Brocade Mobility RFS7000-GR Controller CLI Reference Guide (Supporting software release 4.1.0.0-040GR and later) User Manual

Page 568

Advertising
background image

554

Brocade Mobility RFS7000-GR Controller CLI Reference Guide

53-1001945-01

Wireless Configuration Commands

20

dynamic-authorization (enable) – Configures support for RADIUS dynamic
authorization extensions (such as Disconnect Message) and
Change-Of-Authorization, as described in RFC 3576.

enable – Enables support for RADIUS dynamic authorization.

dynamic-vlan-assignment – Allows users to be assigned to RADIUS Server
specified VLANs, instead of the VLAN mapped to the WLAN.

enable – Enables dynamic/RADIUS-assigned VLAN assignment.

mac-auth-format [middle-dash|no-delim|pair-colon|pair-dash|quad-dot] –
Sets the MAC address format.

middle-dash – Dash Delimiter in the middle - AABBCC-DDEEFF.

no-delim – No Delimiter - AABBCCDDEEFF.

pair-colon – Colon Delimiter per Pair - AA:BB:CC:DD:EE:FF.

pair-dash – Dash Delimiter per Pair - AA-BB-CC-DD-EE-FF.

quad-dot – Dot Delimiter per Four Hex - AABB.CCDD.EEFF.

mobile-unit timeout<1-60> retransmit<1-100> – Modifies
RADIUS/802.1X supplicant related parameters.

timeout<1-60> – Time in seconds the switch waits for a response from
the mobile unit before retrying.

retransmit<1-100> – Number of retries before the switch gives up and
disassociates the mobile unit.

reauth<30-65535> – Enables the periodic reauthentication of all associated
mobile units.

<30-65535> – Reauthentication period in seconds.

server [primary|secondary|timeout] {A.B.C.D|radius-key}– Modifies
RADIUS/802.1X server parameters.

primary – Primary RADIUS server. The authentication port is hardcoded
to 1812.

secondary – Secondary RADIUS server. The authentication port is
hardcoded to 1812.

timeout <1-300> – Time, in seconds, the switch waits for a response
from the radius server before retrying.

server timeout<1-300> retransmit<1-100> – Modify RADIUS/802.1X server
parameters.

<A.B.C.D> – Radius server IP address (using default port :1813).

radius-key – Radius server shared secret, upto 127 characters.

timeout<1-300> – Time, in seconds, the switch waits for a response
from the RADIUS server before retrying.

retransmit<1-100> Number of retries before the switch gives up and
disassociates the mobile unit.

NOTE: The

RFS7000(config-wireless)# radius server

timeout<*> retransmit<*>

should be less than what is defined

for an MU’s timeout and retries. If the MU’s time is less than the server’s,
a fallback to the secondary server will not work.

secure-beacon

Do not include the SSID of this WLAN in Beacon frames.

set-vlan-user-limit
[<1-4094>|VLAN]

Sets user limits on vlans for this WLAN.

[<1-4094>|VLAN] – VLAN range list. It can be either a single index or a list
(eg: 1,3,7) or range (eg: 3-7) of indices.

Advertising