Ruckus SZ™ 100 And VSZ E™ Command Line Interface Reference Guide For SmartZone 3.2 V SZ D Smart Zone (GA) E 3 2 Cli Rg Revb 20160628
2016-06-27
User Manual: Ruckus vSZ-D SmartZone 3.2 (GA) Command Line Interface Reference Guide
Open the PDF directly: View PDF .
Page Count: 402
Download | |
Open PDF In Browser | View PDF |
Ruckus Wireless SmartZone 100 and Virtual SmartZone Essentials ™ ™ Command Line Interface Reference Guide for SmartZone 3.2 Part Number 800-71021-001 Rev B Published June 2016 www.ruckuswireless.com Copyright Notice and Proprietary Information Copyright 2015. Ruckus Wireless, Inc. All rights reserved. No part of this documentation may be used, reproduced, transmitted, or translated, in any form or by any means, electronic, mechanical, manual, optical, or otherwise, without prior written permission of Ruckus Wireless, Inc. (“Ruckus”), or as expressly provided by under license from Ruckus. Destination Control Statement Technical data contained in this publication may be subject to the export control laws of the United States of America. Disclosure to nationals of other countries contrary to United States law is prohibited. It is the reader’s responsibility to determine the applicable regulations and to comply with them. Disclaimer THIS DOCUMENTATION AND ALL INFORMATION CONTAINED HEREIN (“MATERIAL”) IS PROVIDED FOR GENERAL INFORMATION PURPOSES ONLY. RUCKUS AND ITS LICENSORS MAKE NO WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, WITH REGARD TO THE MATERIAL, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY, NON-INFRINGEMENT AND FITNESS FOR A PARTICULAR PURPOSE, OR THAT THE MATERIAL IS ERROR-FREE, ACCURATE OR RELIABLE. RUCKUS RESERVES THE RIGHT TO MAKE CHANGES OR UPDATES TO THE MATERIAL AT ANY TIME. Limitation of Liability IN NO EVENT SHALL RUCKUS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL OR CONSEQUENTIAL DAMAGES, OR DAMAGES FOR LOSS OF PROFITS, REVENUE, DATA OR USE, INCURRED BY YOU OR ANY THIRD PARTY, WHETHER IN AN ACTION IN CONTRACT OR TORT, ARISING FROM YOUR ACCESS TO, OR USE OF, THE MATERIAL. Trademarks Ruckus Wireless, Ruckus, the bark logo, ZoneFlex, FlexMaster, ZoneDirector, SmartMesh, Channelfly, Smartcell, Dynamic PSK, and Simply Better Wireless are trademarks of Ruckus Wireless, Inc. in the United States and other countries. All other product or company names may be trademarks of their respective owners. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 2 Contents About This Guide Document Conventions . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 13 Related Documentation . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 13 Documentation Feedback . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 14 1 Introduction to the Controller Command Line Interface Overview of the Controller Command Line Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . 16 Accessing the Command Line Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 16 What You Will Need . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 16 Connect the Administrative Computer to the Controller . . . . . . . . . . . . . . . . . . . . . . . 16 Start and Configure the SSH Client . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 17 Using SSH Connection . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 18 Using Serial Connection . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 19 Log On to CLI . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 22 2 Configuration Commands config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 26 ad-service. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 27 admin . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 29 admin-radius. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 31 ap . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 34 ap-auto-approve. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 47 ap-auto-tagging . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 48 ap-cert-check . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 49 ap-control-mgmt-tos . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 50 ap-group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 50 ap-heartbeat . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 65 ap-portal-cert . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 65 ap-root-ca . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 68 ap-sci . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 68 ap-snmp . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 68 app-denial-policy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 69 app-port-mapping . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 70 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 3 Contents bonjour-gateway. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 71 bonjour-policy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 71 bridge-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 74 cert-store . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 78 change password . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 80 clock. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 81 cluster-ip-list . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 81 common-settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 82 device-policy. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 128 diffserv . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 131 do. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 132 dp-group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 132 3 Configuration Commands encrypt-mac-ip . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 135 end . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 136 ethernet-port-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 136 event . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 138 event db-persistence . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 139 event email . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 141 event snmp-trap . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 143 event-email . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 144 event-threshold. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 145 exit . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 146 ftp-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 146 ftp-test . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 148 guest-access . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 148 help . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 150 hostname . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 151 hotspot . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 151 hotspot20-venue-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 154 hotspot20-wlan-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 159 hs20-sslv3 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 165 identity-provider . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 165 import-zdbackup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 180 interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 180 ip . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 185 ip control-nat . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 186 ip name-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 186 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 4 Contents ip name-server-ipv6 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 187 ip route . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 187 ip route-ipv6 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 188 ipsec-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 188 l2-acl . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 193 lbs-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 195 ldap-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 196 license . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 198 license cloud. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 199 license export . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 200 license import . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 200 license local . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 201 license sync-now . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 201 lineman . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 202 localdb-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 202 logging console. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 204 lwapp2scg . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 205 mgmt-acl . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 206 no ad-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 207 no admin . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 208 no admin-radius . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 208 no ap . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 208 no ap auto-approve . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 209 no ap auto-tagging . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 209 no ap-cert-check . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 210 no ap-control-mgmt-tos . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 210 no ap-group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 211 no ap-root-ca . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 211 no ap-sci . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 212 no ap-snmp . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 212 no app-denial-policy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 213 no app-port-mapping . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 213 no bonjour-gateway . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 213 no bonjour-policy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 215 no bridge-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 215 no cert-store . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 216 no control-plane . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 216 no data-plane . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 217 no device-policy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 217 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 5 Contents no diffserv . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 218 no dp-group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 218 no encrypt-mac-ip . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 219 no event . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 219 no ethernet-port-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 220 no event . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 220 no ftp-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 221 no guest-access . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 221 no hotspot . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 222 no hotspot20-venue-profile. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 222 no hotspot20-wlan-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 223 no hs20-sslv3 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 223 no identity-provider . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 223 no interface. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 224 no ip . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 224 no ipsec-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 226 no l2-acl . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 226 no lbs-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 227 no ldap-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 227 no lineman . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 228 no logging. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 228 no non-proxy-aaa . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 229 no oauth-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 229 no operator-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 230 no osu-portal-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 230 no outbound firewall . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 231 no proxy-aaa . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 231 no report. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 231 no role . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 232 no snmp-trap . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 232 no snmp-v2-community . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 233 no snmp-v3-user . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 233 no subpackages . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 234 no usb-software . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 234 no user-agent-blacklist . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 236 no user-defined-app . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 236 no user-role . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 236 no user-traffic-profile. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 238 no vlan-pooling . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 238 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 6 Contents no web-authentication . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 239 no wlan. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 239 no wlan-group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 240 no wlan-scheduler . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 240 non-proxy-aaa . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 241 northbound-authtype . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 244 northbound-portal. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 245 ntp-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 245 oauth-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 246 operator-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 247 osu-portal-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 249 outbound-firewall . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 251 proxy-aaa . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 252 rebalance-aps. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 256 report . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 256 role . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 261 4 Configuration Commands sms-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 264 smtp-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 265 snmp-trap. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 267 snmp-v2-community. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 268 snmp-v3-user . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 270 subpackages . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 272 support-admin . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 273 syslog-server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 274 usb-software. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 276 user-agent-blacklist . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 277 user-defined-app . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 278 user-role . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 279 user-traffic-profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 281 vlan-pooling . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 285 web-authentication . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 287 wechat . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 288 wlan . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 290 wlan-group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 302 wlan-scheduler . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 303 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 7 Contents 5 Debug Commands debug . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 306 all-log-level . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 307 ap-subnet-discovery . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 308 apcli . