Ruckus Wireless™ SmartZone™ 100 And Virtual SmartZone Essentials Command Line Interface Reference Guide For 3.1.2 Smart Zone (SZ 100/v SZ E) Vsz E 3 1 2 Cli Rg 20151211
2016-01-19
User Manual: Ruckus SmartZone 3.1.2 Command Line Interface Reference Guide (SZ-100/vSZ-E)
Open the PDF directly: View PDF .
Page Count: 404
Download | ![]() |
Open PDF In Browser | View PDF |
Ruckus Wireless SmartZone 100 and Virtual SmartZone Essentials ™ ™ Command Line Interface Reference Guide for SmartZone 3.1.2 Part Number 800-71121-001 Rev A Published December 2015 www.ruckuswireless.com Copyright Notice and Proprietary Information Copyright 2015. Ruckus Wireless, Inc. All rights reserved. No part of this documentation may be used, reproduced, transmitted, or translated, in any form or by any means, electronic, mechanical, manual, optical, or otherwise, without prior written permission of Ruckus Wireless, Inc. (“Ruckus”), or as expressly provided by under license from Ruckus. Destination Control Statement Technical data contained in this publication may be subject to the export control laws of the United States of America. Disclosure to nationals of other countries contrary to United States law is prohibited. It is the reader’s responsibility to determine the applicable regulations and to comply with them. Disclaimer THIS DOCUMENTATION AND ALL INFORMATION CONTAINED HEREIN (“MATERIAL”) IS PROVIDED FOR GENERAL INFORMATION PURPOSES ONLY. RUCKUS AND ITS LICENSORS MAKE NO WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, WITH REGARD TO THE MATERIAL, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY, NON-INFRINGEMENT AND FITNESS FOR A PARTICULAR PURPOSE, OR THAT THE MATERIAL IS ERROR-FREE, ACCURATE OR RELIABLE. RUCKUS RESERVES THE RIGHT TO MAKE CHANGES OR UPDATES TO THE MATERIAL AT ANY TIME. Limitation of Liability IN NO EVENT SHALL RUCKUS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL OR CONSEQUENTIAL DAMAGES, OR DAMAGES FOR LOSS OF PROFITS, REVENUE, DATA OR USE, INCURRED BY YOU OR ANY THIRD PARTY, WHETHER IN AN ACTION IN CONTRACT OR TORT, ARISING FROM YOUR ACCESS TO, OR USE OF, THE MATERIAL. Trademarks Ruckus Wireless, Ruckus, the bark logo, ZoneFlex, FlexMaster, ZoneDirector, SmartMesh, Channelfly, Smartcell, Dynamic PSK, and Simply Better Wireless are trademarks of Ruckus Wireless, Inc. in the United States and other countries. All other product or company names may be trademarks of their respective owners. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 2 Contents About This Guide Document Conventions . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 13 Related Documentation . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 13 Documentation Feedback . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 14 1 Introduction to the Controller Command Line Interface Overview of the Controller Command Line Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . 16 Accessing the Command Line Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 16 What You Will Need . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 16 Connect the Administrative Computer to the Controller . . . . . . . . . . . . . . . . . . . . . . . 16 Start and Configure the SSH Client . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 17 Using SSH Connection . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 18 Using Serial Connection . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 19 Log On to CLI . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 22 2 Configuration Commands config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 26 ad-service. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 27 admin . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 29 admin-radius. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 31 ap . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 34 ap-auto-approve. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 47 ap-auto-tagging . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 49 ap-cert-check . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 50 ap-certificate-reset . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 51 ap-control-mgmt-tos . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 51 ap-group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 51 ap-heartbeat . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 62 ap-portal-cert . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 62 ap-root-ca . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 65 ap-sci . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 65 ap-snmp . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 65 app-denial-policy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 66 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 3 Contents app-port-mapping . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 67 bonjour-gateway. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 68 bonjour-policy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 68 bridge-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 71 cert-store . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 75 changepassword . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 77 clock. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 78 cluster-ip-list . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 78 common-settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 79 device-policy. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 130 diffserv . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 133 diameter-remote-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 134 SZ100-Node1(config)# diameter-remote-service name . . . . . . 135 do. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 136 dp-group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 137 3 Configuration Commands encrypt-mac-ip . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 139 end . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 140 ethernet-port-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 140 event . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 142 event db-persistence . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 143 event email . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 145 event snmp-trap . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 146 event-email . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 147 event-threshold. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 148 exit . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 149 ftp-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 149 ftp-test . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 151 guest-access . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 151 help . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 153 hostname . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 154 hotspot . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 154 hotspot20-venue-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 157 hotspot20-wlan-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 161 hs20-sslv3 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 167 identity-provider . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 167 import-zdbackup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 182 interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 182 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 4 Contents ip . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 187 ip control-nat . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 187 ip name-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 188 ip name-server-ipv6 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 188 ip route . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 189 ip route-ipv6 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 189 ipsec-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 190 l2-acl . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 195 lbs-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 196 ldap-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 197 license . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 200 license cloud. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 200 license export . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 201 license import . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 201 license local . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 202 license sync-now . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 202 lineman . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 203 localdb-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 203 logging console. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 205 lwapp2scg . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 206 mgmt-acl . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 207 no ad-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 208 no admin . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 209 no admin-radius . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 209 no ap . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 209 no ap auto-approve . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 210 no ap auto-tagging . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 210 no ap-cert-check . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 211 no ap-control-mgmt-tos . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 211 no ap-group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 212 no ap-root-ca . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 212 no ap-sci . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 213 no ap-snmp . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 213 no app-denial-policy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 214 no app-port-mapping . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 214 no bonjour-gateway . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 214 no bonjour-policy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 215 no bridge-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 215 no cert-store . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 216 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 5 Contents no control-plane . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 216 no data-plane . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 217 no device-policy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 217 no diffserv . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 218 no dp-group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 218 no encrypt-mac-ip . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 219 no event . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 219 no ethernet-port-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 220 no ftp-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 220 no guest-access . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 221 no hotspot . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 221 no hotspot20-venue-profile. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 222 no hotspot20-wlan-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 222 no hs20-sslv3 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 223 no identity-provider . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 223 no interface. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 224 no ip . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 224 no ipsec-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 225 no l2-acl . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 226 no lbs-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 226 no ldap-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 227 no lineman . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 227 no logging. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 228 no non-proxy-aaa . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 228 no oauth-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 229 no operator-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 229 no osu-portal-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 230 no outbound firewall . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 230 no proxy-aaa . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 230 no report. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 231 no role . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 231 no snmp-trap . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 232 no snmp-v2-community . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 232 no snmp-v3-user . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 233 no subpackages . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 233 no usb-software . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 234 no user-agent-blacklist . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 234 no user-defined-app . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 235 no user-role . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 235 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 6 Contents no user-traffic-profile. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 236 no vlan-pooling . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 236 no web-authentication . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 237 no wlan. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 237 no wlan-group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 238 no wlan-scheduler . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 238 non-proxy-aaa . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 239 northbound-authtype . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 242 northbound-portal. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 242 ntp-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 243 oauth-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 244 operator-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 245 osu-portal-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 247 outbound-firewall . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 249 proxy-aaa . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 250 rebalance-aps. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 253 report . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 254 role . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 258 4 Configuration Commands sms-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 261 smtp-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 262 snmp-trap. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 264 snmp-v2-community. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 265 snmp-v3-user . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 267 subpackages . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 269 support-admin . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 270 syslog-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 271 usb-software. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 273 user-agent-blacklist . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 274 user-defined-app . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 275 user-role . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 276 user-traffic-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 278 vlan-pooling . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 282 web-authentication . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 284 wechat . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 285 wlan . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 287 wlan-group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 299 wlan-scheduler . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 300 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 7 Contents 5 Debug Commands debug . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 303 all-log-level . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 304 ap-subnet-discovery . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 305 apcli . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 305 dataplane . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 307 delete . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 308 diagnostic . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 308 display-format. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 310 do. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 311 dpcli . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 312 end . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 312 exit . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 313 export log . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 313 help . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 314 no all-log-level. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 314 no ap-subnet-discovery . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 315 no output-format. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 315 no save. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 315 no schedule . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 316 no screen-pagination . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 316 no sslv3 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 317 no strict-wfa-compliance. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 317 no web-backdoor . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 318 no web-debug . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 318 output-format . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 319 save . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 319 screen-pagination . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 319 show ap-subnet-discovery-status . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 320 show diagnostic-script . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 321 show schedule . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 321 show sslv3-state. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 322 show strict-wfa-compliance-state . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 322 sslv3 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 322 strict-wfa-compliance-state. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 323 6 Setup Commands rbd . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 324 rbddump. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 324 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 8 Contents setup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 326 7 Show Commands show admin-activity . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 330 show alarm . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 331 show ap . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 331 show ap-certificate-status. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 332 show ap-stats. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 332 show backup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 336 show backup-config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 336 show backup-config-state . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 338 show backup-network . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 338 show backup-schedule. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 339 show backup-state . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 339 show backup-upgrade-state. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 340 show client . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 340 show clock . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 341 show cluster . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 342 show cluster-node . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 342 show cluster-state . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 343 show control-plane-stats . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 343 show counter . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 345 show cpuinfo . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 346 show dhcp-relay-stats . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 347 show diskinfo . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 347 show event . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 348 show history . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 348 show interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 350 show ip. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 351 show license . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 352 show meminfo . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 353 show ntp . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 354 show radius-proxy-stats . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 354 show report-result. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 355 show rogue-aps . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 356 show running-config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 357 show service. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 364 show snapshot-disk-state. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 365 show upgrade-history . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 366 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 9 Contents show upgrade-state . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 366 show version. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 367 8 System Commands ? . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 368 backup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 370 backup config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 370 backup network . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 371 backup schedule . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 371 backup-upgrade . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 372 cluster in-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 373 config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 373 copy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 374 copy ap-certificate-request . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 375 copy backup. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 375 copy backup-config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 376 copy backup-network . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 376 copy client . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 377 copy report-result . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 377 copy ftp-url . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 378 delete backup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 379 delete backup-config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 379 delete backup-network . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 380 delete client . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 380 diagnostic . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 380 enable. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 383 enable. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 383 exit . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 384 help . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 384 logout . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 385 no service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 385 patches . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 386 ping . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 387 ping6 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 388 reload . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 389 reload ap . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 389 reload now . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 390 remote ap-cli . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 390 restore . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 391 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 10 Contents restore config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 391 restore local . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 392 restore network. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 392 service restart . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 393 service start . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 393 set-factory . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 394 shutdown . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 396 shutdown now . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 396 snapshot disk . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 397 traceroute . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 397 upgrade . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 399 upload ap-certificate-status . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 400 Index SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 11 About This Guide This SmartZone™ (SZ) 100 and Virtual SmartZone Essentials (vSZ-E) Command Line Interface Reference Guide contains the syntaxes and commands for configuring and managing the SZ-100/vSZ-E (collectively referred to as “the controller” throughout this guide) from the command line interface. This guide is written for service operators and system administrators who are responsible for managing, configuring, and troubleshooting Ruckus Wireless devices. Consequently, it assumes a basic working knowledge of local area networks, wireless networking, and wireless devices. NOTE If release notes are shipped with your product and the information there differs from the information in this guide, follow the instructions in the release notes. Most user guides and release notes are available in Adobe Acrobat Reader Portable Document Format (PDF) or HTML on the Ruckus Wireless Support Web site at https://support.ruckuswireless.com/contact-us. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 12 About This Guide Document Conventions Document Conventions Table 1 and Table 2 list the text and notice conventions that are used throughout this guide. Table 1. Text conventions Convention Description monospace Represents information as it [Device name]> appears on screen monospace bold Represents information that [Device name]> set you enter ipaddr 10.0.0.12 default font bold Keyboard keys, software buttons, and field names On the Start menu, click All Programs. italics Screen or page names Click Advanced Settings. The Advanced Settings page appears. Table 2. Example Notice conventions Notice Type Description NOTE Information that describes important features or instructions CAUTION! Information that alerts you to potential loss of data or potential damage to an application, system, or device WARNING! Information that alerts you to potential personal injury Related Documentation For a complete list of documents that accompany this release, refer to the Release Notes. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 13 About This Guide Documentation Feedback Documentation Feedback Ruckus Wireless is interested in improving its documentation and welcomes your comments and suggestions. You can email your comments to Ruckus Wireless at: docs@ruckuswireless.com When contacting us, please include the following information: • Document title • Document part number (on the cover page) • Page number (if appropriate) For example: • Ruckus Wireless SmartZone 100 Administrator Guide (Release 3.1.1) • Part number: 800-70944-001 • Page 88 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 14 Introduction to the Controller Command Line Interface 1 In this chapter: • Overview of the Controller Command Line Interface • Accessing the Command Line Interface SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 15 Introduction to the Controller Command Line Interface Overview of the Controller Command Line Interface Overview of the Controller Command Line Interface The Controller command line interface (CLI) is a software tool that enables you to configure and manage the controller. Using the command line interface, you can issue commands from an operating system prompt, such as the Microsoft Windows command prompt or a Linux operating system terminal. Each command performs a specific action for configuring device settings or returning information about the status of a specific device feature. Accessing the Command Line Interface The controller has a built-in command line interface (CLI) that you can use to configure controller settings and manage access points. This section describes the requirements and the procedure for accessing the controller’s CLI. What You Will Need To access the controller CLI, you will need the following: 1 A computer that you want to designate as administrative computer 2 A network connection to the controller (if you want to use an SSH connection) or an RS-232 serial to RJ45 cable (if you want to use a serial connection) 3 An SSH (secure shell) client Connect the Administrative Computer to the Controller Connect the administrative computer to the controller either through the network or directly using an RS-232 serial to RJ45 cable. 1 If you want to use an SSH connection, connect the administrative computer to the same subnet or broadcast domain as the Management (Web) interface of the controller. 2 If you want to use a serial connection, make sure that both the administrative computer and the controller are both powered on. And then, do the following: • Connect the RJ45 end of the cable to the port labeled |O|O| (console port) on the controller. See Figure 1 for the location of the console port. • Connect the RS-232 end of the cable to a COM port on the administrative computer. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 16 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 1. Location of console port Start and Configure the SSH Client Before starting this procedure, make sure that the SSH client is already installed on the administrative computer. NOTE: The following procedure describes how to use PuTTY, a free and open source telnet/SSH client, to access the controller CLI. If you are using a different SSH client, the procedure may be slightly different (although the connection settings should be the same). For more information on PuTTY, visit www.putty.org. See the following sections depending on your connection method: • Using SSH Connection • Using Serial Connection SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 17 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Using SSH Connection If you have connected the administrative computer to the same subnet or broadcast domain as the Management (Web) interface of the controller, follow these steps to start and configure the SSH client. 