................................................. 2-29
snmp-server trap heartbeat ................................................................................2-29
snmp-server trap link-state.................................................................................2-29
snmp-server trap snmp-authentication.............................................................2-29
vii
snmp-server version 1.........................................................................................2-29
snmp-server version 2c.......................................................................................2-30
snmp-server version 3.........................................................................................2-30
snmp-server access interface vlan ....................................................................2-30
snmp-server access interface gre ......................................................................2-30
snmp-server access port-1..................................................................................2-30
snmp-server access port-2..................................................................................2-31
snmp-server access vpn......................................................................................2-31
snmp-server trap device-authorization-failure.................................................2-31
snmp-server trap device-configuration-failure ................................................2-31
snmp-server trap device-firmware-failure........................................................2-31
snmp-server trap device-security-failure..........................................................2-32
snmp-server trap device-state-change ..............................................................2-32
snmp-server trap new-satellite-detected ..........................................................2-32
snmp-server trap satellite-unreachable ............................................................2-32
snmp-server trap service-controller-state.........................................................2-32
snmp-server access lan....................................................................................... 2-33
snmp-server user .................................................................................................2-33
snmp-server notification receiver .....................................................................2-33
soap-server ...........................................................................................................2-33
soap-server access interface vlan......................................................................2-33
soap-server allow.................................................................................................2-34
soap-server http authentication.........................................................................2-34
soap-server http authentication password.......................................................2-34
soap-server http authentication username.......................................................2-34
soap-server port...................................................................................................2-34
soap-server ssl......................................................................................................2-34
soap-server ssl with client certificate ...............................................................2-35
soap-server access interface gre........................................................................2-35
soap-server access port-1 ...................................................................................2-35
soap-server access port-2 ...................................................................................2-35
soap-server access lan ........................................................................................2-35
soap-server access vpn ....................................................................................... 2-36
snmp-server trap vpn-connection......................................................................2-36
snmp-server trap syslog-matches ......................................................................2-36
snmp-server trap syslog-matches regex ...........................................................2-36
snmp-server trap syslog-severity level..............................................................2-36
snmp-server trap network-trace ........................................................................2-36
firmware-update automatic................................................................................2-37
viii
firmware-update start .........................................................................................2-37
firmware-update time..........................................................................................2-37
firmware-update uri ............................................................................................2-37
firmware-update weekday..................................................................................2-38
snmp-server trap firmware-update....................................................................2-38
ip name-server......................................................................................................2-38
ip name-server cache ..........................................................................................2-38
ip name-server dynamic......................................................................................2-38
ip name-server interception ............................................................................... 2-39
ip name-server switch-on-servfail .....................................................................2-39
ip name-server switch-over ................................................................................2-39
ip name-server logout-info .................................................................................2-39
access controller shared secret .........................................................................2-39
radius-server profile ............................................................................................2-40
ip-qos profile ........................................................................................................2-40
access controller..................................................................................................2-40
certificate ipsec ca...............................................................................................2-40
certificate ipsec local ..........................................................................................2-40
certificate ipsec revocation................................................................................2-41
certificate ssl ........................................................................................................2-41
session profile default.........................................................................................2-41
session profile......................................................................................................2-41
show session profile............................................................................................2-41
remote configuration ..........................................................................................2-41
lldp config.............................................................................................................2-42
lldp dynamic-name ..............................................................................................2-42
lldp dynamic-name refresh-time........................................................................2-42
lldp dynamic-name user-string...........................................................................2-42
lldp fast-start-count .............................................................................................2-42
lldp holdtime-multiplier...................................................................................... 2-43
lldp med-location civic-address-element..........................................................2-43
lldp med-location elin-addr ................................................................................2-43
lldp refresh-interval.............................................................................................2-43
lldp run..................................................................................................................2-43
show lldp config...................................................................................................2-43
show lldp info local-device.................................................................................2-43
show lldp info remote-device.............................................................................2-44
show lldp stats .....................................................................................................2-44
discovery protocol...............................................................................................2-44
ix
discovery protocol device-id..............................................................................2-44
service controller ap authentication credentials.............................................2-44
service controller ap authentication enable.....................................................2-44
service controller ap authentication file...........................................................2-45
service controller ap authentication radius-server ......................................... 2-45
service controller ap authentication refresh-rate............................................2-45
service controller ap authentication source file..............................................2-45
service controller ap authentication source local...........................................2-45
service controller ap authentication source radius ........................................2-45
service controller discovery...............................................................................2-46
service controller primary..................................................................................2-46
service controller primary ip addr.....................................................................2-46
service controller priority...................................................................................2-46
service controller discovery interface internet-port....................................... 2-46
service controller discovery interface lan-port ...............................................2-46
New service controller discovery interface ..............................................................2-47
service controller provisioning..........................................................................2-47
bandwidth control internet-port........................................................................2-47
bandwidth control internet-port high ...............................................................2-47
bandwidth control internet-port low ................................................................2-47
bandwidth control internet-port max-rate .......................................................2-47
bandwidth control internet-port normal ..........................................................2-48
bandwidth control internet-port very-high.......................................................2-48
