HP ProCurve MSM310-R, ProCurve MSM410, ProCurve MSM325, ProCurve MSM335, ProCurve MSM422 Reference Manual

...
ProCurve 5400zl Switches
Installation and Getting Started Guide
Reference Guide for HP ProCurve MSM3xx / MSM4xx Access Points CLI
HP ProCurve MSM3xx / MSM4xx Access Points CLI
Reference Guide
CLI Reference Guide
Copyright and Disclaimer Notices
© Copyright 2010 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
This document contains proprietary information, which is protected by copyright. No part of this document may be photocopied, reproduced, or translated into another language without the prior written consent of Hewlett-Packard.
Publication Number
5998-0327 May 2010
Applicable Products
USA Japan WW MSM310 Access Point J9374A/B J9524A/B J9379A/B MSM310-R Access Point J9380A/B J9383A/B MSM317 Access Device J9422A J9423A J9423A MSM320 Access Point J9360A/B J9527A/B J9364A/B MSM320-R Access Point J9365A/B J9528A/B J9368A/B MSM325 Access Point
with Sensor MSM335 Access Point
with Sensor MSM410 Access Point J9426A/B J9529A/B J9427A/B MSM422 Access Point J9358A/B J9530A/B J9359A/B
J9369A/B J9373A/B
J9356A/B J9357A/B
Disclaimer
HEWLETT-PACKARD COMPANY MAKES NO WARRANTY OF ANY KIND WITH REGARD TO THIS MATERIAL, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE. Hewlett-Packard shall not be liable for errors contained herein or for incidental or consequential damages in connection with the furnishing, performance, or use of this material.
The only warranties for HP products and services are set forth in the express warranty statements accompanying such products and services. Nothing herein should be construed as constituting an additional warranty. HP shall not be liable for technical or editorial errors or omissions contained herein.
Hewlett-Packard assumes no responsibility for the use or reliability of its software on equipment that is not furnished by Hewlett-Packard.
Trademark Credits
Windows NT®, Windows®, and MS Windows® are US registered trademarks of Microsoft Corporation.
Hewlett-Packard Company 8000 Foothills Boulevard
Roseville, California 95747
www.hp.com/go/procurve
Contents
1 Introduction
About this guide ...........................................................................................................1-2
Products covered...................................................................................................1-2
Important terms..................................................................................................... 1-2
Typographical conventions ..................................................................................1-3
Command syntax ............................................................................................1-3
Management tool ............................................................................................1-3
New in this release.......................................................................................................1-3
HP ProCurve Networking support.............................................................................1-3
Before contacting support.............................................................................1-4
Online documentation .................................................................................................1-4
CLI support in autonomous and controlled modes .................................................1-4
Controlled mode....................................................................................................1-4
Autonomous mode ................................................................................................1-5
Configuring CLI support..............................................................................................1-5
Secure shell access.........................................................................................1-5
Authenticate CLI logins using .......................................................................1-5
Entering strings ............................................................................................................1-6
Context hierarchy ........................................................................................................1-7
Sample CLI session ......................................................................................................1-7
CLI commands
2
View context .................................................................................................................2-2
arping ......................................................................................................................2-2
enable......................................................................................................................2-2
iperf .........................................................................................................................2-2
nslookup ................................................................................................................. 2-2
ping..........................................................................................................................2-2
ps .............................................................................................................................2-3
quit...........................................................................................................................2-3
iii
show license...........................................................................................................2-3
show logging filtered.............................................................................................2-3
top............................................................................................................................2-3
traceroute ...............................................................................................................2-3
Enable context..............................................................................................................2-4
reboot device..........................................................................................................2-4
show certificate .....................................................................................................2-4
show certificate binding ....................................................................................... 2-4
iperf .........................................................................................................................2-4
ping..........................................................................................................................2-4
arping ......................................................................................................................2-5
arp............................................................................................................................2-5
end...........................................................................................................................2-5
quit...........................................................................................................................2-5
rcapture...................................................................................................................2-5
show arp .................................................................................................................2-5
show bridge............................................................................................................2-6
show bridge forwarding........................................................................................2-6
show dns cache......................................................................................................2-6
show interfaces......................................................................................................2-6
show ip....................................................................................................................2-6
show ip route .........................................................................................................2-6
show system info ...................................................................................................2-6
New show wireless clients ............................................................................................2-6
New disassociate wireless client _...............................................................................2-7
factory reset ...........................................................................................................2-7
switch operational mode ......................................................................................2-7
show dot11 associations.......................................................................................2-7
show dot11 statistics client-traffic dot11n .........................................................2-7
show local mesh ....................................................................................................2-7
show wireless neighborhood ............................................................................... 2-7
show wireless rogue-ap ........................................................................................2-7
show client log.......................................................................................................2-8
show discrete pin...................................................................................................2-8
config.......................................................................................................................2-8
show all config.......................................................................................................2-8
Config context ..............................................................................................................2-9
certificate................................................................................................................2-9
iv
certificate binding..................................................................................................2-9
certificate revocation ............................................................................................2-9
end...........................................................................................................................2-9
factory settings ......................................................................................................2-9
interface ethernet ..................................................................................................2-9
New network-profile ....................................................................................................2-10
reboot device........................................................................................................2-10
show certificate ...................................................................................................2-10
show certificate binding ..................................................................................... 2-10
show config factory.............................................................................................2-10
New show network-profiles........................................................................................2-10
interface ip............................................................................................................2-10
interface wireless ................................................................................................2-11
local mesh profile ................................................................................................2-11
interface gre .........................................................................................................2-11
virtual ap...............................................................................................................2-11
cap-switch to........................................................................................................2-11
admin local authentication.................................................................................2-12
admin radius authentication ..............................................................................2-12
admin radius authentication server ..................................................................2-12
ip http port............................................................................................................2-12
ip https port..........................................................................................................2-12
snmp-server trap certificate-expired.................................................................2-12
snmp-server trap certificate-expires-soon .......................................................2-13
snmp-server trap web-fail...................................................................................2-13
snmp-server trap web-login................................................................................2-13
snmp-server trap web-logout .............................................................................2-13
