Brocade Mobility RFS Controller CLI Reference Guide (Supporting software release 5.5.0.0 and later) User Manual

Page 226

Advertising
background image

210

Brocade Mobility RFS Controller CLI Reference Guide

53-1003098-01

4

A client identity group is a collection of client identities. Each client identity included in a client
identity group is set a priority value that indicates the priority for that identity when device
fingerprinting.

Device Fingerprinting relies on specific information sent by a wireless client when acquiring IP
address and other configuration information from a DHCP server. The feature uses the DHCP
options sent by the wireless client in the DHCP request or discover packets to derive a unique
signature specific to the class of devices. For example, Apple devices have a different signature
than Android devices. This unique signature can then be used to classify the devices and assign
permissions and restrictions on each device class.

A client identity group can be attached to a profile or device, enabling device fingerprinting on
them.

Supported in the following platforms:

Access Points — Brocade Mobility 650 Access Point, Brocade Mobility 6511 Access Point,
Brocade Mobility 1220 Access Point, Brocade Mobility 71XX Access Point, Brocade
Mobility 1240 Access Point

Wireless Controllers — Brocade Mobility RFS4000, Brocade Mobility RFS6000, Brocade
Mobility RFS7000

Service Platforms — Brocade Mobility RFS9510

Syntax:

client-identity-group <CLIENT-IDENTITY-GROUP-NAME> precedence <1-10000>

Parameters

client-identity-group <CLIENT-IDENTITY-GROUP-NAME> <1-10000>

Example

rfs4000-229D58(config)#client-identity-group test

rfs4000-229D58(config-client-identity-group-test)#

rfs4000-229D58(config-client-identity-group-test)#?

Client Identity group Mode commands:

client-identity Client identity (DHCP Device Fingerprinting)

no Negate a command or set its defaults

clrscr Clears the display screen

commit Commit all changes made in this session

do Run commands from Exec mode

end End current mode and change to EXEC mode

exit End current mode and down to previous mode

help Description of the interactive help system

revert Revert changes

service Service Commands

show Show running system information

write Write running configuration to memory or terminal

client-identity-group
<CLIENT-IDENTITY-GROUP
-NAME>

Creates a new client identity group and enters its configuration mode

<CLIENT-IDENTITY-GROUP-NAME> – Specify a client identity group name. If the group does not exist, it
is created.

precedence
<1-10000>

Specifies a precedence value for this client identity match criteria in this client identity group
Client identity signatures with lower precedence are evaluated first.

Advertising