New bandwidth control ...............................................................................................2-49
New bandwidth control high.......................................................................................2-49
New bandwidth control low........................................................................................2-49
New bandwidth control max-rate...............................................................................2-49
New bandwidth control normal..................................................................................2-50
New bandwidth control very-high..............................................................................2-50
ip route gateway ..................................................................................................2-50
firewall mode .......................................................................................................2-51
show user profiles ...............................................................................................2-51
show user profiles details...................................................................................2-51
user profile ...........................................................................................................2-51
renew user profile subscription.........................................................................2-51
New dot1x radius accounting start delay..................................................................2-51
dot1x reauth .........................................................................................................2-52
dot1x reauth period.............................................................................................2-52
dot1x reauth terminate ....................................................................................... 2-52
x
dot1x supplicant timeout....................................................................................2-52
dynamic key .........................................................................................................2-52
dynamic key interval ...........................................................................................2-53
key chain...............................................................................................................2-53
config-version.......................................................................................................2-53
radius-server accounting session ......................................................................2-53
radius-server client..............................................................................................2-53
radius-server local eap-peap ..............................................................................2-53
radius-server local eap-tls...................................................................................2-54
radius-server local eap-ttls ................................................................................. 2-54
radius-server local pap........................................................................................2-54
radius-server ssid detection nas-id....................................................................2-54
show radius-server ..............................................................................................2-54
active-directory check attribute ........................................................................2-54
active-directory check user access ...................................................................2-55
active-directory device name............................................................................. 2-55
active-directory domain......................................................................................2-55
active-directory domain netbios name .............................................................2-55
active-directory group.........................................................................................2-55
active-directory group order ..............................................................................2-55
active-directory join ............................................................................................2-56
show active-directory..........................................................................................2-56
show active-directory group ..............................................................................2-56
radius-server client..............................................................................................2-56
user tracking ........................................................................................................2-56
user tracking destination....................................................................................2-56
user tracking filter...............................................................................................2-56
user tracking port ................................................................................................2-57
persistent user information................................................................................2-57
persistent user information period....................................................................2-57
client data tunnel security..................................................................................2-57
igmp proxy............................................................................................................2-57
igmp proxy downstream interface ....................................................................2-57
igmp proxy upstream interface..........................................................................2-57
rf-id aeroscout......................................................................................................2-58
sflow......................................................................................................................2-58
show sflow agent .................................................................................................2-58
show sflow controller stats ................................................................................2-58
show sflow device stats ......................................................................................2-58
xi
sflow destination 80211 ......................................................................................2-58
show sflow destination....................................................................................... 2-58
show sflow sampling-polling..............................................................................2-59
sflow sampling .....................................................................................................2-59
sflow polling.........................................................................................................2-59
sflow interface .....................................................................................................2-59
mac lockout entry................................................................................................2-59
show mac lockout ...............................................................................................2-59
New team communication ip address........................................................................2-59
New team communication vlan ..................................................................................2-60
team management address.................................................................................2-60
team manager....................................................................................................... 2-60
New team name ............................................................................................................2-60
teaming .................................................................................................................2-60
New team communication interface..........................................................................2-60
New team communication interface..........................................................................2-60
New team communication vlan ..................................................................................2-61
team management interface...............................................................................2-61
team management interface vlan ......................................................................2-61
Access Controller context.........................................................................................2-62
end......................................................................................................................... 2-62
ads presentation ..................................................................................................2-62
ads presentation interval ....................................................................................2-62
station free access............................................................................................... 2-62
station http proxy html authentication only support......................................2-62
station http proxy support..................................................................................2-63
station idle detection...........................................................................................2-63
system accounting...............................................................................................2-63
remember delay ...................................................................................................2-63
remember html users ..........................................................................................2-64
worldpay installation id ......................................................................................2-64
worldpay payment response password ............................................................ 2-64
worldpay payment url......................................................................................... 2-64
authorize_net installation id...............................................................................2-64
authorize_net payment url .................................................................................2-64
authorize_net transaction key ...........................................................................2-64
show paypal..........................................................................................................2-65
paypal api-url........................................................................................................2-65
xii
paypal operation-mode .......................................................................................2-65
paypal password.................................................................................................. 2-65
paypal signature...................................................................................................2-65
paypal user-id .......................................................................................................2-65
ads presentation with frameset .........................................................................2-65
authentication http ..............................................................................................2-66
authentication https ............................................................................................2-66