username ..............................................................................................................2-13
web admin kickout..............................................................................................2-14
web allow..............................................................................................................2-14
world-mode dot11 country code........................................................................2-14
web access port-1 ................................................................................................2-14
web access port-2 ................................................................................................2-14
web access wireless ............................................................................................2-15
web access interface vlan...................................................................................2-15
web access interface gre ....................................................................................2-15
web access local mesh........................................................................................2-15
New console authentication........................................................................................2-15
clock......................................................................................................................2-16
v
clock auto adjust dst ...........................................................................................2-16
clock timezone.....................................................................................................2-16
clock use custom dst rules.................................................................................2-16
ntp protocol..........................................................................................................2-16
ntp server..............................................................................................................2-17
clock custom dst begins .....................................................................................2-17
clock custom dst begins format.........................................................................2-17
clock custom dst ends ........................................................................................2-17
clock custom dst ends format............................................................................2-18
ntp server..............................................................................................................2-18
ntp server failure trap .........................................................................................2-18
config-update automatic.....................................................................................2-18
config-update operation......................................................................................2-19
New config-update start ..............................................................................................2-19
config-update time...............................................................................................2-19
config-update uri..................................................................................................2-19
config-update weekday.......................................................................................2-19
snmp-server trap config-change ........................................................................2-19
snmp-server trap config-update.........................................................................2-20
logging destination ..............................................................................................2-20
snmp-server trap syslog-severity .......................................................................2-20
snmp-server..........................................................................................................2-20
snmp-server access port-1..................................................................................2-20
snmp-server allow ...............................................................................................2-21
snmp-server chassis-id........................................................................................2-21
snmp-server contact............................................................................................2-21
snmp-server heartbeat period............................................................................2-21
snmp-server location...........................................................................................2-21
snmp-server port..................................................................................................2-22
snmp-server readonly..........................................................................................2-22
snmp-server readwrite........................................................................................2-22
snmp-server trap..................................................................................................2-22
snmp-server trap community.............................................................................2-22
snmp-server trap destination ............................................................................. 2-23
snmp-server trap heartbeat ................................................................................2-23
snmp-server trap link-state.................................................................................2-23
snmp-server trap snmp-authentication.............................................................2-23
snmp-server version 1.........................................................................................2-23
snmp-server version 2c.......................................................................................2-24
vi
snmp-server version 3.........................................................................................2-24
snmp-server access interface vlan ....................................................................2-24
snmp-server access local mesh..........................................................................2-24
snmp-server access interface gre ......................................................................2-24
snmp-server access wireless..............................................................................2-25
snmp-server access port-2..................................................................................2-25
snmp-server user .................................................................................................2-25
snmp-server notification receiver .....................................................................2-25
soap-server ...........................................................................................................2-25
soap-server access interface vlan......................................................................2-26
soap-server access port-1 ...................................................................................2-26
soap-server access port-2 ...................................................................................2-26
soap-server allow.................................................................................................2-26
soap-server http authentication.........................................................................2-26
soap-server http authentication password.......................................................2-27
soap-server http authentication username.......................................................2-27
soap-server port...................................................................................................2-27
soap-server ssl......................................................................................................2-27
soap-server ssl with client certificate ...............................................................2-27
soap-server access interface gre........................................................................2-27
soap-server access wireless ...............................................................................2-28
soap-server access local mesh...........................................................................2-28
snmp-server trap low-snr....................................................................................2-28
snmp-server trap low-snr interval .....................................................................2-28
snmp-server trap low-snr level ..........................................................................2-28
snmp-server trap new-association.....................................................................2-28
snmp-server trap new-association interval ......................................................2-29
snmp-server trap vpn-connection......................................................................2-29
snmp-server trap wireless-association-fail.......................................................2-29
snmp-server trap wireless-association-success...............................................2-29
snmp-server trap wireless-authentication-fail .................................................2-29
snmp-server trap wireless-authentication-success .........................................2-29
snmp-server trap wireless-deauthentication-fail .............................................2-30
snmp-server trap wireless-deauthentication-success .....................................2-30
snmp-server trap wireless-disassociation-fail.................................................. 2-30
snmp-server trap wireless-disassociation-success.......................................... 2-30
snmp-server trap wireless-reassociation-fail ...................................................2-30
snmp-server trap wireless-reassociation-success ...........................................2-30
snmp-server trap syslog-matches ......................................................................2-31
vii
snmp-server trap syslog-matches regex ...........................................................2-31
snmp-server trap syslog-severity level..............................................................2-31
snmp-server trap network-trace ........................................................................2-31
firmware-update automatic................................................................................2-31
firmware-update start .........................................................................................2-32
firmware-update time..........................................................................................2-32
firmware-update uri ............................................................................................2-32
firmware-update weekday..................................................................................2-32
snmp-server trap firmware-update....................................................................2-32
access-controller restrict location.....................................................................2-33
service-sensor ......................................................................................................2-33
service-sensor ......................................................................................................2-33
service-sensor poll...............................................................................................2-33
service-sensor retry.............................................................................................2-34
service-sensor timeout........................................................................................2-34
ip name-server......................................................................................................2-34
ip name-server cache ..........................................................................................2-34
ip name-server dynamic......................................................................................2-35
New ip name-server interception ............................................................................... 2-35
ip name-server switch-on-servfail .....................................................................2-35
ip name-server switch-over ................................................................................2-35
snmp-server trap unauthorized-ap ....................................................................2-35
snmp-server trap unauthorized-ap interval ......................................................2-36
wireless-scan........................................................................................................2-36
wireless-scan period............................................................................................2-36
wireless-scan url ..................................................................................................2-36
access controller shared secret .........................................................................2-36
radius-server profile ............................................................................................2-37