1 Start PuTTY. The PuTTY configuration dialog box appears, showing the Session screen as seen in Figure 2. 2 In Connection type, select SSH. Figure 2. Selecting SSH as a connection type 3 Enter the IP address of the Management (Web) interface of the controller in the Host Name (or IP address) field as seen in Figure 2. 4 Click Open. The PuTTY console appears and displays the login prompt. See Figure 6. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 18 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Using Serial Connection If you have connected the administrative computer to the console port on the controller using an RS-232 serial to RJ45 cable, follow these steps to start and configure the SSH client. 1 Start PuTTY. The PuTTY Configuration dialog box appears, showing the Session screen as seen in Figure 3. 2 In Connection type, select Serial if you are connecting via serial cable. Figure 3. Selecting serial as a connection type 3 Under Category, click Connection > Serial. The serial connection options appear on the right side of the dialog box, displaying PuTTY’s default serial connection settings. See Figure 4. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 19 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 4. PuTTy’s default serial connection setting 4 Configure the serial connection settings as follows. See Figure 5. • Serial line to connect to: Type the COM port name to which you connected the RS-232 cable. • Bits per second: 115200 • Data bits: 8 • Stop bits: 1 • Parity: None • Flow control: None SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 20 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 5. PuTTY’s serial connection settings for connecting to the controller 5 Click Open. The PuTTY console appears and displays the login prompt as seen in Figure 6. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 21 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 6. PuTTY console displaying the login prompt You have completed configuring the SSH client to connect to the controller CLI. Log On to CLI The following describes the process for log on to the CLI. • Log on to the controller using putty/Xssh (any other application) using the user credentials of login name and password as given. NOTE: You cannot use 'admin' as a password, which is used during the controller installation procedure. • The Ruckus Wireless controller CLI welcome message appears with the CLI prompt as seen in Figure 7. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 22 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 7. Welcome to SmartZone • You are now logged into the controller CLI as a user with limited privileges by looking at the CLI prompt. If you are in limited mode, the prompt appears as ruckus> (with a greater than sign). To view a list of commands that are available at the root level or user mode, enter help or? as seen in Figure 7 and Figure 8. NOTE: To change the CLI prompt to a privileged mode, see step 5. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 23 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 8. Using Show Commands • As a user with limited privileges, you can view a history of commands that were previously executed and ping a device as seen in Figure 9. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 24 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 9. Using the Ping command • If you want to run more commands, you need to switch to privileged mode by entering enable and the password at the root prompt as seen in Figure 10. The prompt changes from ruckus> to ruckus# (with a pound sign) as seen in Figure 10. Refer to enable command for details. Figure 10. Changing to privileged mode SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 25 2 Configuration Commands This chapter describes the commands that you can use to configure, enable, and disable various controller components. The following table lists the commands. NOTE: For easy access and reading, the configuration chapter has been split into three chapters based on the alphabetical order of commands. Table 3. Configuration commands config ad-service admin admin-radius ap ap-autoapprove ap-autotagging ap-cert-check ap-certificate- ap-control-mgmtreset tos ap-group ap-heartbeat ap-portal-cert bonjourgateway ap-root-ca ap-sci bonjour-policy bridge-profile cert-store changepassword clock cluster-ip-list commonsettings device-policy diameter-remoteservice diffserv do dp-group config To execute commands in configuration mode, you need to change the mode to: ruckus(config)# Example SZ100-Node1# SZ100-Node1# config SZ100-Node1(config)# SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 26 Configuration Commands ad-service ad-service To create or update the active directory service configuration, use the following command: ruckus(config)# ad-service Once you enter the config-admin context, you can configure the rest of the administrator’s profile (see example below). Syntax Description This command uses the following syntax: name: Active service directory name Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ad-service ads SZ100-Node1(config-ad-service)# Related Commands Table 5 lists the related ad-service configuration commands. Table 4. Commands related to ruckus(config-ad-service) Syntax and Type Parameters (if any) ruckus(config-ad-service)# admin- domain-name Type: Privileged ruckus(config-ad-service)# admin- password Type: Privileged ruckus(config-ad-service)# description Description Sets the administrator domain name. This field is applicable on executing the group attribute command. Sets the administrator domain password. This field is applicable on executing the group attribute command. Sets the description Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 27 Configuration Commands ad-service Table 4. Commands related to ruckus(config-ad-service) Syntax and Type Parameters (if any) ruckus(config-ad-service)# do Description Executes the do command. Type: Privileged ruckus(config-ad-service)# email Sets the user’s email details. Type: Privileged ruckus(config-ad-service)# end Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-ad-service)# exit Exits from the EXEC. Type: Privileged ruckus(config-ad-service)# friendly-name Sets friendly name for the active service directory. Type: Privileged ruckus(config-ad-service)# global- catalog Enables the global catalog support Type: Privileged ruckus(config-ad-service)# group- : Group attrs attribute value Type: Privileged Sets the user traffic profile mapping. : User Role ruckus(config-ad-service)# help Displays the help. Type: Privileged - Sets the primary server IP address Sets the primary service IP address. Sets the active directory service name. ruckus(config-ad-service)# no Disables the commands. Type: Privileged ruckus(config-ad-service)# port ruckus(config-ad-service)# ipaddress Type: Privileged ruckus(config-ad-service)# name Type: Privileged Sets the primary server port. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 28 Configuration Commands admin Table 4. Commands related to ruckus(config-ad-service) Syntax and Type Parameters (if any) Description ruckus(config-ad-service)# windows-domain-name Example: dc=domain, dc=ruckuswireless, dc=com Sets the windows domain name Sets the user’s job title. Type: Privileged ruckus(config-ad-service)# title Type: Privileged admin To create or update the administrator’s profile (including the email address, login ID and password), use the following command: ruckus(config)# admin Once you enter the config-admin context, you can configure the rest of the administrator’s profile (see example below). Syntax Description This command uses the following syntax: name: Administrator user name Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# admin joe SZ100-Node1(config-admin)# email joe@company.com SZ100-Node1(config-admin)# password admin!234 SZ100-Node1(config-admin)# phone 22870001 SZ100-Node1(config-admin)# real-name "Joe Admin" SZ100-Node1(config-admin)# title CTO SZ100-Node1(config-admin)# radius radius-1 SZ100-Node1(config-admin-radius)# ip 1.1.1.1 SZ100-Node1(config-admin-radius)# port 1813 SZ100-Node1(config-admin-radius)# realm tw1 SZ100-Node1(config-admin-radius)# shared-secret 11 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 29 Configuration Commands admin Retype: ** SZ100-Node1(config-admin-radius)# exit SZ100-Node1(config-admin)# exit SZ100-Node1(config)# Related Commands Table 5 lists the related admin configuration commands. Table 5. Commands related to ruckus(config-admin) Syntax and Type Parameters (if any) ruckus(config-admin)# do Description Executes the do command. Type: Privileged ruckus(config-admin)# email Sets the user’s email details. Type: Privileged ruckus(config-admin)# end Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-admin)# exit Exits from the EXEC. Type: Privileged ruckus(config-admin)# help Displays the help. Type: Privileged ruckus(config-admin)# name Sets the account name. Sets the password for user. Sets the phone number of the user. Type: Privileged ruckus(config-admin)# password Type: Privileged ruckus(config-admin)# phone Type: Privileged ruckus(config-admin)# real-name Sets the real name. Type: Privileged ruckus(config-admin)# role Sets the user role. Sets the user’s job title. Type: Privileged ruckus(config-admin)# title Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 30 Configuration Commands admin-radius admin-radius To configure the RADIUS server for administrators use the following command: ruckus(config)# admin-radius Syntax Description This command uses the following syntax: name: RADIUS server name Default This command has no default settings. Command Mode Config Example SZ100-Node1(config-admin)# radius SZ100-Node1(config-admin-radius)# SZ100-Node1(config-admin-radius)# SZ100-Node1(config-admin-radius)# SZ100-Node1(config-admin-radius)# Retype: ** SZ100-Node1(config-admin-radius)# radius-1 ip 1.1.1.1 port 1813 realm tw1 shared-secret 11 exit SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 31 Configuration Commands admin-radius Related Commands Table 6 lists the related admin-radius-service configuration commands. Table 6. Commands related to ruckus(config-radius-service) Syntax and Type Parameters (if any) Description ruckus(config-admin-radius)# backup ip : Sets the IP address of secondary RADIUS server Enables backup of RADIUS server. Type: Privileged port : Sets the port of secondary RADIUS server shared-secret: Sets the shared secret of secondary RADIUS server request-timeout : Sets the request timeout seconds for failover policy max-retry : Sets the maximum number of retries for failover policy retry-prilnvl : Sets the reconnect primary minutes for failover policy ruckus(config-admin-radius)# do Executes the do command. Type: Privileged ruckus(config-admin-radius)# end Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-admin-radius)# exit Exits from the EXEC. Type: Privileged ruckus(config-admin-radius)# help Displays the help. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 32 Configuration Commands admin-radius Table 6. Commands related to ruckus(config-radius-service) Syntax and Type Parameters (if any) Description ruckus(config-admin-radius)# ip Sets the IP addresses of the primary RADIUS server. Sets the RADIUS server name. backup Disables the backup RADIUS support. Type: Privileged ruckus(config-admin-radius)# name Type: Privileged ruckus(config-admin-radius)# no Type: Privileged ruckus(config-admin-radius)# port Type: Privileged ruckus(config-admin-radius)# realm Type: Privileged ruckus(config-admin-radius)# service Type: Privileged ruckus(config-admin-radius)# shared-secret Type: Privileged Sets the port addresses of the primary RADIUS server. Multiple realms Sets the realms. supported. Use a comma (,) to separate realms (example:home1,home2) : Multiple Sets the services. services supported. Use a comma (,) to separate services (example:home1,home2) Shared Sets the shared secret of the primary RADIUS server. secret between 1 and 255. ruckus(config-admin-radius)# test Type: Privileged Tests the RADIUS server based on the user credentials. ruckus(config-admin-radius)# type [ radius | tacacs ]] Sets the admin authentication type, Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 33 Configuration Commands ap ap To update the AP configuration, use the following commands: ruckus(config)# ap ruckus(config)# ap pre-prov > > ruckus(config)# ap swap > > Syntax Description This command uses the following syntax: lock : AP MAC address lock: Lock AP pre-prov : AP MAC address pre-prov: Update Pre-provision configuration swap : AP MAC address swap: Update Swap configuration trigger-swap : AP MAC address trigger-swap: Trigger swap action approve : AP MAC address approve: Approve AP to go ahead registration process Default This command has no default settings. Command Mode Config Example ruckus(config)# ap mac SZ100-Node1(config)# ap A1:87:45:34:56:FE ruckus(config)# ap pre-prov > SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 34 Configuration Commands ap SZ100-Node1(config)# ap pre-prov import ftp:// ruckus:ruckus1!@172.19.7.100/backup/AP_ad8745345 ruckus(config)# ap swap > SZ100-Node1(config)# ap swap export ftp:// ruckus:ruckus1!@172.19.7.100 Related Commands • Table 7 lists the related ap profile configuration commands. • Table 8 lists the related ap model configuration commands. • Table 10 lists the related ap model lan1 configuration commands. Table 7 lists the related ap profile configuration commands. Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) Description ruckus(config-ap)# admin Sets the administrative logon credentials. Sets the administrative mode to either locked or unlocked. Sets the access point administration login credentials. Sets the model specification (overrides the zone configuration). Sets the access point administrative password. Sets the user location information of LAC or TAC. Type: Privileged ruckus(config-ap)# admin-mode Type: Privileged ruckus(config-ap)# ap-logon Type: Privileged ruckus(config-ap)# ap-model Type: Privileged ruckus(config-ap)# ap-password Type: Privileged ruckus(config-ap)# area-code Type: Privileged ruckus(config-ap)# bonjourgateway Enables the bonjour gateway. Type: Privileged ruckus(config-ap)# bonjour-policy Enables the bonjour policy. Type: Privileged ruckus(config-ap)# channelevaluation-interval Type: Privileged :The interval value (Range: 60-3600 sec) SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A Sets the channel evaluation interval. 35 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) ruckus(config-ap)# channel-select- 2.4g ${value}: 2.4GHz mode radio Description Sets a mode to automatically adjust AP channels. Type: Privileged 5g ${value}: 5GHz radio ruckus(config-ap)# channelflymtbc 2.4g : 2.4GHz Set MTBC value of ChannelFly radio Type: Privileged : MTBC value (Range:100~1440) 5g : 5GHz radio SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 36 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) Description ruckus(config-ap)# clientadmission-control 2.4g Enables the client admission control. Type: Privileged 2.4g minClientCount 5g Min Client Count (Default: 10) 2.4g maxRadioLoad Max Radio Load (Default: 75%) 2.4g minClientThroughput : Min Client Throughput (Default: 0.0Mbps) 5g minClientCount Min Client Count (Default: 20) 5g maxRadioLoad Max Radio Load (Default: 75%) 5g minClientThroughput Min Client Throughput (Default: 0.0Mbps) ruckus(config-ap)# description Sets the model specification (overrides the zone configuration). [ ipv6 | ipv4 ] Sets the device IP mode. Type: Privileged ruckus(config-ap)# device-ipmode Type: Privileged ruckus(config-ap)# do Executes the do command. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 37 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) ruckus(config-ap)# end Description Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-ap)# exit Exits from the EXEC. Type: Privileged ruckus(config-ap)# gps Sets the GPS coordinates to latitude and longitude values. Sets the GPS coordination latitude. Type: Privileged Sets the GPS coordination longitude. ruckus(config-ap)# help Displays the help. Type: Privileged ruckus(config-ap)# gps-latitude Type: Privileged ruckus(config-ap)# gps-longitude Type: Privileged ruckus(config-ap)# hotspot20 Type: Privileged [ swe | cze | spa Sets the hotspot 2.0 settings. | eng | chi | ger | fre | jpn | dan | tur ] : Name swe: Swedish cze: Czech spa: Spanish eng: English chi: Chinese ger: German fre: French jpn: Japanese dan: Danish tur: Turkish ruckus(config-ap)# ip Type: Privileged address and secondary DNS servers. name-server secondary SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 38 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) ruckus(config-ap)# ip6 [ keep | auto ]: Retains the Sets the AP IPv6 address. AP settings Type: Privileged Description static Sets the location. Sets the additional information for location. [ disable | mesh | root | auto ] Sets the mesh mode to either: Type: Privileged ruckus(config-ap)# locationadditional-info Type: Privileged ruckus(config-ap)# mesh Type: Privileged • disable: Disable • mesh: Mesh AP • root: Root AP • auto: Auto ruckus(config-ap)# model Sets the model specifications. It overrides the zone configuration. Type: Privileged ruckus(config-ap)# name Sets the AP name. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 39 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) Description ruckus(config-ap)# no admin Disables the configuration. Type: Privileged bonjour-gateway channel-evaluationinterval channel-select-mode client-admission-control description gps ...................................continued hotspot20 ip ip6 location location-additional-info ruckus(config-ap)# no model Type: Privileged override-ap-mgmt-vlan Disables the configuration. channel-select-mode override-clientadmission-control override-smart-mon override-syslog-opt override-zone-location override-zone-locationadditional-info radio smart-mon swap-in-ap syslog uplink-ap venue-profile SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 40 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) Description ruckus(config-ap)# override-apmgmt-vlan Override AP Management VLAN. <2.4g> : 2.4 GHz radio Type: Privileged Overrides the auto channel selection mode and channelFly MTBC. ruckus(config-ap)# override-client- <2.4g> <5g> admission-control Overrides the client admission control. Type: Privileged ruckus(config-ap)# overridechannel-select-mode <5g> : 5 GHz radio Type: Privileged ruckus(config-ap)# override-smartmon Overrides the smart monitor. Type: Privileged ruckus(config-ap)# overridesyslog-opt Override Syslog options Type: Privileged ruckus(config-ap)# override-zonelocation Overrides the zone location settings. Type: Privileged ruckus(config-ap)# override-zonelocation-additional-info Overrides the zone’s additional information setting on location. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 41 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) Description ruckus(config-ap)# radio 2.4g channel Sets the radio channels. Type: Privileged 5g channel 2.4g channelization 5g channelization 2.4g tx-power 5g tx-power 2.4g wlan-service 5g wlan-service 2.4g wlan-group 5g wlan-group 2.4g roam [ enable | disable ] 5g roam [ enable | disable ] ruckus(config-ap)# smart-mon interval Enables the smart monitor. Type: Privileged threshold ruckus(config-ap)# swap-in-ap Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A Sets the AP Mac IP address for swap-in. 42 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) ruckus(config-ap)# syslog enable Sets the syslog server. Enable the syslog server Type: Privileged Description enable [ Local2 | Keep Original | Local1 | Local5 | Local6 | Local0 | Local7 | Local3 | Local4 ] [ Error | Critical | Warning | All | Alert | Notice | Info | Emergency ] disable - Disables the syslog server ruckus(config-ap)# uplink [ smart | manual ] Type: Privileged ruckus(config-ap)# uplink-ap Sets the uplink to manual access point. Type: Privileged ruckus(config-ap)# venue-profile Sets the uplink selection to either smart or manual. Sets the venue profile Moves the access point to another zone. Type: Privileged ruckus(config-ap)# zone Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 43 Configuration Commands ap Table 8 lists the related to ap-model configuration commands. Table 8. Commands related to ruckus(config-ap-model) Syntax and Type Parameters (if any) ruckus(config-ap-model)# do Description Executes the do command. Type: Privileged ruckus(config-ap-model)# end Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-ap-model)# exit Exits from the EXEC. Type: Privileged ruckus(config-ap-model)# ext-ant 2.4g - 2.4 with Enables the external antenna. DBI number Type: Privileged 2.4gg [ 3 | 2 ] 3/2 antennas 5g - 5g with DBI number 5gg [ 2 | 3 ] 5gg with 2/3 antennas ruckus(config-ap-model)# help Displays the help. Type: Privileged ruckus(config-ap-model)# internalheater Enables the internal heater. Type: Privileged ruckus(config-ap-model)# lan1 ruckus(config-ap-model)# lan2 Sets the LAN configurations from 1 to 5. ruckus(config-ap-model)# lan3 ruckus(config-ap-model)# lan4 ruckus(config-ap-model)# lan5 Type: Privileged ruckus(config-ap-model)# led Enables the status of LEDs. Type: Privileged ruckus(config-ap-model)# ledmode Sets the LED mode. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 44 Configuration Commands ap Table 8. Commands related to ruckus(config-ap-model) Syntax and Type Parameters (if any) ruckus(config-ap-model)# lldp Description Enables link layer discovery protocol. Type: Privileged ruckus(config-ap-model)# lldp-ad- interval Sets the LLDP advertise interval. Type: Privileged ruckus(config-ap-model)# lldphold-time Sets the LLDP hold time. Type: Privileged ruckus(config-ap-model)# lldpmgmt Enables LLDP management IP TLV. Type: Privileged ruckus(config-ap-model)# no ext-ant Type: Privileged internal-heater Disables or deletes the settings that have been configured. lan1 lan2 lan3 lan4 lan5 led lldp lldp-mgmt poe-operating-mode poe-out-port radio-band usb usb-software ruckus(config-ap-model)# poeoperating-mode Switches the PoE mode. Type: Privileged ruckus(config-ap-model)# poeout-port Enables the PoE out port. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 45 Configuration Commands ap Table 8. Commands related to ruckus(config-ap-model) Syntax and Type Parameters (if any) Description ruckus(config-ap-model)# radioband ${value} Switches the radio band. [ enable | disable] Sets the USB port for a specific AP model. Sets the AP USB software package. Type: Privileged ruckus(config-ap-model)# usb Type: Privileged ruckus(config-ap-model)# usbsoftware Type: Privileged Table 9 lists the related to ap-model-lan1 configuration commands. Table 9. Commands related to ruckus(config-ap-model-lan1) Syntax and Type Parameters (if any) Description ruckus(config-ap-model-lan1)# 8021x <802.1x-type> Sets 802.1x. Sets the authentication service configurations. Sets the authentication service configurations. Type: Privileged ruckus(config-ap-model-lan1)# acct-service Type: Privileged ruckus(config-ap-model-lan1)# auth-service Type: Privileged ruckus(config-ap-model-lan1)# do Executes the do command. Type: Privileged ruckus(config-ap-model-lan1)# end Type: Privileged ruckus(config-ap-model-lan1)# exit Ends the current configuration session and returns to privileged EXEC mode. Exits from the EXEC. Type: Privileged ruckus(config-ap-model-lan1)# help Displays the help. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 46 Configuration Commands ap-auto-approve Table 9. Commands related to ruckus(config-ap-model-lan1) Syntax and Type Parameters (if any) ruckus(config-ap-model-lan1)# no overwrite Description Does not permit overwriting. Type: Privileged Sets the MAC bypass. ruckus(config-ap-model-lan1)# mac-bypass Type: Privileged ruckus(config-ap-model-lan1)# members Sets the AP model configurations. Type: Privileged ruckus(config-ap-model-lan1)# no acct-service Disables or deletes the settings that have been configured. Type: User mac-bypass ruckus(config-ap-model-lan1)# profile : Ethernet port profile. Sets the Ethernet port profile. ruckus(config-ap-model-lan1)# supplicant mac Sets the supplicant. Type: Privileged custom ruckus(config-ap-model-lan1)# type [trunk-port | access-port | Sets the port type. general-port] Type: Privileged Type: Privileged ruckus(config-ap-model-lan1)# vlan-untag-id Sets the VLAN untag ID. : VLAN members Sets the VLAN members. Type: Privileged ruckus(config-ap-model-lan1)# vlan-members Type: Privileged ap-auto-approve To enable auto approve, use the following command: ruckus(config)# ap-auto-approve SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 47 Configuration Commands ap-auto-approve Syntax Description This command has no arguments or keywords Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-auto-approve Successful operation SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 48 Configuration Commands ap-auto-tagging ap-auto-tagging To setup critical access point auto tagging rules or to enable auto tagging critical access points, use the following command: ruckus(config)# ap-auto-tagging Syntax Description This command has no arguments or keywords Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-auto-tagging SZ100-Node1(config-ap-auto-tagging)# Related Commands Table 10 lists the related to ap-auto-tagging configuration commands. exi Table 10. Commands related to ruckus(config-ap-auto-tagging) Syntax and Type Parameters (if any) ruckus(config-ap-auto-tagging)# do Description Executes the do command. Type: Privileged ruckus(config-ap-auto-tagging)# enable Enables the auto tagging for critical APs. Type: Privileged ruckus(config-ap-auto-tagging)# end Type: Privileged ruckus(config-ap-auto-tagging)# exit Ends the current configuration session and returns to privileged EXEC mode. Exits from the EXEC. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 49 Configuration Commands ap-cert-check Table 10. Commands related to ruckus(config-ap-auto-tagging) Syntax and Type Parameters (if any) ruckus(config-ap-auto-tagging)# help Description Displays the help. Type: Privileged ruckus(config-ap-auto-tagging)# no Disables the auto tagging for critical APs. Type: Privileged ruckus(config-ap-auto-tagging)# rule Type: Privileged ruckus(config-ap-auto-tagging)# threshold - Traffic Selects the auto tagging rule. To bytes exceeds threshold view this command the ap-autorule tagging should be enabled. Disables the auto tagging for critical APs. To view this command the ap-auto-tagging should be enabled. [m|g] Sets the unit to either mega bytes or giga bytes. Type: Privileged ruckus(config-ap-auto-tagging)# unit Type: Privileged ap-cert-check To enable the access point certificate check, use the following command: ruckus(config)# ap-cert-check Syntax Description This command has no arguments or keywords. Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-cert-check Successful operation SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 50 Configuration Commands ap-certificate-reset ap-certificate-reset To the AP certificate request which failed to update the certificate, use the following command: ruckus(config)# ap-certificate-reset Syntax Description This command has no arguments or keywords. Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-certificate-reset ap-control-mgmt-tos To enable the access control and management traffic type of service and values, use the following command: ruckus(config)# ap-control-mgmt-tos Syntax Description This command has no arguments or keywords. Default This command uses the following syntax: value: TOS value Command Mode Config Example SZ100-Node1(config)# ap-control-mgmt-tos 10 ap-group To create or update the AP group configuration, use the following command: ruckus(config)# ap-group SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 51 Configuration Commands ap-group Syntax Description This command has no arguments or keywords. Default This command uses the following syntax: name: Name of the AP group Command Mode Config Example SZ100-Node1(config)# ap-group name1 Related Commands • Table 11 lists the related to ap-group configuration commands. • Table 12 lists the related ap-group-lldp configuration commands. • Table 13 lists the related ap-group-port-setting configuration commands. Table 11 lists the related to ap-group configuration commands. Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) ruckus(config-ap-group)# channel 2.4g ${value} Type: Privileged Description Sets the channel. 5g indoor ${value} 5g outdoor ${value} ruckus(config-ap-group)# channel-evaluation-interval Type: Privileged ruckus(config-ap-group)# channel-range Type: Privileged : The interval value (Range: 60~3600 sec) Sets the channel evaluation interval. • 2.4g [ ] Sets the channel range • 5g indoor [ ] • 5g outdoor [ ] ruckus(config-ap-group)# channel-select-mode 2.4g ${value} 5g ${value} Sets a mode to automatically adjust AP channels Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 52 Configuration Commands ap-group Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) Description ruckus(config-ap-group)# channelfly-mtbc 2.4g Set the MTBC value of ChannelFlu Type: Privileged is the MTBC value (Range: 100~1440) ruckus(config-ap-group)# channelization 2.4g [ 20 | 40 ] 5g Sets the channelization. 5g [ 40 | 20 ] Type: Privileged ruckus(config-ap-group)# clientadmission-control 2.4g Type: Privileged 2.4g minClientCount 5g Enables the client admission control. Min Client Count (Default: 10) 2.4g maxRadioLoad Max Radio Load (Default: 75%) 2.4g minClientThroughput : Min Client Throughput (Default: 0.0Mbps) ...................................continued ruckus(config-ap-group)# clientadmission-control 5g minClientCount Type: Privileged Min Client Count (Default: 20) Enables the client admission control. 