local welcome-page.............................................................................................2-66
noc access internet.............................................................................................. 2-66
noc access vpn .....................................................................................................2-66
noc allow ..............................................................................................................2-66
noc authentication............................................................................................... 2-67
secure login .......................................................................................................... 2-67
sslv2 authentication ............................................................................................2-67
user-agent block...................................................................................................2-67
user-agent filtering...............................................................................................2-67
noc access interface vlan....................................................................................2-68
noc access interface gre .....................................................................................2-68
ipass id .................................................................................................................. 2-68
ipass name............................................................................................................2-68
wispr abort login url............................................................................................2-68
wispr login url ......................................................................................................2-69
wispr logoff url.....................................................................................................2-69
access-list .............................................................................................................2-69
use access-list ......................................................................................................2-70
use access-list unauth ......................................................................................... 2-70
config file..............................................................................................................2-70
http proxy upstream............................................................................................2-71
https ssl certificate ..............................................................................................2-71
mac-address .........................................................................................................2-71
fail page.................................................................................................................2-71
goodbye url...........................................................................................................2-71
ipass login url....................................................................................................... 2-72
login error url....................................................................................................... 2-72
login page..............................................................................................................2-72
login url.................................................................................................................2-72
logo........................................................................................................................2-72
messages...............................................................................................................2-73
noc ssl ca-certificate ...........................................................................................2-73
noc ssl certificate.................................................................................................2-73
xiii
session page .........................................................................................................2-73
transport page......................................................................................................2-73
welcome url..........................................................................................................2-74
notify user location changes ..............................................................................2-74
Default user session profile context........................................................................2-75
accounting interim update .................................................................................2-75
idle timeout ..........................................................................................................2-75
maximum input octets ........................................................................................2-75
maximum input packets .....................................................................................2-75
maximum output octets......................................................................................2-76
maximum output packets...................................................................................2-76
maximum total octets .........................................................................................2-76
maximum total packets ......................................................................................2-76
nat one-to-one ......................................................................................................2-76
session timeout ....................................................................................................2-77
smtp redirection setup........................................................................................2-77
public ip subnet ...................................................................................................2-77
end......................................................................................................................... 2-77
smtp redirection ..................................................................................................2-78
Session profile context..............................................................................................2-79
end......................................................................................................................... 2-79
access controlled.................................................................................................2-79
access list..............................................................................................................2-79
accounting interim update .................................................................................2-79
arp polling interval ..............................................................................................2-80
arp polling max count .........................................................................................2-80
bandwidth level....................................................................................................2-80
egress vlan ............................................................................................................2-80
idle timeout ..........................................................................................................2-81
intercept traffic ....................................................................................................2-81
max input rate......................................................................................................2-81
max output rate ...................................................................................................2-81
nat one-to-one ......................................................................................................2-82
session profile......................................................................................................2-82
smtp redirection setup........................................................................................2-82
termination action ...............................................................................................2-83
xiv
user defined attribute..........................................................................................2-83
public ip subnet ...................................................................................................2-83
User account context.................................................................................................2-85
end......................................................................................................................... 2-85
access controlled.................................................................................................2-85
access-controlled profile ....................................................................................2-85
access-controlled virtual ap ............................................................................... 2-85
active.....................................................................................................................2-86
chargeable user identity .....................................................................................2-86
control method ....................................................................................................2-86
egress vlan ............................................................................................................2-86
end time ................................................................................................................2-86
idle timeout ..........................................................................................................2-86
max user sessions................................................................................................ 2-87
password...............................................................................................................2-87
regular profile ......................................................................................................2-87
regular virtual ap .................................................................................................2-87
session timeout ....................................................................................................2-87
subscription plan .................................................................................................2-88
username ..............................................................................................................2-88
Internet port interface context.................................................................................2-89
end......................................................................................................................... 2-89
duplex ...................................................................................................................2-89
speed ..................................................................................................................... 2-89
interface vlan........................................................................................................2-89
ipsec vlan interface .............................................................................................2-90
LAN port interface context .......................................................................................2-91