ip-qos profile ........................................................................................................2-37
dot11 igmp snooping-helper...............................................................................2-37
New lldp config.............................................................................................................2-37
New lldp dynamic-name ..............................................................................................2-37
New lldp dynamic-name refresh-time........................................................................2-38
New lldp dynamic-name user-string...........................................................................2-38
New lldp fast-start-count .............................................................................................2-38
New lldp holdtime-multiplier......................................................................................2-38
New lldp med-location civic-address-element..........................................................2-38
New lldp med-location elin-addr ................................................................................2-39
New lldp refresh-interval.............................................................................................2-39
viii
New lldp run..................................................................................................................2-39
New show lldp config...................................................................................................2-39
New show lldp info local-device.................................................................................2-39
New show lldp info remote-device.............................................................................2-39
New show lldp stats .....................................................................................................2-39
New lldp local-mesh.....................................................................................................2-40
discovery protocol...............................................................................................2-40
discovery protocol device-id..............................................................................2-40
New service controller discovery interface internet-port.......................................2-40
New service controller discovery interface lan-port ...............................................2-40
bridge priority ......................................................................................................2-41
bridge protocol ieee ............................................................................................2-41
bridge protocol ieee vlan....................................................................................2-41
ip route gateway ..................................................................................................2-41
dot1x reauth .........................................................................................................2-42
dot1x reauth period.............................................................................................2-42
dot1x reauth terminate ....................................................................................... 2-42
dot1x supplicant timeout....................................................................................2-42
dynamic key .........................................................................................................2-42
dynamic key interval ...........................................................................................2-43
add wireless ip-qos profile..................................................................................2-43
delete wireless ip-qos profile all ........................................................................2-43
delete wireless ip-qos profile .............................................................................2-43
wireless link qos ..................................................................................................2-43
sensor discovery mode .......................................................................................2-43
sensor network detector.....................................................................................2-44
sensor server id....................................................................................................2-44
sensor server name .............................................................................................2-44
config-version.......................................................................................................2-44
New sflow......................................................................................................................2-45
New show sflow agent .................................................................................................2-45
New show sflow controller stats ................................................................................2-45
New show sflow device stats ......................................................................................2-45
New sflow destination .................................................................................................2-45
New show sflow destination.......................................................................................2-45
New show sflow sampling-polling..............................................................................2-45
New sflow sampling .....................................................................................................2-46
New sflow polling.........................................................................................................2-46
New mac lockout entry................................................................................................2-46
ix
New show mac lockout ...............................................................................................2-46
New supplicant 802dot1x ............................................................................................2-46
New supplicant anonymous identity..........................................................................2-46
New supplicant eap......................................................................................................2-46
Port 2 port interface context ....................................................................................2-47
end.........................................................................................................................2-47
duplex ...................................................................................................................2-47
speed ..................................................................................................................... 2-47
vlan ........................................................................................................................2-47
vlan compatibility mode ..................................................................................... 2-48
vlan-management filter .......................................................................................2-48
interface vlan........................................................................................................2-48
Port 1 port interface context ....................................................................................2-49
end.........................................................................................................................2-49
duplex ...................................................................................................................2-49
speed ..................................................................................................................... 2-49
vlan ........................................................................................................................2-49
vlan compatibility mode ..................................................................................... 2-50
vlan-management filter .......................................................................................2-50
interface vlan........................................................................................................2-50
WAN IP interface context..........................................................................................2-51
pppoe client user .................................................................................................2-51
ip address mode...................................................................................................2-51
ip address..............................................................................................................2-51
ip default-gateway ...............................................................................................2-51
ip address dhcp client-id.....................................................................................2-52
end.........................................................................................................................2-52
pppoe auto-reconnect .........................................................................................2-52
pppoe mru ............................................................................................................2-52
pppoe mtu.............................................................................................................2-52
pppoe unnumbered .............................................................................................2-53
Wireless context.........................................................................................................2-54
end.........................................................................................................................2-54
radio active...........................................................................................................2-54
rts threshold .........................................................................................................2-54
distance.................................................................................................................2-54
dot11......................................................................................................................2-55
x
transmit power..................................................................................................... 2-55
antenna bidirectionnal........................................................................................2-56
antenna gain .........................................................................................................2-56
autochannel skip..................................................................................................2-56
beacon interval ....................................................................................................2-56
dot11 automatic frequency.................................................................................2-56
dot11 automatic frequency period ....................................................................2-57
dot11 automatic frequency time........................................................................2-57
dot11 automatic transmit-power .......................................................................2-57
dot11 automatic transmit-power period...........................................................2-57
New maximum clients .................................................................................................2-57
multicast rate .......................................................................................................2-57
station distance....................................................................................................2-58
dot11 mode...........................................................................................................2-58
spectralink view...................................................................................................2-58
New dot11n channel extension...................................................................................2-58
dot11n channel width..........................................................................................2-58
New dot11n guard interval ..........................................................................................2-58
dot11n mimo ........................................................................................................2-59
New dot11n multicast rate ..........................................................................................2-59
bandwidth.............................................................................................................2-59
bandwidth max .................................................................................................... 2-59
Virtual AP context......................................................................................................2-60
virtual ap name ....................................................................................................2-60
