704 | show ap config
Dell PowerConnect W-Series ArubaOS 6.2 | Reference Guide
Parameter
Description
l
all—both 802.11a and 802.11b/g bands (5 GHz and 2.4
GHz)
VLAN
Shows the VLAN(s) into which users are placed in order to
obtain an IP address.
Forward mode
Shows the current forward mode (tunnel, bridge, split-
tunnel, or decrypt-tunnel) for the virtual AP.
This parameter controls whether 802.11 frames are tunneled
to the controller using generic routing encapsulation (GRE),
bridged into the local Ethernet LAN (for remote APs), or a
combination thereof depending on the destination
(corporate traffic goes to the controller, and Internet access
remains local).
When an AP is configured to use the decrypt-tunnel
forwarding mode, that AP decrypts and decapsulates all
802.11 frames from a client and sends the 802.3 frames
through the GRE tunnel to the controller, which then applies
firewall policies to the user traffic. When the controller
sends traffic to a client, the controller sends 802.3 traffic
through the GRE tunnel to the AP, which then converts it to
encrypted 802.11 and forwards to the client.
Only 802.1X authentication is supported when configuring
bridge or split tunnel mode.
Deny time range
Shows the time range for which the AP will deny access for
a virtual AP.
Mobile IP
Shows if IP mobility has been enabled or disabled for the
virtual AP.
HA Discovery on-association
If enabled, home agent discovery is triggered on client
association instead of home agent discovery based on
traffic from client. Mobility on association can speed up
roaming and improve connectivity for clients that do not
send many uplink packets to trigger mobility (VoIP
clients).Best practices is to keep this parameter disabled,r
as it increases IP mobility control traffic between
controllers in the same mobility domain. Enable this
parameter only when voice issues are observed in VoIP
clients.
NOTE:
ha-disc-onassoc
parameter works only when IP
mobility is enabled and configured on the controller.
DoS Prevention
Shows the status of the Dos Prevention option. If enabled,
virtual APs ignore deauthentication frames from clients.
This prevents a successful deauth attack from being carried
out against the AP. This does not affect third-party APs.
Station Blacklisting
Shows if the virtual AP has enabled or disabled detection of
denial of service (DoS) attacks, such as ping or SYN floods,
that are not spoofed deauth attacks.
Blacklist Time
Shows the number of seconds that a client will be
quarantined from the network after being blacklisted.
Authentication Failure Blacklist Time
Shows the time, in seconds, a client is blocked if it fails
repeated authentication. If the virtual AP shows a value of 0,
Summary of Contents for PowerConnect W-7200 Series
Page 1: ...Dell PowerConnect W Series ArubaOS 6 2 Command Line Interface Reference Guide ...
Page 38: ...38 aaa authentication server windows DellPowerConnect W Series ArubaOS 6 2 Reference Guide ...
Page 319: ...DellPowerConnect W Series ArubaOS 6 2 Reference Guide interface loopback 319 ...
Page 346: ...346 ipv6 mld DellPowerConnect W Series ArubaOS 6 2 Reference Guide ...
Page 387: ...DellPowerConnect W Series ArubaOS 6 2 Reference Guide ip radius 387 ...
Page 995: ...DellPowerConnect W Series ArubaOS 6 2 Reference Guide show firewall 995 ...
Page 1529: ...DellPowerConnect W Series ArubaOS 6 2 Reference Guide wms client 1529 ...
Page 1536: ...0510956 01 March 2013 1536 ...