end......................................................................................................................... 2-91
duplex ...................................................................................................................2-91
speed ..................................................................................................................... 2-91
interface vlan........................................................................................................2-91
ipsec vlan interface .............................................................................................2-92
WAN IP interface context..........................................................................................2-93
pppoe client user .................................................................................................2-93
New tagged....................................................................................................................2-93
New untagged ...............................................................................................................2-93
ip address mode...................................................................................................2-93
ip address..............................................................................................................2-94
ip nat......................................................................................................................2-94
nat limit port range..............................................................................................2-94
xv
nat limit port range size ......................................................................................2-94
ip address dhcp client-id.....................................................................................2-94
end......................................................................................................................... 2-95
pppoe auto-reconnect .........................................................................................2-95
pppoe mru ............................................................................................................2-95
pppoe mtu.............................................................................................................2-95
pppoe unnumbered .............................................................................................2-95
ip nat outside source static ................................................................................2-96
ip address alternate .............................................................................................2-96
LAN IP interface context...........................................................................................2-97
end......................................................................................................................... 2-97
ip address..............................................................................................................2-97
ip address management ......................................................................................2-97
New tagged....................................................................................................................2-97
New untagged ...............................................................................................................2-97
Public access RADIUS attributes context...............................................................2-98
end......................................................................................................................... 2-98
active.....................................................................................................................2-98
credentials ............................................................................................................2-98
interval ..................................................................................................................2-98
radius server profile ............................................................................................2-98
Virtual AP context......................................................................................................2-99
virtual ap name ....................................................................................................2-99
access control ......................................................................................................2-99
force centralize data............................................................................................2-99
ingress interface ................................................................................................2-100
egress unauthenticated.....................................................................................2-100
guest-mode .........................................................................................................2-100
max-association .................................................................................................2-100
ssid name............................................................................................................2-101
encryption key 1 ................................................................................................2-101
encryption key format.......................................................................................2-101
transmit key........................................................................................................2-101
authentication server access controller .........................................................2-102
authentication server accounting....................................................................2-102
authentication server accounting radius profile ...........................................2-102
authentication server radius ............................................................................2-102
xvi
dot1x authentication .........................................................................................2-102
wpa-psk...............................................................................................................2-102
authentication server request radius cui ........................................................2-103
dot1x session page ............................................................................................2-103
New wpa terminate controller..................................................................................2-103
wireless filters....................................................................................................2-103
wireless filters mac ...........................................................................................2-103
wireless filters rule input..................................................................................2-104
wireless filters rule output ...............................................................................2-104
wireless filters type ...........................................................................................2-104
mac-filters local .................................................................................................2-105
mac-filters...........................................................................................................2-106
mac-filters mode ................................................................................................2-106
mac authentication accounting .......................................................................2-106
mac authentication accounting radius profile...............................................2-106
mac authentication radius profile ...................................................................2-106
mac authentication remote ..............................................................................2-107
mac authentication request radius cui............................................................2-107
mac authentication local ..................................................................................2-107
mac authentication............................................................................................2-107
html authentication ...........................................................................................2-107
html authentication accounting.......................................................................2-108
html authentication accounting radius profile ..............................................2-108
html authentication active-directory...............................................................2-108
html authentication local..................................................................................2-108
html authentication radius ............................................................................... 2-108
html authentication radius profile...................................................................2-108
html authentication request radius cui........................................................... 2-109
html authentication timeout.............................................................................2-109
active...................................................................................................................2-109
band steering......................................................................................................2-109
beacon dtim count.............................................................................................2-109
beacon transmit power..................................................................................... 2-110
broadcast filter...................................................................................................2-110
data rate..............................................................................................................2-110
public forwarding ..............................................................................................2-110
access lan stations.............................................................................................2-110
fast authentication.............................................................................................2-110
layer3 mobility ...................................................................................................2-111
layer3 mobility hns fallback method...............................................................2-111
xvii
layer3 mobility hns method..............................................................................2-111
add ip-qos profile...............................................................................................2-111
delete ip-qos profile all......................................................................................2-111
delete ip-qos profile...........................................................................................2-111
qos .......................................................................................................................2-112
upstream diffserv tagging.................................................................................2-113
wmm advertising ...............................................................................................2-113
html redirection .................................................................................................2-113