ingress interface ..................................................................................................2-60
guest-mode ...........................................................................................................2-60
max-association ...................................................................................................2-60
ssid name..............................................................................................................2-60
vlan ........................................................................................................................2-61
encryption key 1 ..................................................................................................2-61
encryption key format.........................................................................................2-61
transmit key..........................................................................................................2-61
authentication server access controller ...........................................................2-62
authentication server accounting......................................................................2-62
authentication server accounting radius profile .............................................2-62
authentication server radius ..............................................................................2-62
dot1x authentication ...........................................................................................2-62
wpa-psk.................................................................................................................2-62
authentication server accounting radius stationid case.................................2-63
xi
authentication server accounting radius stationid delimiter.........................2-63
wireless filters......................................................................................................2-63
wireless filters mac .............................................................................................2-63
wireless filters rule input....................................................................................2-63
wireless filters rule output .................................................................................2-64
wireless filters type .............................................................................................2-64
mac-filters local ...................................................................................................2-65
mac-filters.............................................................................................................2-65
mac-filters mode ..................................................................................................2-66
mac authentication accounting .........................................................................2-66
mac authentication accounting radius profile.................................................2-66
mac authentication radius profile .....................................................................2-66
mac authentication radius stationid case.........................................................2-66
mac authentication radius stationid delimiter.................................................2-67
mac authentication..............................................................................................2-67
add ip filter ...........................................................................................................2-67
delete ip filter .......................................................................................................2-67
delete ip filter all..................................................................................................2-67
ip filters.................................................................................................................2-68
active.....................................................................................................................2-68
beacon dtim count...............................................................................................2-68
beacon transmit power.......................................................................................2-68
New data rate................................................................................................................2-68
add ip-qos profile.................................................................................................2-69
delete ip-qos profile all........................................................................................2-69
delete ip-qos profile.............................................................................................2-69
qos .........................................................................................................................2-69
upstream diffserv tagging...................................................................................2-70
wmm advertising .................................................................................................2-70
location-aware group ..........................................................................................2-70
end.........................................................................................................................2-71
security .................................................................................................................2-71
VLAN interface context .............................................................................................2-72
end.........................................................................................................................2-72
ip address..............................................................................................................2-72
ip address mode...................................................................................................2-72
Local mesh context....................................................................................................2-73
end.........................................................................................................................2-73
xii
active.....................................................................................................................2-73
interface................................................................................................................2-73
local mesh name ..................................................................................................2-73
remote mac...........................................................................................................2-73
security .................................................................................................................2-74
security mode....................................................................................................... 2-74
security psk ..........................................................................................................2-74
security wep .........................................................................................................2-74
speed ..................................................................................................................... 2-74
interface vlan........................................................................................................2-74
accept forced links ..............................................................................................2-75
allowed downtime ...............................................................................................2-75
dynamic local mesh.............................................................................................2-75
dynamic mode......................................................................................................2-75
initial discovery time...........................................................................................2-75
mesh id..................................................................................................................2-76
minimum snr ........................................................................................................2-76
preserve master link............................................................................................2-76
promiscuous mode..............................................................................................2-76
promiscuous mode startup delay ......................................................................2-77
snr cost per hop ...................................................................................................2-77
RADIUS profiles context...........................................................................................2-78
end.........................................................................................................................2-78
radius-server accounting port............................................................................2-78
radius-server alternate hosts..............................................................................2-78
radius-server authentication method................................................................ 2-78
radius-server authentication port......................................................................2-78
radius-server deadtime .......................................................................................2-79
radius-server host ................................................................................................2-79
radius-server key 2 ..............................................................................................2-79
radius-server message-authenticator................................................................2-79
radius-server name ..............................................................................................2-79
radius-server nasid ..............................................................................................2-80
radius-server timeout ..........................................................................................2-80
radius-server timeout ..........................................................................................2-80
IP QOS context ...........................................................................................................2-81
end.........................................................................................................................2-81
end-port.................................................................................................................2-81
xiii
priority ..................................................................................................................2-81
profile name .........................................................................................................2-81
protocol.................................................................................................................2-81
start-port ...............................................................................................................2-81
GRE interface context ...............................................................................................2-83
end force...............................................................................................................2-83
gre name ...............................................................................................................2-83
ip address..............................................................................................................2-83
peer ip address.....................................................................................................2-83
remote ip address ................................................................................................2-83
Syslog context ............................................................................................................2-84
active.....................................................................................................................2-84
logging facility......................................................................................................2-84
logging host ..........................................................................................................2-84
logging prefix .......................................................................................................2-84
name......................................................................................................................2-84
end.........................................................................................................................2-85
level .......................................................................................................................2-85
level .......................................................................................................................2-85
matches.................................................................................................................2-85
