2013年12月2日月曜日

Instant AP 3.4 configuration

d8:c7:c8:c8:eb:e8# show run
version 6.2.1.0-3.4.0
virtual-controller-country AR
virtual-controller-key f632ac870184cb8fadc6fe568b835a0ff2ce12cc0ceacb6bb8
name Instant-C8:EB:E8
terminal-access
ntp-server ntp.nict.jp
clock timezone Osaka 09 00
rf-band all

allow-new-aps
allowed-ap d8:c7:c8:c8:eb:e8

snmp-server community 9503bfe18ceeb441a6006d74594eda24

arm
 wide-bands 5ghz
 min-tx-power 18
 max-tx-power 127
 band-steering-mode prefer-5ghz
 air-time-fairness-mode fair-access
 client-aware
 scanning

syslog-level warn ap-debug
syslog-level warn network
syslog-level warn security
syslog-level warn system
syslog-level warn user
syslog-level warn user-debug
syslog-level warn wireless


mgmt-user admin 643264440fdb6c2c0f67987aa7533ce7

wlan access-rule default_wired_port_profile
 index 0
 rule any any match any any any permit

wlan access-rule wired-instant
 index 1
 rule 126.15.123.155 255.255.255.255 match tcp 80 80 permit
 rule 126.15.123.155 255.255.255.255 match tcp 4343 4343 permit
 rule any any match udp 67 68 permit
 rule any any match udp 53 53 permit

wlan access-rule hogehoge
 index 2
 rule any any match any any any permit

wlan access-rule hoge-guest
 index 3
 rule any any match any any any permit

wlan ssid-profile hogehoge
 enable
 index 0
 type employee
 essid hogehoge
 wpa-passphrase 32c78e0edbab463e7e2c7350949f9bab9d5d07d872771f20
 opmode wpa2-psk-aes
 max-authentication-failures 0
 vlan guest
 auth-server InternalServer
 rf-band all
 captive-portal disable
 dtim-period 1
 inactivity-timeout 1000
 broadcast-filter none
 dmo-channel-utilization-threshold 90
 local-probe-req-thresh 0
 max-clients-threshold 64

wlan ssid-profile hoge-guest
 enable
 index 1
 type guest
 essid hoge-guest
 opmode opensystem
 max-authentication-failures 0
 vlan guest
 auth-server CP
 rf-band all
 captive-portal external
 mac-authentication
 dtim-period 1
 inactivity-timeout 1000
 broadcast-filter none
 radius-accounting
 radius-interim-accounting-interval 5
 dmo-channel-utilization-threshold 90
 local-probe-req-thresh 0
 max-clients-threshold 64

auth-survivability cache-time-out 24



wlan auth-server CP
 ip 114.179.12.251
 port 1812
 acctport 1813
 key db3cb6fd33d6cfe13306ed933f9bbc5d

wlan external-captive-portal
 server 114.179.12.251
 port 80
 url "/guest/guest_register_2.php"
 auth-text ""
 auto-whitelist-disable


blacklist-time 3600
auth-failure-blacklist-time 3600

ids
 wireless-containment none


wired-port-profile wired-instant
 switchport-mode access
 allowed-vlan all
 native-vlan guest
 no shutdown
 access-rule-name wired-instant
 speed auto
 duplex auto
 no poe
 type guest
 captive-portal disable
 no dot1x

wired-port-profile default_wired_port_profile
 switchport-mode trunk
 allowed-vlan all
 native-vlan 1
 shutdown
 access-rule-name default_wired_port_profile
 speed auto
 duplex full
 no poe
 type employee
 captive-portal disable
 no dot1x


enet0-port-profile default_wired_port_profile

uplink
 preemption
 enforce none
 failover-internet-pkt-lost-cnt 10
 failover-internet-pkt-send-freq 30
 failover-vpn-timeout 180

pppoe-uplink-profile
 pppoe-username bxxxxxxxxxxxxx@sbb.ne.jp
 pppoe-svcname flets
 pppoe-chapsecret 60287bac7f398fcecab7cf719e2ed634db0563067241e8eb


airgroup
 disable

airgroupservice airplay
 disable
 description AirPlay

airgroupservice airprint
 disable
 description AirPrint

0 件のコメント:

コメントを投稿