local nas id..........................................................................................................2-113
bandwidth...........................................................................................................2-113
bandwidth default rates....................................................................................2-113
bandwidth default rates maximum .................................................................2-114
radius accounting realms .................................................................................2-114
radius authentication realms ...........................................................................2-114
identify stations by ip only ...............................................................................2-114
location-aware group ........................................................................................2-114
location-aware called-station-id content ........................................................2-115
dhcp relay ...........................................................................................................2-115
dhcp relay active................................................................................................2-115
dhcp relay circuit id ..........................................................................................2-115
dhcp relay remote id .........................................................................................2-115
dhcp relay subnet ..............................................................................................2-115
dhcp server.........................................................................................................2-116
dhcp server dns..................................................................................................2-116
dhcp server gateway .........................................................................................2-116
dhcp server range ..............................................................................................2-116
dhcp server subnet ............................................................................................2-116
radius-framed-protocol-attribute.....................................................................2-116
end....................................................................................................................... 2-117
security ...............................................................................................................2-117
Interface context ......................................................................................................2-118
New duplex-mode.......................................................................................................2-118
New end....................................................................................................................... 2-118
New flow-control........................................................................................................2-118
New flow-control auto-negotiation .......................................................................... 2-118
New speed ................................................................................................................... 2-118
New trunk group.........................................................................................................2-118
New trunk type ...........................................................................................................2-119
xviii
VLAN interface context ...........................................................................................2-120
end....................................................................................................................... 2-120
ip address............................................................................................................2-120
ip address mode.................................................................................................2-120
New tagged..................................................................................................................2-120
New untagged .............................................................................................................2-120
ip default-gateway .............................................................................................2-121
ip nat....................................................................................................................2-121
RADIUS profiles context.........................................................................................2-122
end....................................................................................................................... 2-122
radius-server accounting port..........................................................................2-122
radius-server alternate hosts............................................................................2-122
radius-server authentication method..............................................................2-122
radius-server authentication port....................................................................2-122
radius-server deadtime .....................................................................................2-123
radius-server host ..............................................................................................2-123
radius-server key 2 ............................................................................................2-123
radius-server message-authenticator..............................................................2-123
radius-server name ............................................................................................2-123
radius-server nasid ............................................................................................2-124
radius-server timeout ........................................................................................2-124
radius-server timeout ........................................................................................2-124
radius-server force-nas-port-to-vlanid ............................................................2-124
radius-server realm............................................................................................2-124
radius-server realm name.................................................................................2-124
IP QOS context .........................................................................................................2-125
end....................................................................................................................... 2-125
end-port...............................................................................................................2-125
priority ................................................................................................................2-125
profile name .......................................................................................................2-125
protocol...............................................................................................................2-125
start-port .............................................................................................................2-125
DHCP server context ...............................................................................................2-127
end....................................................................................................................... 2-127
active...................................................................................................................2-127
gateway...............................................................................................................2-127
range....................................................................................................................2-127
permanent leases...............................................................................................2-127
xix
GRE interface context .............................................................................................2-128
end force.............................................................................................................2-128
gre name .............................................................................................................2-128
ip address............................................................................................................2-128
peer ip address...................................................................................................2-128
remote ip address ..............................................................................................2-128
IPsec context ............................................................................................................2-129
end....................................................................................................................... 2-129
active...................................................................................................................2-129
authentication ....................................................................................................2-129
cipher ..................................................................................................................2-129
dns domain .........................................................................................................2-129
dns server ...........................................................................................................2-129
incoming nat.......................................................................................................2-130
incoming traffic network..................................................................................2-130
interface..............................................................................................................2-130
local id.................................................................................................................2-130
mode....................................................................................................................2-130
outgoing traffic network...................................................................................2-130
peer id .................................................................................................................2-130
peer ip address...................................................................................................2-131
perfect forward secrecy....................................................................................2-131
preshared key..................................................................................................... 2-131
Syslog context ..........................................................................................................2-132
active...................................................................................................................2-132
logging facility....................................................................................................2-132
logging host ........................................................................................................2-132
logging prefix .....................................................................................................2-132
name....................................................................................................................2-132