message.................................................................................................................2-85
message.................................................................................................................2-86
process..................................................................................................................2-86
process..................................................................................................................2-86
SNMP user context ....................................................................................................2-87
access level...........................................................................................................2-87
end.........................................................................................................................2-87
password...............................................................................................................2-87
security .................................................................................................................2-87
user name .............................................................................................................2-87
SNMP notification receiver context ........................................................................2-88
community............................................................................................................2-88
end.........................................................................................................................2-88
port ........................................................................................................................2-88
receiver .................................................................................................................2-88
user........................................................................................................................2-88
version...................................................................................................................2-88
xiv
Network profile context............................................................................................2-89
New end.........................................................................................................................2-89
New name......................................................................................................................2-89
New vlan ........................................................................................................................2-89
New vlan ........................................................................................................................2-89
LLDP agent context ...................................................................................................2-90
New admin-status .........................................................................................................2-90
New basic-tlv-enable ....................................................................................................2-90
New basic-tlv-enable port_desc..................................................................................2-90
New basic-tlv-enable system_cap...............................................................................2-90
New basic-tlv-enable system_descr ...........................................................................2-90
New basic-tlv-enable system_name ...........................................................................2-91
New dot3-tlv-enable .....................................................................................................2-91
New end.........................................................................................................................2-91
New ip-addr-enable.......................................................................................................2-91
New med-application-type...........................................................................................2-91
New medtlv-enable capabilities..................................................................................2-91
New medtlv-enable location-id ...................................................................................2-92
New medtlv-enable network-policy ...........................................................................2-92
New medtlv-enable poe ...............................................................................................2-92
xv
xvi
Alphabetical list of commands
accept forced links ...................................................... 2-75
access controller shared secret ................................. 2-36
access level................................................................... 2-87
access-controller restrict location............................. 2-33
active ............................................................................. 2-68
active ............................................................................. 2-73
active ............................................................................. 2-84
add ip filter ................................................................... 2-67
add ip-qos profile ......................................................... 2-69
add wireless ip-qos profile.......................................... 2-43
admin local authentication......................................... 2-12
admin radius authentication server .......................... 2-12
admin radius authentication ...................................... 2-12
New admin-status ................................................................. 2-90
allowed downtime ....................................................... 2-75
antenna bidirectionnal ................................................ 2-56
antenna gain ................................................................. 2-56
arp.................................................................................... 2-5
arping .............................................................................. 2-2
arping .............................................................................. 2-5
authentication server access controller ................... 2-62
authentication server accounting radius profile ..... 2-62
authentication server accounting radius stationid case2-63 authentication server accounting radius stationid delimiter 2-63
authentication server accounting.............................. 2-62
authentication server radius ...................................... 2-62
autochannel skip.......................................................... 2-56
bandwidth max ............................................................ 2-59
bandwidth..................................................................... 2-59
New basic-tlv-enable port_desc .......................................... 2-90
New basic-tlv-enable system_cap....................................... 2-90
New basic-tlv-enable system_descr ................................... 2-90
New basic-tlv-enable system_name ................................... 2-91
New basic-tlv-enable ............................................................ 2-90
beacon dtim count....................................................... 2-68
beacon interval ............................................................ 2-56
beacon transmit power ............................................... 2-68
bridge priority .............................................................. 2-41
bridge protocol ieee vlan ............................................ 2-41
bridge protocol ieee .................................................... 2-41
cap-switch to ................................................................ 2-11
certificate binding.......................................................... 2-9
certificate revocation .................................................... 2-9
certificate........................................................................ 2-9
clock auto adjust dst ................................................... 2-16
clock custom dst begins format................................. 2-17
clock custom dst begins ............................................. 2-17
clock custom dst ends format.................................... 2-18
clock custom dst ends ................................................ 2-17
clock timezone............................................................. 2-16
clock use custom dst rules ......................................... 2-16
clock.............................................................................. 2-16
community.................................................................... 2-88
config............................................................................... 2-8
config-update automatic ............................................. 2-18
config-update operation.............................................. 2-19
New config-update start ...................................................... 2-19
config-update time....................................................... 2-19
config-update uri.......................................................... 2-19
config-update weekday ............................................... 2-19
config-version............................................................... 2-44
New console authentication................................................ 2-15
New data rate .........................................................................2-68
delete ip filter all...........................................................2-67
delete ip filter ................................................................2-67
delete ip-qos profile all.................................................2-69
delete ip-qos profile......................................................2-69
delete wireless ip-qos profile all .................................2-43
delete wireless ip-qos profile ......................................2-43
New disassociate wireless client _ ........................................2-7
discovery protocol device-id .......................................2-40
discovery protocol........................................................2-40
distance..........................................................................2-54
dot11 automatic frequency period .............................2-57
dot11 automatic frequency time .................................2-57
dot11 automatic frequency..........................................2-56
dot11 automatic transmit-power period ....................2-57
dot11 automatic transmit-power ................................2-57
dot11 igmp snooping-helper........................................2-37
dot11 mode....................................................................2-58
dot11...............................................................................2-55
New dot11n channel extension ...........................................2-58
dot11n channel width...................................................2-58
New dot11n guard interval ...................................................2-58
dot11n mimo .................................................................2-59
New dot11n multicast rate ...................................................2-59
dot1x authentication ....................................................2-62
dot1x reauth period......................................................2-42
dot1x reauth terminate ................................................2-42
dot1x reauth ..................................................................2-42
dot1x supplicant timeout.............................................2-42
New dot3-tlv-enable ..............................................................2-91
duplex ............................................................................2-47
duplex ............................................................................2-49
dynamic key interval ....................................................2-43
dynamic key ..................................................................2-42
dynamic local mesh......................................................2-75
dynamic mode...............................................................2-75
enable...............................................................................2-2
encryption key 1 ...........................................................2-61
encryption key format..................................................2-61
end force........................................................................2-83
end..................................................................................2-47
end-port..........................................................................2-81
factory reset ....................................................................2-7
factory settings ...............................................................2-9
firmware-update automatic.........................................2-31
firmware-update start ..................................................2-32
firmware-update time...................................................2-32
