
554 Brocade Mobility RFS7000-GR Controller CLI Reference Guide
53-1001945-01
Wireless Configuration Commands
20
• dynamic-authorization (enable) – Configures support for RADIUS dynamic
authorization extensions (such as Disconnect Message) and
Change-Of-Authorization, as described in RFC 3576.
• enable – Enables support for RADIUS dynamic authorization.
• dynamic-vlan-assignment – Allows users to be assigned to RADIUS Server
specified VLANs, instead of the VLAN mapped to the WLAN.
• enable – Enables dynamic/RADIUS-assigned VLAN assignment.
• mac-auth-format [middle-dash|no-delim|pair-colon|pair-dash|quad-dot] –
Sets the MAC address format.
• middle-dash – Dash Delimiter in the middle - AABBCC-DDEEFF.
• no-delim – No Delimiter - AABBCCDDEEFF.
• pair-colon – Colon Delimiter per Pair - AA:BB:CC:DD:EE:FF.
• pair-dash – Dash Delimiter per Pair - AA-BB-CC-DD-EE-FF.
• quad-dot – Dot Delimiter per Four Hex - AABB.CCDD.EEFF.
• mobile-unit timeout<1-60> retransmit<1-100> – Modifies
RADIUS/802.1X supplicant related parameters.
• timeout<1-60> – Time in seconds the switch waits for a response from
the mobile unit before retrying.
• retransmit<1-100> – Number of retries before the switch gives up and
disassociates the mobile unit.
• reauth<30-65535> – Enables the periodic reauthentication of all associated
mobile units.
• <30-65535> – Reauthentication period in seconds.
• server [primary|secondary|timeout] {A.B.C.D|radius-key}– Modifies
RADIUS/802.1X server parameters.
• primary – Primary RADIUS server. The authentication port is hardcoded
to 1812.
• secondary – Secondary RADIUS server. The authentication port is
hardcoded to 1812.
• timeout <1-300> – Time, in seconds, the switch waits for a response
from the radius server before retrying.
• server timeout<1-300> retransmit<1-100> – Modify RADIUS/802.1X server
parameters.
• <A.B.C.D> – Radius server IP address (using default port :1813).
• radius-key – Radius server shared secret, upto 127 characters.
• timeout<1-300> – Time, in seconds, the switch waits for a response
from the RADIUS server before retrying.
• retransmit<1-100> – Number of retries before the switch gives up and
disassociates the mobile unit.
NOTE: The
RFS7000(config-wireless)# radius server
timeout<*> retransmit<*>
should be less than what is defined
for an MU’s timeout and retries. If the MU’s time is less than the server’s,
a fallback to the secondary server will not work.
secure-beacon
Do not include the SSID of this WLAN in Beacon frames.
set-vlan-user-limit
[<1-4094>|VLAN]
Sets user limits on vlans for this WLAN.
• [<1-4094>|VLAN] – VLAN range list. It can be either a single index or a list
(eg: 1,3,7) or range (eg: 3-7) of indices.
Comentarios a estos manuales