logging source....................................................................................................2-133
end....................................................................................................................... 2-133
level .....................................................................................................................2-133
level .....................................................................................................................2-133
matches...............................................................................................................2-133
message...............................................................................................................2-134
message...............................................................................................................2-134
xx
process................................................................................................................2-134
process................................................................................................................2-134
PPTP client interface ...............................................................................................2-135
active...................................................................................................................2-135
pptp client credentials ......................................................................................2-135
pptp client domain name.................................................................................. 2-135
pptp client server address ................................................................................2-135
end....................................................................................................................... 2-135
ip nat....................................................................................................................2-135
pptp client auto route discovery......................................................................2-136
pptp client lcp echo...........................................................................................2-136
Keychain context......................................................................................................2-137
end....................................................................................................................... 2-137
key .......................................................................................................................2-137
key chain name ..................................................................................................2-137
Keys context .............................................................................................................2-138
end....................................................................................................................... 2-138
key-string ............................................................................................................2-138
Subscription plan context....................................................................................... 2-139
end....................................................................................................................... 2-139
daily restriction..................................................................................................2-139
end time ..............................................................................................................2-139
initial login time allocation...............................................................................2-139
online time limit.................................................................................................2-140
online time limit.................................................................................................2-140
start time.............................................................................................................2-140
subscription plan name.....................................................................................2-140
public ip reservation .........................................................................................2-140
public ip subnet .................................................................................................2-140
SNMP user context ..................................................................................................2-142
access level.........................................................................................................2-142
end....................................................................................................................... 2-142
password.............................................................................................................2-142
security ...............................................................................................................2-142
user name ...........................................................................................................2-142
SNMP notification receiver context ......................................................................2-143
community..........................................................................................................2-143
end....................................................................................................................... 2-143
port ......................................................................................................................2-143
xxi
receiver ...............................................................................................................2-143
user......................................................................................................................2-143
version.................................................................................................................2-143
Active Directory Group context.............................................................................2-144
end....................................................................................................................... 2-144
access controlled...............................................................................................2-144
access-controlled profile ..................................................................................2-144
access-controlled virtual ap ............................................................................. 2-144
active...................................................................................................................2-145
active-directory group name ............................................................................2-145
egress vlan ..........................................................................................................2-145
regular profile ....................................................................................................2-145
regular virtual ap ...............................................................................................2-145
Controlled APs context ...........................................................................................2-147
end....................................................................................................................... 2-147
execute action....................................................................................................2-147
execute system action.......................................................................................2-147
show config factory...........................................................................................2-147
ap group.............................................................................................................. 2-147
ap name...............................................................................................................2-147
config...................................................................................................................2-147
contact ................................................................................................................2-148
location ...............................................................................................................2-148
product type .......................................................................................................2-148
product type .......................................................................................................2-148
Controlled APs group context................................................................................ 2-149
execute action....................................................................................................2-149
show config factory...........................................................................................2-149
end....................................................................................................................... 2-149
config...................................................................................................................2-149
group name.........................................................................................................2-149
virtual ap binding...............................................................................................2-149
Controlled APs base group context....................................................................... 2-150
execute action....................................................................................................2-150
show config factory...........................................................................................2-150
config...................................................................................................................2-150
end....................................................................................................................... 2-150
xxii
Controlled APs network configuration context...................................................2-151
end....................................................................................................................... 2-151
interface wireless ..............................................................................................2-151
local mesh group ...............................................................................................2-151
local mesh provisioning group.........................................................................2-151
provisioning connectivity .................................................................................2-151
provisioning discovery......................................................................................2-151
radius profile......................................................................................................2-151
show tech............................................................................................................2-152
switch port..........................................................................................................2-152
syslog...................................................................................................................2-152
inherit vlan port2 ...............................................................................................2-152