firmware-update uri .....................................................2-32
firmware-update weekday...........................................2-32
gre name ........................................................................2-83
guest-mode ....................................................................2-60
ingress interface ...........................................................2-60
initial discovery time....................................................2-75
interface ethernet ...........................................................2-9
interface gre ..................................................................2-11
interface ip.....................................................................2-10
interface vlan.................................................................2-48
interface vlan.................................................................2-50
interface vlan.................................................................2-74
interface wireless .........................................................2-11
interface.........................................................................2-73
ip address dhcp client-id..............................................2-52
ip address mode............................................................2-51
xvii
ip address mode........................................................... 2-72
ip address...................................................................... 2-51
ip address...................................................................... 2-72
ip address...................................................................... 2-83
ip default-gateway ....................................................... 2-51
ip filters......................................................................... 2-68
ip http port.................................................................... 2-12
ip https port.................................................................. 2-12
ip name-server cache .................................................. 2-34
ip name-server dynamic.............................................. 2-35
New ip name-server interception ....................................... 2-35
ip name-server switch-on-servfail ............................. 2-35
ip name-server switch-over ........................................ 2-35
ip name-server.............................................................. 2-34
ip route gateway .......................................................... 2-41
New ip-addr-enable............................................................... 2-91
iperf ................................................................................. 2-2
iperf ................................................................................. 2-4
ip-qos profile ................................................................ 2-37
level ............................................................................... 2-85
level ............................................................................... 2-85
New lldp config..................................................................... 2-37
New lldp dynamic-name refresh-time ................................ 2-38
New lldp dynamic-name user-string................................... 2-38
New lldp dynamic-name ...................................................... 2-37
New lldp fast-start-count ..................................................... 2-38
New lldp holdtime-multiplier .............................................. 2-38
New lldp local-mesh ............................................................. 2-40
New lldp med-location civic-address-element .................. 2-38
New lldp med-location elin-addr ........................................ 2-39
New lldp refresh-interval ..................................................... 2-39
New lldp run.......................................................................... 2-39
local mesh name .......................................................... 2-73
local mesh profile ........................................................ 2-11
location-aware group .................................................. 2-70
logging destination ...................................................... 2-20
logging facility.............................................................. 2-84
logging host .................................................................. 2-84
logging prefix ............................................................... 2-84
mac authentication accounting radius profile ......... 2-66
mac authentication accounting ................................. 2-66
mac authentication radius profile ............................. 2-66
mac authentication radius stationid case ................. 2-66
mac authentication radius stationid delimiter ......... 2-67
mac authentication...................................................... 2-67
New mac lockout entry........................................................ 2-46
mac-filters local ........................................................... 2-65
mac-filters mode .......................................................... 2-66
mac-filters..................................................................... 2-65
matches......................................................................... 2-85
max-association ........................................................... 2-60
New maximum clients ......................................................... 2-57
New med-application-type................................................... 2-91
New medtlv-enable capabilities.......................................... 2-91
New medtlv-enable location-id ........................................... 2-92
New medtlv-enable network-policy ................................... 2-92
New medtlv-enable poe ....................................................... 2-92
mesh id.......................................................................... 2-76
message......................................................................... 2-85
message......................................................................... 2-86
minimum snr ................................................................ 2-76
multicast rate ............................................................... 2-57
name.............................................................................. 2-84
New name.............................................................................. 2-89
New network-profile ............................................................ 2-10
nslookup ......................................................................... 2-2
ntp protocol .................................................................. 2-16
ntp server failure trap.................................................. 2-18
ntp server ...................................................................... 2-17
ntp server ...................................................................... 2-18
password ....................................................................... 2-87
peer ip address ............................................................. 2-83
ping .................................................................................. 2-2
ping .................................................................................. 2-4
port................................................................................. 2-88
pppoe auto-reconnect.................................................. 2-52
pppoe client user.......................................................... 2-51
pppoe mru..................................................................... 2-52
pppoe mtu ..................................................................... 2-52
pppoe unnumbered...................................................... 2-53
preserve master link .................................................... 2-76
priority........................................................................... 2-81
process .......................................................................... 2-86
process .......................................................................... 2-86
profile name.................................................................. 2-81
promiscuous mode startup delay............................... 2-77
promiscuous mode ...................................................... 2-76
protocol ......................................................................... 2-81
ps...................................................................................... 2-3
qos.................................................................................. 2-69
quit ................................................................................... 2-3
quit ................................................................................... 2-5
radio active ................................................................... 2-54
radius-server accounting port .................................... 2-78
radius-server alternate hosts ...................................... 2-78
radius-server authentication method ........................ 2-78
radius-server authentication port .............................. 2-78
radius-server deadtime................................................ 2-79
radius-server host ........................................................ 2-79
radius-server key 2....................................................... 2-79
radius-server message-authenticator ........................ 2-79
radius-server name ...................................................... 2-79
radius-server nasid....................................................... 2-80
radius-server profile .................................................... 2-37
radius-server timeout .................................................. 2-80
radius-server timeout .................................................. 2-80
rcapture ........................................................................... 2-5
reboot device ................................................................ 2-10
reboot device .................................................................. 2-4
receiver.......................................................................... 2-88
remote ip address......................................................... 2-83
remote mac ................................................................... 2-73
rts threshold.................................................................. 2-54
security mode ............................................................... 2-74
security psk................................................................... 2-74
security wep.................................................................. 2-74
security.......................................................................... 2-71
security.......................................................................... 2-74
security.......................................................................... 2-87
sensor discovery mode................................................ 2-43
sensor network detector ............................................. 2-44
sensor server id ............................................................ 2-44
sensor server name...................................................... 2-44
New service controller discovery interface internet-port 2-40
New service controller discovery interface lan-port........ 2-40
service-sensor poll ....................................................... 2-33
service-sensor retry ..................................................... 2-34
service-sensor timeout ................................................ 2-34
service-sensor............................................................... 2-33
service-sensor............................................................... 2-33
New sflow destination.......................................................... 2-45
New sflow polling ................................................................. 2-46
xviii
New sflow sampling ............................................................. 2-46
New sflow.............................................................................. 2-45
show all config ............................................................... 2-8
show arp ......................................................................... 2-5
show bridge forwarding................................................ 2-6
show bridge .................................................................... 2-6
show certificate binding ............................................. 2-10
show certificate binding ............................................... 2-4
show certificate ........................................................... 2-10
show certificate ............................................................. 2-4
show client log ............................................................... 2-8
show config factory..................................................... 2-10
show discrete pin........................................................... 2-8
show dns cache.............................................................. 2-6
show dot11 associations............................................... 2-7
