468
C
HAPTER
21: C
ONFIGURING
AAA
FOR
N
ETWORK
U
SERS
WX1200#
set service-profile mycorp-srvcprof auth-fallthru
web-portal
success: change accepted.
WX1200#
set service-profile mycorp-srvcprof attr vlan-name
mycorp-vlan
success: change accepted.
WX1200#
set service-profile mycorp-srvcprof rsn-ie enable
success: change accepted.
WX1200#
set service-profile mycorp-srvcprof cipher-ccmp
enable
success: change accepted.
3
Display the service profile to verify the changes:
WX1200#
display service-profile mycorp-srvcprof
ssid-name: mycorp
ssid-type: crypto
Beacon: yes Proxy ARP: no
DHCP restrict: no No broadcast: no
Short retry limit: 5 Long retry limit: 5
Auth fallthru: none Sygate On-Demand (SODA): no
Enforce SODA checks: yes SODA remediation ACL:
Custom success web-page: Custom failure web-page:
Custom logout web-page: Custom agent-directory:
Static COS: no COS: 0
CAC mode: none CAC sessions: 14
User idle timeout: 180 Idle client probing: yes
Keep initial vlan: no Web Portal Session Timeout: 5
Web Portal ACL: portalacl
WEP Key 1 value: <none> WEP Key 2 value: <none>
WEP Key 3 value: <none> WEP Key 4 value: <none>
WEP Unicast Index: 1 WEP Multicast Index: 1
Shared Key Auth: NO
RSN enabled:
ciphers: cipher-tkip, cipher-ccmp
authentication: 802.1X
TKIP countermeasures time: 60000ms
vlan-name = mycorp-vlan
...
4
Configure individual WebAAA users.
WX1200#
set user alice password alicepword
success: change accepted.
WX1200#
set user bob password bobpword
success: change accepted.
5
Configure a web authentication rule for WebAAA users. The following
rule uses a wildcard (**) to match on all user names.
Summary of Contents for 3CRWX120695A
Page 138: ...138 CHAPTER 6 CONFIGURING AND MANAGING IP INTERFACES AND SERVICES ...
Page 272: ...272 CHAPTER 11 CONFIGURING RF LOAD BALANCING FOR MAPS ...
Page 310: ...310 CHAPTER 13 CONFIGURING USER ENCRYPTION ...
Page 322: ...322 CHAPTER 14 CONFIGURING RF AUTO TUNING ...
Page 350: ...350 CHAPTER 16 CONFIGURING QUALITY OF SERVICE ...
Page 368: ...368 CHAPTER 17 CONFIGURING AND MANAGING SPANNING TREE PROTOCOL ...
Page 412: ...412 CHAPTER 19 CONFIGURING AND MANAGING SECURITY ACLS ...
Page 518: ...518 CHAPTER 21 CONFIGURING AAA FOR NETWORK USERS ...
Page 530: ...530 CHAPTER 22 CONFIGURING COMMUNICATION WITH RADIUS ...
Page 542: ...542 CHAPTER 23 MANAGING 802 1X ON THE WX SWITCH ...
Page 598: ...598 CHAPTER 26 ROGUE DETECTION AND COUNTERMEASURES ...
Page 706: ...706 GLOSSARY ...