vlan port2............................................................................................................2-152
vlan port2 id .......................................................................................................2-152
inherit country code..........................................................................................2-152
world-mode dot11 country code......................................................................2-153
New inherit ipv6 ra conversion.................................................................................2-153
New ipv6 ra conversion .............................................................................................2-153
New show ipv6 ra conversion...................................................................................2-153
sensor server name ...........................................................................................2-153
sensor server id..................................................................................................2-154
sensor discovery mode .....................................................................................2-154
sensor network detector...................................................................................2-154
inherit sensor .....................................................................................................2-154
dynamic key .......................................................................................................2-155
dynamic key interval .........................................................................................2-155
dot1x reauth .......................................................................................................2-155
dot1x reauth period...........................................................................................2-155
dot1x reauth terminate ..................................................................................... 2-155
dot1x supplicant timeout..................................................................................2-156
inherit 8021x.......................................................................................................2-156
bridge protocol ieee ..........................................................................................2-156
inherit untagged stp...........................................................................................2-156
bridge protocol ieee vlan..................................................................................2-156
inherit vlan stp ................................................................................................... 2-157
inherit local mesh qos .......................................................................................2-157
local mesh ip qos profile...................................................................................2-157
local mesh qos mechanism...............................................................................2-157
enable vsc services............................................................................................2-157
xxiii
inherit service availability ................................................................................2-157
inherit l3subnets ................................................................................................2-158
l3subnet...............................................................................................................2-158
inherit switch port _..........................................................................................2-158
inherit switch ports ...........................................................................................2-158
inherit lldp-app-profile...................................................................................... 2-158
lldp app-profile...................................................................................................2-159
lldp app-profile...................................................................................................2-159
lldp app-profile...................................................................................................2-159
lldp app-profile...................................................................................................2-159
inherit lldp-general ............................................................................................2-159
lldp dynamic-name ............................................................................................2-159
lldp fast-start-count ...........................................................................................2-160
lldp holdtime-multiplier.................................................................................... 2-160
lldp local-mesh...................................................................................................2-160
lldp med-location civic-address-element........................................................2-160
lldp med-location elin-addr ..............................................................................2-160
lldp refresh-interval...........................................................................................2-160
lldp run................................................................................................................2-161
Controlled APs VSC binding context.....................................................................2-162
dual radio binding..............................................................................................2-162
egress vlan ..........................................................................................................2-162
egress vlan ..........................................................................................................2-162
end....................................................................................................................... 2-162
location aware....................................................................................................2-162
Syslog context ..........................................................................................................2-163
message...............................................................................................................2-163
message...............................................................................................................2-163
process................................................................................................................2-163
process................................................................................................................2-163
level .....................................................................................................................2-163
level .....................................................................................................................2-164
matches...............................................................................................................2-164
end....................................................................................................................... 2-164
inherit..................................................................................................................2-164
Provisioning connectivity context ......................................................................... 2-165
end....................................................................................................................... 2-165
xxiv
inherit..................................................................................................................2-165
interface..............................................................................................................2-165
interface provisioning .......................................................................................2-165
ip assignation .....................................................................................................2-165
vlan ......................................................................................................................2-166
vlan ......................................................................................................................2-166
static ip................................................................................................................2-166
provisioning local mesh group.........................................................................2-166
provisioning local mesh key.............................................................................2-166
provisioning local mesh port............................................................................2-166
provisioning local mesh security.....................................................................2-166
provisioning local mesh security.....................................................................2-167
provisioning local mesh type ...........................................................................2-167
country code ......................................................................................................2-167
anonymous identity...........................................................................................2-167
eap ....................................................................................................................... 2-167
ieee8021x provisioning .....................................................................................2-167
Provisioning discovery context..............................................................................2-168
end....................................................................................................................... 2-168
dns name.............................................................................................................2-168
dns provisioning ................................................................................................2-168
inherit..................................................................................................................2-168
dns domain name...............................................................................................2-168
dns server ...........................................................................................................2-169
discovery provisioning......................................................................................2-169
ip address............................................................................................................2-169
ip provisioning ...................................................................................................2-169
Wireless interface context.......................................................................................2-170
dot11....................................................................................................................2-170
distance...............................................................................................................2-170
transmit power................................................................................................... 2-171
multicast rate .....................................................................................................2-171
dot11 automatic frequency...............................................................................2-171