show dot11 statistics client-traffic dot11n ................. 2-7
show interfaces.............................................................. 2-6
show ip route ................................................................. 2-6
show ip............................................................................ 2-6
show license................................................................... 2-3
New show lldp config........................................................... 2-39
New show lldp info local-device......................................... 2-39
New show lldp info remote-device..................................... 2-39
New show lldp stats ............................................................. 2-39
show local mesh ............................................................ 2-7
show logging filtered..................................................... 2-3
New show mac lockout ....................................................... 2-46
New show network-profiles ................................................ 2-10
New show sflow agent ......................................................... 2-45
New show sflow controller stats ........................................ 2-45
New show sflow destination ............................................... 2-45
New show sflow device stats .............................................. 2-45
New show sflow sampling-polling...................................... 2-45
show system info ........................................................... 2-6
New show wireless clients .................................................... 2-6
show wireless neighborhood ....................................... 2-7
show wireless rogue-ap ................................................ 2-7
snmp-server access interface gre .............................. 2-24
snmp-server access interface vlan ............................ 2-24
snmp-server access local mesh.................................. 2-24
snmp-server access port-1 .......................................... 2-20
snmp-server access port-2 .......................................... 2-25
snmp-server access wireless ...................................... 2-25
snmp-server allow ....................................................... 2-21
snmp-server chassis-id................................................ 2-21
snmp-server contact.................................................... 2-21
snmp-server heartbeat period .................................... 2-21
snmp-server location................................................... 2-21
snmp-server notification receiver ............................. 2-25
snmp-server port.......................................................... 2-22
snmp-server readonly.................................................. 2-22
snmp-server readwrite ................................................ 2-22
snmp-server trap certificate-expired......................... 2-12
snmp-server trap certificate-expires-soon ............... 2-13
snmp-server trap community ..................................... 2-22
snmp-server trap config-change ................................ 2-19
snmp-server trap config-update................................. 2-20
snmp-server trap destination ..................................... 2-23
snmp-server trap firmware-update............................ 2-32
snmp-server trap heartbeat ........................................ 2-23
snmp-server trap link-state......................................... 2-23
snmp-server trap low-snr interval ............................. 2-28
snmp-server trap low-snr level .................................. 2-28
snmp-server trap low-snr............................................ 2-28
snmp-server trap network-trace ................................ 2-31
snmp-server trap new-association interval .............. 2-29
snmp-server trap new-association .............................2-28
snmp-server trap snmp-authentication ..................... 2-23
snmp-server trap syslog-matches regex .................... 2-31
snmp-server trap syslog-matches............................... 2-31
snmp-server trap syslog-severity level ...................... 2-31
snmp-server trap syslog-severity ............................... 2-20
snmp-server trap unauthorized-ap interval .............. 2-36
snmp-server trap unauthorized-ap............................. 2-35
snmp-server trap vpn-connection .............................. 2-29
snmp-server trap web-fail ........................................... 2-13
snmp-server trap web-login ........................................ 2-13
snmp-server trap web-logout...................................... 2-13
snmp-server trap wireless-association-fail ............... 2-29
snmp-server trap wireless-association-success .......2-29
snmp-server trap wireless-authentication-fail..........2-29
snmp-server trap wireless-authentication-success..2-29
snmp-server trap wireless-deauthentication-fail .....2-30
snmp-server trap wireless-deauthentication-success2-30
snmp-server trap wireless-disassociation-fail ..........2-30
snmp-server trap wireless-disassociation-success ..2-30
snmp-server trap wireless-reassociation-fail............ 2-30
snmp-server trap wireless-reassociation-success....2-30
snmp-server trap .......................................................... 2-22
snmp-server user.......................................................... 2-25
snmp-server version 1 ................................................. 2-23
snmp-server version 2c ............................................... 2-24
snmp-server version 3 ................................................. 2-24
snmp-server .................................................................. 2-20
snr cost per hop............................................................ 2-77
soap-server access interface gre ................................ 2-27
soap-server access interface vlan .............................. 2-26
soap-server access local mesh ................................... 2-28
soap-server access port-1............................................ 2-26
soap-server access port-2............................................ 2-26
soap-server access wireless........................................ 2-28
soap-server allow ......................................................... 2-26
soap-server http authentication password ............... 2-27
soap-server http authentication username ............... 2-27
soap-server http authentication ................................. 2-26
soap-server port ........................................................... 2-27
soap-server ssl with client certificate........................2-27
soap-server ssl .............................................................. 2-27
soap-server.................................................................... 2-25
spectralink view ........................................................... 2-58
speed.............................................................................. 2-47
speed.............................................................................. 2-49
speed.............................................................................. 2-74
ssid name ...................................................................... 2-60
start-port ....................................................................... 2-81
station distance ............................................................ 2-58
New supplicant 802dot1x..................................................... 2-46
New supplicant anonymous identity .................................. 2-46
New supplicant eap .............................................................. 2-46
switch operational mode............................................... 2-7
top .................................................................................... 2-3
traceroute........................................................................ 2-3
transmit key .................................................................. 2-61
transmit power ............................................................. 2-55
upstream diffserv tagging ........................................... 2-70
user name...................................................................... 2-87
user ................................................................................ 2-88
username....................................................................... 2-13
version ........................................................................... 2-88
virtual ap name............................................................. 2-60
virtual ap ....................................................................... 2-11
vlan compatibility mode.............................................. 2-48
xix
vlan compatibility mode ............................................. 2-50
vlan ................................................................................ 2-47
vlan-management filter ............................................... 2-48
vlan-management filter ............................................... 2-50
web access interface gre ............................................ 2-15
web access interface vlan........................................... 2-15
web access local mesh................................................ 2-15
web access port-1 ........................................................ 2-14
web access port-2 ........................................................ 2-14
web access wireless .................................................... 2-15
web admin kickout...................................................... 2-14
web allow...................................................................... 2-14
wireless filters mac ..................................................... 2-63
wireless filters rule input............................................ 2-63
wireless filters rule output ......................................... 2-64
wireless filters type ..................................................... 2-64
wireless filters.............................................................. 2-63
wireless link qos .......................................................... 2-43
wireless-scan period.................................................... 2-36
wireless-scan url .......................................................... 2-36
wireless-scan ................................................................ 2-36
wmm advertising ......................................................... 2-70
world-mode dot11 country code................................ 2-14
wpa-psk......................................................................... 2-62
xx
Chapter 1: Introduction
Introduction
Contents
About this guide ...........................................................................................................1-2
Products covered...................................................................................................1-2
Important terms..................................................................................................... 1-2
Typographical conventions ..................................................................................1-3
New in this release.......................................................................................................1-3
HP ProCurve Networking support.............................................................................1-3
1
Online documentation .................................................................................................1-4
CLI support in autonomous and controlled modes .................................................1-4
Controlled mode....................................................................................................1-4
Autonomous mode ................................................................................................1-5
Configuring CLI support..............................................................................................1-5
Entering strings ............................................................................................................1-6
Context hierarchy ........................................................................................................1-7
Sample CLI session ......................................................................................................1-7
Online documentation .................................................................................................1-4
Introduction
About this guide
About this guide
This guide explains how to work with the Command Line Interface (CLI) on HP ProCurve Networking MSM3xx and MSM4xx APs.
Products covered
This guide covers the following products:
Part number
Model
MSM310 Access Point J9374A/B J9524A/B J9379A/B
MSM310-R Access Point J9380A/B J9383A/B
MSM317 Access Device J9422A J9423A J9423A
MSM320 Access Point J9360A/B J9527A/B J9364A/B
MSM320-R Access Point J9365A/B J9528A/B J9368A/B
MSM325 Access Point with Sensor J9369A/B J9373A/B
MSM335 Access Point with Sensor J9356A/B J9357A/B
MSM410 Access Point J9426A/B J9529A/B J9427A/B
MSM422 Access Point J9358A/B J9530A/B J9359A/B
USA Japan WW
Important terms
The following terms are used in this guide.