5g maxRadioLoad Max Radio Load (Default: 75%) 5g minClientThroughput Min Client Throughput (Default: 0.0Mbps) SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 53 Configuration Commands ap-group Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) Description ruckus(config-ap-group)# description Sets the description. Type: Privileged ruckus(config-ap-group)# do Sets the do command Type: Privileged ruckus(config-ap-group)# end Type: Privileged Ends the current configuration session and returns to the privileged EXEC mode. ruckus(config-ap-group)# exit Exits from the EXEC. Type: Privileged ruckus(config-ap-group)# external-antenna 5g [ disable | Sets the external antenna for enable ] specific AP model. Type: Privileged 5g gain 2.4g gain 2.4g [ enable | disable ] 2.4g [ 3antennas | 2-antennas ] 5g [ 3antennas | 2-antennas ] ruckus(config-ap-group)# help Displays the help message. Type: Privileged ruckus(config-ap-group)# gps Sets the GPS coordinates. Type: Privileged ruckus(config-ap-group)# internal- [ enable | disable ] heater Sets the internal heater for specific AP model. Type: Privileged ruckus(config-ap-group)# lbs Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A Enables the location based service. 54 Configuration Commands ap-group Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) ruckus(config-ap-group)# lbsservice Description Sets the location based service. Type: Privileged ruckus(config-ap-group)# ledmode Sets the LED mode for specific AP model. [ enable | disable ] Sets the LLDP for a specific AP model. Type: Privileged ruckus(config-ap-group)# lldp Type: Privileged ruckus(config-ap-group)# location Sets the location. Type: Privileged ruckus(config-ap-group)# location-additional-info Sets the additional information for location. Type: Privileged Sets the AP group member. It adds move-to a new access point to current AP group. remove ruckus(config-ap-group)# member add Type: Privileged The AP Mac address removes the access point from the current AP group and moves it to other AP group. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 55 Configuration Commands ap-group Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) Description ruckus(config-ap-group)# no channel 2.4g Type: Privileged channel 5g indoor Disables / deletes the configuration settings. channel 5g outdoor channel-evaluationinterval channel-range channel-select-mode ..................continued channelization 2.4g channelization 5g client-admission-control description external-antenna 5g external-antenna 2.4g external-antenna ${model} gps internal-heater lbs led-mode lldp location location-additional-info override-ap-mgmt-vlan override-channel-selectmode override-client-admissioncontrol SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 56 Configuration Commands ap-group Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) Description ruckus(config-ap-group)# no override-lbs Type: Privileged override-zone-location Disables / deletes the configuration settings. override-zone-locationadditional-info poe-operating-mode poe-out port-setting radio-band status-leds tx-power 2.4g tx-power 5g usb-port usb-software venue-profile wlan-group 2.4g wlan-group 5g ruckus(config-ap-group)# override-ap-mgmt-vlan Overrides AP Management VLAN 2.4g Overrides Auto Channel Selection Mode and ChannelFlyMTBC Type: Privileged ruckus(config-ap-group)# override-channel-select-mode 5g Type: Privileged ruckus(config-ap-group)# override-client-admission-control 2.4g 5g Overrides the client admission control settings. Type: Privileged ruckus(config-ap-group)# override-lbs Overrides the location based service to zone settings. Type: Privileged ruckus(config-ap-group)# override-zone-location Overrides the zone location settings. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 57 Configuration Commands ap-group Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) ruckus(config-ap-group)# override-zone-location-additionalinfo Description Overrides the zone’s additional information setting on location. Type: Privileged ruckus(config-ap-group)# poeoperating-mode Switch the PoE Operating Mode for specific AP model Type: Privileged ruckus(config-ap-group)# poe-out [ enable | disable ] Type: Privileged Sets the PoE out port for a specific AP model. ruckus(config-ap-group)# portsetting Sets the port settings for specific AP model. [ 2.4g | 5g ] Switches the radio band for a specific AP model. [ enable | disable ] Sets the status LED for specific AP model. ruckus(config-ap-group)# txpower 2.4g ${value} Sets the TX power adjustment. Type: Privileged 5g ${value} ruckus(config-ap)# usb-port [ enable | disable ] Sets the USB port for a specific AP model. AP model name Sets the USB port for a specific AP model. Type: Privileged ruckus(config-ap-group)# radioband Type: Privileged ruckus(config-ap-group)# statusleds Type: Privileged Type: Privileged ruckus(config-ap)# usb-software Type: Privileged AP USB software name ruckus(config-ap)# venue-profile Sets the venue profile 2.4g Sets the WLAN group configurations. Type: Privileged ruckus(config-ap-group)# wlangroup 5g Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 58 Configuration Commands ap-group Table 12 lists the related ap-group-lldp configuration commands. Table 12. Commands related to ruckus(config-ap-group-lldp) Syntax and Type Parameters (if any) Description ruckus(config-ap-group-lldp)# lldp-ad-interval Sets the LLDP advertise interval in seconds from the range 1 to 300. Type: Privileged Sets the LLDP hold time in seconds from the range 60 to 1200. ruckus(config-ap-group-lldp)# lldp-mgmt Enables the LLDP management IP TLV. Type: Privileged ruckus(config-ap-group-lldp)# lldp-hold-time Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 59 Configuration Commands ap-group Table 13 lists the related ap-group-port-setting configuration commands. Table 13. Commands related to ruckus(config-ap-group-port) Syntax and Type Parameters (if any) ruckus(config-ap-group-portsetting)# do Description Executes the do command. Type: Privileged ruckus(config-ap-group-portsetting)# dot1x authsvr [ ] Sets the 802.1x role. Type: Privileged accsvr mac-auth-bypass [ true | false ] supplicant user-name [ password supplicant mac ruckus(config-zone-ap-groupport-setting)# exit Exits from the EXEC. Type: Privileged ruckus(config-zone-ap-groupport-setting)# help Displays the help. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 60 Configuration Commands ap-group Table 13. Commands related to ruckus(config-ap-group-port) Syntax and Type Parameters (if any) Description ruckus(config-zone-ap-groupport-setting)# lan Enables or disable specific port. Type: Privileged uplink [ general | access | trunk ] untag member dot1x [ auth-macbased | disabled | authport-based | supplicant ] ruckus(config-zone-ap-groupport-setting)# no dot1x accsvr lan Disables or deletes the configuration settings. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 61 Configuration Commands ap-heartbeat ap-heartbeat To setup the access point heartbeat, use the following command: ruckus(config)# ap-heartbeat Syntax Description This command uses the following syntax: seconds: Interval in seconds, which the AP sends the heartbeat to the controller such as: 30, 60, 150 and 300 Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-heartbeat 30 ap-portal-cert To update the AP portal certificate configuration, use the following command: ruckus(config)# ap-portal-cert Syntax Description This command has no arguments or keywords. Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-portal-cert SZ100-Node1(config-ap-portal-cert)# SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 62 Configuration Commands ap-portal-cert Related Commands • Table 14 lists the related to ap-portal-cert configuration commands. • Table 15 lists the related to ap-portal-cert-generate-csr configuration commands. Table 14 lists the related to ap-portal-cert configuration commands. Table 14. Commands related to ruckus(config-ap-portal-cert) Syntax and Type Parameters (if any) ruckus(config-ap-portal-cert)# do Description Executes the do command. Type: Privileged ruckus(config-ap-portal-cert)# end Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-ap-portal-cert)# exit Exits from the EXEC. Type: Privileged ruckus(config-ap-portal-cert)# generate-csr Type: Privileged FTP URL, format: ftp:/ : @ [/ ] ruckus(config-ap-portal-cert)# help Generates the certificate signing request. Displays the help. Type: Privileged ruckus(config-ap-portal-cert)# upload-cert Type: Privileged Uploads the certificate. FTP URL, format: ftp:/ : @ [/ ] SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 63 Configuration Commands ap-portal-cert Table 15 lists the related to ap-portal-cert-generate-csr configuration commands. Table 15. Commands related to ruckus(config-ap-portal-cert-generate-csr) Syntax and Type Parameters (if any) Description ruckus(config-ap-portal-certgenerate-csr)# city Sets the city name. Sets the domain name. Sets the county. Sets the email address. Sets the organization name. Sets the state name. Sets the unit name. Type: Privileged ruckus(config-ap-portal-certgenerate-csr)# common-name Type: Privileged ruckus(config-ap-portal-certgenerate-csr)# country Type: Privileged ruckus(config-ap-portal-certgenerate-csr)# email Type: Privileged ruckus(config-ap-portal-certgenerate-csr)# organization Type: Privileged ruckus(config-ap-portal-certgenerate-csr)# state Type: Privileged ruckus(config-ap-portal-certgenerate-csr)# unit Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 64 Configuration Commands ap-root-ca ap-root-ca To update the AP root CA, use the following command: ruckus(config)# ap-root-ca Syntax Description This command uses the following syntax: ftp-url: AP Root CA file, FTP URL Format: ftp:// : @ / ) Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-root-ca ftp:// mahan:ruckus1!@172.19.7.100/backup/AP_ad87453456fe.csv ap-sci To enable the access point SCI, use the following command: ruckus(config)# ap-sci enable Syntax Description This command uses the following syntax: enable: Enables the AP SCI. Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-sci enable ap-snmp To enable SNMP on AP, use the following command: SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 65 Configuration Commands app-denial-policy ruckus(config)# ap-snmp Syntax Description This command has no arguments or keywords. Default This command has no default settings. Command Mode Privileged Example SZ100-Node1(config)# ap-snmp app-denial-policy To create or update an Application Denial Policy, use the following command: ruckus(config)# app-denial-policy Syntax Description This command has the following parameter: : application name Default This command has no default settings. Command Mode Privileged Example SZ100-Node1(config)# app-denial-policy xyz Related Commands Table 16 lists the related app-denial-policy configuration commands. Table 16. Commands related to ruckus(config-app-denial-policy) Syntax and Type Parameters (if any) ruckus(config-app-denial-policy)# description Description Sets the description. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 66 Configuration Commands app-port-mapping Table 16. Commands related to ruckus(config-app-denial-policy) Syntax and Type Parameters (if any) ruckus(config-app-denial-policy)# rule Description Creates/Updates Application Denial Policy rule Type: Privileged ruckus(config-app-denial-policy)# rule no Removes Application Denial Policy rule. Type: Privileged app-port-mapping To create or update application port mapping, use the following command: ruckus(config)# app-port-mapping Syntax Description This command has the following parameter: : application name Default This command has no default settings. Command Mode Privileged Example SZ100-Node1(config)# app-port-mapping abc Related Commands Table 17 lists the related app-port-mapping configuration commands. Table 17. Commands related to ruckus(config-app-port-mapping) Syntax and Type Parameters (if any) Description ruckus(config-app-portmapping)# port : Port Sets the port. [tcp | udp] Sets the protocol Type: Privileged ruckus(config-app-portmapping)# protocol Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 67 Configuration Commands bonjour-gateway bonjour-gateway To enable the bonjour-gateway, use the following command: ruckus(config)# bonjour-gateway Syntax Description This command has no arguments or keywords. Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# bonjour-gateway Bonjour service is enabled bonjour-policy To create or update the bonjour policy, use the following command: ruckus(config)# bonjour-policy Syntax Description This command uses the following syntax: name: Name of the bonjour-policy Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# bonjour-policy SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 68 Configuration Commands bonjour-policy Related Commands Table 18 lists the related bonjour-policy configuration commands. Table 18. Commands related to ruckus(config-bonjour-policy) Syntax and Type Parameters (if any) Description ruckus(config-bonjour-policy)# description Sets the description. Type: Privileged ruckus(config-bonjour-policy)# do Executes the do command. Type: Privileged ruckus(config-bonjour-policy)# end Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-bonjour-policy)# exit Exits from the EXEC. Type: Privileged ruckus(config-bonjour-policy)# help Displays the help. Type: Privileged ruckus(config-bonjour-policy)# name Sets the bonjour policy name. Type: Privileged ruckus(config-bonjour-policy)# no rule Deletes the rules based on the rule priority. Type: Privileged ruckus(config-bonjour-policy)# rule Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A Sets the bonjour policy set of rules based on the rule priority. 69 Configuration Commands bonjour-policy Table 19 lists the related bonjour-policy-rule configuration commands. Table 19. Commands related to ruckus(config-bonjour-policy-rule) Syntax and Type Parameters (if any) Description ruckus(config-bonjour-policyrule)# bridge-service airdisk Sets the bridge service. Type: Privileged airport-management airplay airprint airtunes apple-file-sharing apple-mobile-devices (Allows sync with iTunes over Wi-Fi) appletv icloud-sync itunes-remote itunes-sharing open-directory-master optical-disk-sharing other screen-sharing secure-file-sharing secure-shell workgroup-manager www-http www-https xgrid ruckus(config-bonjour-policyrule)# do Executes the do command. Type: Privileged ruckus(config-bonjour-policyrule)# end Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A Ends the current configuration session and returns to privileged EXEC mode. 70 Configuration Commands bridge-profile Table 19. Commands related to ruckus(config-bonjour-policy-rule) Syntax and Type Parameters (if any) ruckus(config-bonjour-policyrule)# exit Description Exits from the EXEC. Type: Privileged ruckus(config-bonjour-policyrule)# from-vlan Sets the from VLAN. Type: Privileged Exits from the EXEC. ruckus(config-bonjour-policyrule)# help Type: Privileged ruckus(config-bonjour-policyrule)# notes Sets the notes. Type: Privileged ruckus(config-bonjour-policyrule)# protocol Sets the bridge service when it is 'other'. Type: Privileged ruckus(config-bonjour-policyrule)# to-vlan Sets the VLAN. Type: Privileged bridge-profile To create or update the bridge configuration, use the following command: ruckus(config)# bridge-profile Syntax Description This command uses the following syntax: name: Authorization service profile name Default This command has no default settings. Command Mode Config SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 71 Configuration Commands bridge-profile Example SZ100#(config)# bridge-profile auth-prof Related Commands • Table 20 lists the related bridge-profile configuration commands. • Table 20 lists the related bridge-profile-dhcp-option82 configuration commands. Table 20 lists the related bridge-profile configuration commands. Table 20. Commands related to ruckus(config-bridge-profile) configuration Syntax and Type Parameters (if any) Description ruckus(config-bridge-profile)# description Sets the description Type: Privileged ruckus(config-bridge-profile)# dhcp-option82 Enables the DHCP Option 82. Type: Privileged ruckus(config-bridge-profile)# dhcp-relay Enables the DHCP relay. Type: Privileged ruckus(config-bridge-profile)# dhcp-server1 Sets the DHCP Server 1 Sets the DHCP Server 1 Type: Privileged ruckus(config-bridge-profile)# dhcp-server2 Type: Privileged ruckus(config-bridge-profile)# do Executes the do command. . Type: Privileged ruckus(config-bridge-profile)# end Type: Privileged ruckus(config-bridge-profile)# exit Ends the current configuration session and returns to the privileged EXEC mode. Exits from the EXEC. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 72 Configuration Commands bridge-profile Table 20. Commands related to ruckus(config-bridge-profile) configuration Syntax and Type Parameters (if any) ruckus(config-bridge-profile)# help Description Displays the help. Type: Privileged ruckus(config-bridge-profile)# name Set the authentication service profile name Type: Privileged ruckus(config-bridge-profile)# no dhcp-option82 Type: Privileged dhcp-relay Disables DHCP Option 82, DHCP Relay or deletes DHCP Server 2 dhcp-server2 relay-both ruckus(config-bridge-profile)# relay-both Enables sending DHCP requests to both the servers simultaneously. Type: Privileged Table 21 lists the related bridge-profile-dhcp-option82 configuration commands. Table 21. Commands related to ruckus(config-bridge-profile-dhcp-option82) Syntax and Type Parameters (if any) ruckus(config-bridge-profiledhcp-option82)# do Description Executes the do command. Type: Privileged ruckus(config-bridge-profiledhcp-option82)# end Type: Privileged ruckus(config-bridge-profiledhcp-option82)# exit Ends the current configuration session and returns to the privileged EXEC mode. Exits from the EXEC. Type: Privileged ruckus(config-bridge-profiledhcp-option82)# help Displays the help. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 73 Configuration Commands bridge-profile Table 21. Commands related to ruckus(config-bridge-profile-dhcp-option82) Syntax and Type Parameters (if any) Description ruckus(config-bridge-profiledhcp-option82)# no subopt1 Disables various options Type: Privileged subopt151 subopt150 subopt2 ruckus(config-bridge-profiledhcp-option82)# subtopt1 [ ap-info | ap-essid | ap-mac ] Enables subopt-1 Type: Privileged ruckus(config-bridge-profiledhcp-option82)# subtopt150 Enables subopt-150 Type: Privileged ruckus(config-bridge-profiledhcp-option82)# subtopt151 essid Enables subopt-151 area-name Type: Privileged ruckus(config-bridge-profiledhcp-option82)# subtopt2 [ ap-essid | ue-essid | ue-mac Enables subopt-2 | ap-mac ] Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 74 Configuration Commands cert-store cert-store To create or update certificate configurations, use the following command: ruckus(config)# cert-store ap-cert ruckus(config)# cert-store cert ruckus(config)# cert-store csr ruckus(config)# cert-store hotspot-cert ruckus(config)# cert-store web-cert Syntax Description This command uses the following syntax: ap-cert : Create / updates the AP port certificate cert : Create / updates the certificate configuration csr : Create / updates CSR (Certificate Signing Request) configuration hotspot-cert : Sets the hotspot certificate web-cert : Sets the management web certificate Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# cert-store cert apcert SZ100-Node1(config-cert)# Related Commands Table 22 lists the related cert-store configuration commands. Table 22. Commands related to ruckus(config-cert-store) configuration Syntax and Type Parameters (if any) Description ruckus(config-cert-store)# cert Uploads the certificate file. Type: Privileged append ruckus(config-cert-store)# city Sets the city Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.1.2, 800-71121-001 Rev A 75 Configuration Commands cert-store Table 22. Commands related to ruckus(config-cert-store) configuration Syntax and Type Parameters (if any) Description ruckus(config-cert-store)# common-name Sets the domain name Type: Privileged ruckus(config-cert-store)# country Sets the country. Type: Privileged ruckus(config-cert-store)# description Sets the description Type: Privileged ruckus(config-cert-store# do Executes the do command. Type: Privileged ruckus(config-cert-store)# email Sets the email address. Type: Privileged Type: Privileged ruckus(config-cert-store)# end Ends the current configuration session and return to privileged EXEC mode. ruckus(config-cert-store)# exit Exits from the EXEC. Type: Privileged ruckus(config-cert-store)# help Displays the help. Type: Privileged ruckus(config-cert-store)#intercert