dot11 automatic frequency period ..................................................................2-171
dot11 automatic frequency time......................................................................2-171
dot11 automatic transmit-power .....................................................................2-172
dot11 automatic transmit-power period.........................................................2-172
antenna bidirectionnal......................................................................................2-172
antenna gain .......................................................................................................2-172
xxv
autochannel skip................................................................................................2-172
station distance..................................................................................................2-172
beacon interval ..................................................................................................2-173
rts threshold .......................................................................................................2-173
dot11 mode.........................................................................................................2-173
radio active.........................................................................................................2-173
spectralink view.................................................................................................2-174
New client statistics ...................................................................................................2-174
dot11n guard interval ........................................................................................2-174
dot11n mimo ......................................................................................................2-174
dot11n channel width........................................................................................2-174
dot11n channel extension.................................................................................2-174
dot11n mac protection......................................................................................2-175
end....................................................................................................................... 2-175
inherit..................................................................................................................2-175
RADIUS profile context...........................................................................................2-176
end....................................................................................................................... 2-176
inherit..................................................................................................................2-176
radius nas id ....................................................................................................... 2-176
Local mesh profile context .....................................................................................2-177
security ...............................................................................................................2-177
security mode..................................................................................................... 2-177
security psk ........................................................................................................2-177
security wep .......................................................................................................2-177
dynamic mode....................................................................................................2-177
mesh id................................................................................................................2-178
allowed downtime .............................................................................................2-178
minimum snr ......................................................................................................2-178
snr cost per hop .................................................................................................2-178
initial discovery time.........................................................................................2-178
active...................................................................................................................2-179
end....................................................................................................................... 2-179
inherit..................................................................................................................2-179
name....................................................................................................................2-179
radio active.........................................................................................................2-179
xxvi
Local mesh provisioning context ...........................................................................2-180
accept connection .............................................................................................2-180
end....................................................................................................................... 2-180
inherit..................................................................................................................2-180
multiple radio.....................................................................................................2-180
Switch port context .................................................................................................2-181
end....................................................................................................................... 2-181
active...................................................................................................................2-181
app-profile ..........................................................................................................2-181
app-profile ..........................................................................................................2-181
authentication profile vsc.................................................................................2-181
authentication server radius ............................................................................2-182
dot1x authentication .........................................................................................2-182
dynamic vlan ...................................................................................................... 2-182
egress rate ..........................................................................................................2-182
force flow control..............................................................................................2-182
ingress rate .........................................................................................................2-183
ingress traffic type.............................................................................................2-183
loop protection ..................................................................................................2-183
mac authentication............................................................................................2-183
mac filter list ......................................................................................................2-183
poe-class-support...............................................................................................2-183
port name............................................................................................................2-184
port type..............................................................................................................2-184
power over ethernet..........................................................................................2-184
priority ................................................................................................................2-184
priority lookup ...................................................................................................2-184
quarantine vlan ..................................................................................................2-184
secondary vlan ...................................................................................................2-185
vlan ......................................................................................................................2-185
MAC addresses list context ....................................................................................2-186
end....................................................................................................................... 2-186
entry ....................................................................................................................2-186
list name..............................................................................................................2-186
Network profile context..........................................................................................2-187
end....................................................................................................................... 2-187
name....................................................................................................................2-187
vlan ......................................................................................................................2-187
vlan ......................................................................................................................2-187
New default .................................................................................................................2-187
xxvii
LLDP agent context .................................................................................................2-188
admin-status .......................................................................................................2-188
basic-tlv-enable ..................................................................................................2-188
basic-tlv-enable port_desc................................................................................2-188
basic-tlv-enable system_cap.............................................................................2-188
basic-tlv-enable system_descr .........................................................................2-188
basic-tlv-enable system_name .........................................................................2-189
dot3-tlv-enable ...................................................................................................2-189
end....................................................................................................................... 2-189
ip-addr-enable.....................................................................................................2-189
med-application-type.........................................................................................2-189
medtlv-enable capabilities................................................................................2-189
medtlv-enable location-id .................................................................................2-190
medtlv-enable network-policy .........................................................................2-190
medtlv-enable poe .............................................................................................2-190
xxviii