Ter m Description
AP Refers to any HP ProCurve Networking MSM3xx or MSM4xx
controller, service controller
VSC, Virtual ap, VAP These terms are used interchangeably to refer to VSC (Virtual
1-2
Access Point.
Refers to any HP ProCurve Networking MSM7xx Controller, including both Access Controller and Mobility Controller variants.
Service Community).
Typographical conventions
Command syntax
Command syntax is formatted in a monospaced font as follows:
Example Description
Introduction
New in this release
web admin kickout
ip http port <number>
end [force]
firewall mode (high|low|none)
Items in plain text must be entered as shown.
Items in italics and enclosed in < > are parameters for which you must supply a value. In this example, you must supply a value for <number>.
Items enclosed in square brackets are optional. You can either include them or not. Do not include the brackets. In this example you can either include “force” or omit it.
Items enclosed in parenthesis and separated by a vertical line indicate a choice. Specify only one of the items. In this example, you must specify ’high’, ’low’, or ’none’.
Management tool
When referring to the management tool interface, the Main menu name is presented first followed by a right angle-bracket and then the sub-menu name, as in Network > Ports.
New in this release
New CLI commands in this release are identified by the text New in the left margin. This done in both the table of contents, alphabetical list of commands, and Chapter 2: CLI commands.
HP ProCurve Networking support
The Customer Support/Warranty booklet included with your product and the HP ProCurve Networking Web site, www.hp.com/go/procurve/support, provide information on the support services offer by HP ProCurve Networking. Additionally, your HP-authorized network reseller can provide you with assistance, both with services that they offer and with services offered by HP.
1-3
Introduction
Online documentation
Before contacting support
To make the support process most efficient, before calling your networking dealer or HP Support, you first should collect the following information:
Collect this information Where to find it
Product identification. On the rear of the product.
Software version. The product management tool Login page.
Network topology map, including the addresses assigned to all relevant devices.
Your network administrator.
Online documentation
For the latest documentation, visit the HP ProCurve Networking manuals Web page at:
www.hp.com/go/procurve/manuals.
CLI support in autonomous and controlled modes
An AP operates in either controlled mode or autonomous mode.
Controlled mode
Controlled mode is the factory default mode for all APs.
When in controlled mode, an AP establishes a control channel with a controller. The controller manages the AP and provides all configuration settings. Discovery of the controller is automatic if default settings are used on all devices.
Note In controlled mode, access to the CLI is possible only before the control channel to the
controller is established, which can occur in the following scenarios:
Network failures prevent a control channel from being created.
After an AP is restarted, prior to establishment of the control channel (during the brief
controller discovery process).
When the AP is in controlled mode, a reduced number of CLI commands are available. The most notable command is switch operational mode, which enables you to switch the AP to autonomous mode. The config context is not available.
1-4
Introduction
Configuring CLI support
Autonomous mode
When in autonomous mode, the AP operates as a stand-alone unit. Autonomous mode supports all CLI commands. You can also configure and manage the AP using the AP management tool, SNMP, CLI, or SOAP.
Configuring CLI support
CLI support is configured using the management tool on the AP. Select Management > CLI to open the Command Line Interface (CLI) configuration page.
Note A maximum of three concurrent CLI sessions are supported.
Secure shell access
Enable this option to allow access to the CLI via an SSH session. The CLI supports SSH on the standard TCP port (22).
Connectivity and login credentials for SSH connections use the same settings as defined for management tool on the Controller >> Management > Management tool page. SSH connections to the CLI can be made on any active interface. Support for each interface must be explicitly enabled under Security.
The following SSH clients have been tested with the CLI. Others may work as well:
OpenSSH
Tect ia
SecureCRT
Putty
Authenticate CLI logins using
The CLI validates login credentials (username and password) using the settings defined on the Management > Management tool page. (Shown below for reference)
1-5
Introduction
Entering strings
Local manager account
The login username and password are the same as those defined for the local manager account. If this account is disabled, the last known username and password for this account are used.
Administrative user authentication settings
The login username and password use the same settings (Local and/or RADIUS) as defined for the manager account under Administrative user authentication.
Entering strings
When entering a value that contains spaces, you must enclose it in quotation marks. For example, if the command syntax is:
ssid <name>
you must specify one of the following:
ssid ANameWithNoSpaces ssid "A name with spaces"
1-6
Introduction
Context hierarchy
Context hierarchy
CLI commands are grouped into functional contexts. The following table shows the context hierarchy and the command used to switch from the parent context.
Context hierarchy Command to switch from parent context
View context (This is the root context. No command is needed.)
Enable context enable
Config context config
WAN IP interface context interface ip
Port-2 interface context interface ethernet port-2
VLAN interface context interface vlan <id>[-<id2>]
Port-1 interface context interface ethernet port-1
VLAN interface context interface vlan <id>[-<id2>]
Wireless context interface wireless <number>
Local mesh context local mesh profile <name>
VLAN interface context interface vlan <number>
GRE interface context interface gre <name>
Virtual AP context virtual ap <name>
Syslog destination context logging destination <name>
SNMP user context snmp-server user <name>
SNMP notification receiver context snmp-server notification receiver <host>
RADIUS context radius-server profile <name>
IP_QOS context ip-qos profile <name>
Network profile context network-profile <name>
Sample CLI session
This sample CLI session shows you how to set the wireless port to support 802.11a on channel 60 with medium distance between access points. (The CLI prompt is shown in bold.)
CLI> enable CLI# config CLI(config)# interface wireless CLI(config-if-wlan)# dot11 a 60 CLI(config-if-wlan)# distance medium CLI(config-if-wlan)# end CLI(config)# end CLI# quit
1-7
Introduction
Sample CLI session
1-8
Loading...
+ 94 hidden pages