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 308 dataplane . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 310 delete . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 311 diagnostic . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 311 display-format. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 313 do. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 314 dpcli . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 315 end . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 315 exit . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 316 export log . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 316 help . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 317 no all-log-level. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 317 no ap-subnet-discovery . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 318 no output-format. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 318 no save. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 318 no schedule . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 319 no screen-pagination . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 319 no sslv3 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 320 no strict-wfa-compliance. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 320 no web-backdoor . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 321 no web-debug . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 321 output-format . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 322 save . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 322 screen-pagination . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 322 6 Setup Commands rbd . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 324 rbddump. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 324 setup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 326 7 Show Commands show admin-activity . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 330 show alarm . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 331 show ap . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 331 show ap-stats. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 332 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 8 Contents show backup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 335 show backup-config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 336 show backup-config-state . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 337 show backup-network . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 337 show backup-schedule. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 338 show backup-state . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 338 show backup-upgrade-state. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 339 show client . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 339 show clock . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 340 show cluster . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 341 show cluster-node . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 341 show cluster-state . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 342 show control-plane-stats . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 342 show counter . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 344 show cpuinfo . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 345 show dhcp-relay-stats . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 346 show diskinfo . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 346 show event . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 347 show history . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 347 show interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 349 show ip. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 350 show license . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 351 show meminfo . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 352 show ntp . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 353 show radius-proxy-stats . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 353 show report-result. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 354 show rogue-aps . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 355 show running-config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 356 show service. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 363 show snapshot-disk-state. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 364 show upgrade-history . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 365 show upgrade-state . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 365 show version. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 366 8 System Commands ?. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . backup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . backup config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . backup network . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 367 369 369 370 9 Contents backup schedule . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 370 backup-upgrade . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 371 cluster in-service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 372 config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 372 copy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 373 copy backup. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 374 copy backup-config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 374 copy backup-network . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 375 copy client . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 375 copy report-result . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 376 copy ftp-url . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 376 curl . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 377 delete backup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 377 delete backup-config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 378 delete backup-network . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 378 delete client . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 379 diagnostic . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 379 enable. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 382 enable. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 382 exit . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 383 help . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 383 logout . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 384 no service . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 384 patches . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 385 ping . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 386 ping6 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 387 reload . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 388 reload ap . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 388 reload now . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 389 remote ap-cli . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 389 restore . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 390 restore config . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 390 restore local . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 391 restore network. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 391 service restart . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 392 service start . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 392 set-factory . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 393 shutdown . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 395 shutdown now . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 395 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 10 Contents snapshot disk . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 396 traceroute . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 396 upgrade . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 398 Index SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 11 About This Guide This SmartZone™ (SZ) 100 and Virtual SmartZone Essentials (vSZ-E) Command Line Interface Reference Guide contains the syntaxes and commands for configuring and managing the SZ-100/vSZ-E (collectively referred to as “the controller” throughout this guide) from the command line interface. This guide is written for service operators and system administrators who are responsible for managing, configuring, and troubleshooting Ruckus Wireless devices. Consequently, it assumes a basic working knowledge of local area networks, wireless networking, and wireless devices. NOTE If release notes are shipped with your product and the information there differs from the information in this guide, follow the instructions in the release notes. Most user guides and release notes are available in Adobe Acrobat Reader Portable Document Format (PDF) or HTML on the Ruckus Wireless Support Web site at https://support.ruckuswireless.com/contact-us. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 12 About This Guide Document Conventions Document Conventions Table 1 and Table 2 list the text and notice conventions that are used throughout this guide. Table 1. Text conventions Convention Description monospace Represents information as it [Device name]> appears on screen monospace bold Represents information that [Device name]> set you enter ipaddr 10.0.0.12 default font bold Keyboard keys, software buttons, and field names On the Start menu, click All Programs. italics Screen or page names Click Advanced Settings. The Advanced Settings page appears. Table 2. Example Notice conventions Notice Type Description NOTE Information that describes important features or instructions CAUTION! Information that alerts you to potential loss of data or potential damage to an application, system, or device WARNING! Information that alerts you to potential personal injury Related Documentation For a complete list of documents that accompany this release, refer to the Release Notes. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 13 About This Guide Documentation Feedback Documentation Feedback Ruckus Wireless is interested in improving its documentation and welcomes your comments and suggestions. You can email your comments to Ruckus Wireless at: docs@ruckuswireless.com When contacting us, please include the following information: • Document title • Document part number (on the cover page) • Page number (if appropriate) For example: • Ruckus Wireless SmartZone 100 Administrator Guide (Release 3.1.1) • Part number: 800-70944-001 • Page 88 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 14 Introduction to the Controller Command Line Interface 1 In this chapter: • Overview of the Controller Command Line Interface • Accessing the Command Line Interface SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 15 Introduction to the Controller Command Line Interface Overview of the Controller Command Line Interface Overview of the Controller Command Line Interface The Controller command line interface (CLI) is a software tool that enables you to configure and manage the controller. Using the command line interface, you can issue commands from an operating system prompt, such as the Microsoft Windows command prompt or a Linux operating system terminal. Each command performs a specific action for configuring device settings or returning information about the status of a specific device feature. Accessing the Command Line Interface The controller has a built-in command line interface (CLI) that you can use to configure controller settings and manage access points. This section describes the requirements and the procedure for accessing the controller’s CLI. What You Will Need To access the controller CLI, you will need the following: 1 A computer that you want to designate as administrative computer 2 A network connection to the controller (if you want to use an SSH connection) or an RS-232 serial to RJ45 cable (if you want to use a serial connection) 3 An SSH (secure shell) client Connect the Administrative Computer to the Controller Connect the administrative computer to the controller either through the network or directly using an RS-232 serial to RJ45 cable. 1 If you want to use an SSH connection, connect the administrative computer to the same subnet or broadcast domain as the Management (Web) interface of the controller. 2 If you want to use a serial connection, make sure that both the administrative computer and the controller are both powered on. And then, do the following: • Connect the RJ45 end of the cable to the port labeled |O|O| (console port) on the controller. See Figure 1 for the location of the console port. • Connect the RS-232 end of the cable to a COM port on the administrative computer. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 16 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 1. Location of console port Start and Configure the SSH Client Before starting this procedure, make sure that the SSH client is already installed on the administrative computer. NOTE: The following procedure describes how to use PuTTY, a free and open source telnet/SSH client, to access the controller CLI. If you are using a different SSH client, the procedure may be slightly different (although the connection settings should be the same). For more information on PuTTY, visit www.putty.org. See the following sections depending on your connection method: • Using SSH Connection • Using Serial Connection SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 17 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Using SSH Connection If you have connected the administrative computer to the same subnet or broadcast domain as the Management (Web) interface of the controller, follow these steps to start and configure the SSH client. 1 Start PuTTY. The PuTTY configuration dialog box appears, showing the Session screen as seen in Figure 2. 2 In Connection type, select SSH. Figure 2. Selecting SSH as a connection type 3 Enter the IP address of the Management (Web) interface of the controller in the Host Name (or IP address) field as seen in Figure 2. 4 Click Open. The PuTTY console appears and displays the login prompt. See Figure 6. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 18 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Using Serial Connection If you have connected the administrative computer to the console port on the controller using an RS-232 serial to RJ45 cable, follow these steps to start and configure the SSH client. 1 Start PuTTY. The PuTTY Configuration dialog box appears, showing the Session screen as seen in Figure 3. 2 In Connection type, select Serial if you are connecting via serial cable. Figure 3. Selecting serial as a connection type 3 Under Category, click Connection > Serial. The serial connection options appear on the right side of the dialog box, displaying PuTTY’s default serial connection settings. See Figure 4. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 19 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 4. PuTTy’s default serial connection setting 4 Configure the serial connection settings as follows. See Figure 5. • Serial line to connect to: Type the COM port name to which you connected the RS-232 cable. • Bits per second: 115200 • Data bits: 8 • Stop bits: 1 • Parity: None • Flow control: None SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 20 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 5. PuTTY’s serial connection settings for connecting to the controller 5 Click Open. The PuTTY console appears and displays the login prompt as seen in Figure 6. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 21 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 6. PuTTY console displaying the login prompt You have completed configuring the SSH client to connect to the controller CLI. Log On to CLI The following describes the process for log on to the CLI. • Log on to the controller using putty/Xssh (any other application) using the user credentials of login name and password as given. NOTE: You cannot use 'admin' as a password, which is used during the controller installation procedure. • The Ruckus Wireless controller CLI welcome message appears with the CLI prompt as seen in Figure 7. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 22 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 7. Welcome to SmartZone • You are now logged into the controller CLI as a user with limited privileges by looking at the CLI prompt. If you are in limited mode, the prompt appears as ruckus> (with a greater than sign). To view a list of commands that are available at the root level or user mode, enter help or? as seen in Figure 7 and Figure 8. NOTE: To change the CLI prompt to a privileged mode, see step 5. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 23 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 8. Using Show Commands • As a user with limited privileges, you can view a history of commands that were previously executed and ping a device as seen in Figure 9. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 24 Introduction to the Controller Command Line Interface Accessing the Command Line Interface Figure 9. Using the Ping command • If you want to run more commands, you need to switch to privileged mode by entering enable and the password at the root prompt as seen in Figure 10. The prompt changes from ruckus> to ruckus# (with a pound sign) as seen in Figure 10. Refer to enable command for details. Figure 10. Changing to privileged mode SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 25 2 Configuration Commands This chapter describes the commands that you can use to configure, enable, and disable various controller components. The following table lists the commands. NOTE: For easy access and reading, the configuration chapter has been split into three chapters based on the alphabetical order of commands. Table 3. Configuration commands config ad-service admin admin-radius ap ap-autoapprove ap-autotagging ap-cert-check ap-controlmgmt-tos ap-heartbeat ap-portal-cert ap-root-ca ap-sci bonjour-gateway bonjour-policy bridge-profile cert-store change password clock cluster-ip-list commonsettings device-policy diffserv do ap-group dp-group config To execute commands in configuration mode, you need to change the mode to: ruckus(config)# Example SZ100-Node1# SZ100-Node1# config SZ100-Node1(config)# SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 26 Configuration Commands ad-service ad-service To create or update the active directory service configuration, use the following command: ruckus(config)# ad-service Once you enter the config-admin context, you can configure the rest of the administrator’s profile (see example below). Syntax Description This command uses the following syntax: name: Active service directory name Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ad-service ads SZ100-Node1(config-ad-service)# Related Commands Table 5 lists the related ad-service configuration commands. Table 4. Commands related to ruckus(config-ad-service) Syntax and Type Parameters (if any) ruckus(config-ad-service)# admin- domain-name Type: Privileged ruckus(config-ad-service)# admin- password Type: Privileged ruckus(config-ad-service)# description Description Sets the administrator domain name. This field is applicable on executing the group attribute command. Sets the administrator domain password. This field is applicable on executing the group attribute command. Sets the description Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 27 Configuration Commands ad-service Table 4. Commands related to ruckus(config-ad-service) Syntax and Type Parameters (if any) ruckus(config-ad-service)# do Description Executes the do command. Type: Privileged ruckus(config-ad-service)# email Sets the user’s email details. Type: Privileged ruckus(config-ad-service)# end Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-ad-service)# exit Exits from the EXEC. Type: Privileged ruckus(config-ad-service)# friendly-name Sets friendly name for the active service directory. Type: Privileged ruckus(config-ad-service)# global- catalog Enables the global catalog support Type: Privileged ruckus(config-ad-service)# group- : Group attrs attribute value Type: Privileged Sets the user traffic profile mapping. : User Role ruckus(config-ad-service)# help Displays the help. Type: Privileged - Sets the primary server IP address Sets the primary service IP address. Sets the active directory service name. ruckus(config-ad-service)# no Disables the commands. Type: Privileged ruckus(config-ad-service)# port ruckus(config-ad-service)# ipaddress Type: Privileged ruckus(config-ad-service)# name Type: Privileged Sets the primary server port. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 28 Configuration Commands admin Table 4. Commands related to ruckus(config-ad-service) Syntax and Type Parameters (if any) Description ruckus(config-ad-service)# windows-domain-name Example: dc=domain, dc=ruckuswireless, dc=com Sets the windows domain name Sets the user’s job title. Type: Privileged ruckus(config-ad-service)# title Type: Privileged admin To create or update the administrator’s profile (including the email address, login ID and password), use the following command: ruckus(config)# admin Once you enter the config-admin context, you can configure the rest of the administrator’s profile (see example below). Syntax Description This command uses the following syntax: name: Administrator user name Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# admin joe SZ100-Node1(config-admin)# email joe@company.com SZ100-Node1(config-admin)# password admin!234 SZ100-Node1(config-admin)# phone 22870001 SZ100-Node1(config-admin)# real-name "Joe Admin" SZ100-Node1(config-admin)# title CTO SZ100-Node1(config-admin)# radius radius-1 SZ100-Node1(config-admin-radius)# ip 1.1.1.1 SZ100-Node1(config-admin-radius)# port 1813 SZ100-Node1(config-admin-radius)# realm tw1 SZ100-Node1(config-admin-radius)# shared-secret 11 SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 29 Configuration Commands admin Retype: ** SZ100-Node1(config-admin-radius)# exit SZ100-Node1(config-admin)# exit SZ100-Node1(config)# Related Commands Table 5 lists the related admin configuration commands. Table 5. Commands related to ruckus(config-admin) Syntax and Type Parameters (if any) ruckus(config-admin)# do Description Executes the do command. Type: Privileged ruckus(config-admin)# email Sets the user’s email details. Type: Privileged ruckus(config-admin)# end Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-admin)# exit Exits from the EXEC. Type: Privileged ruckus(config-admin)# help Displays the help. Type: Privileged ruckus(config-admin)# name Sets the account name. Sets the password for user. Sets the phone number of the user. Type: Privileged ruckus(config-admin)# password Type: Privileged ruckus(config-admin)# phone Type: Privileged ruckus(config-admin)# real-name Sets the real name. Type: Privileged ruckus(config-admin)# role Sets the user role. Sets the user’s job title. Type: Privileged ruckus(config-admin)# title Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 30 Configuration Commands admin-radius admin-radius To configure the RADIUS server for administrators use the following command: ruckus(config)# admin-radius Syntax Description This command uses the following syntax: name: RADIUS server name Default This command has no default settings. Command Mode Config Example SZ100-Node1(config-admin)# radius SZ100-Node1(config-admin-radius)# SZ100-Node1(config-admin-radius)# SZ100-Node1(config-admin-radius)# SZ100-Node1(config-admin-radius)# Retype: ** SZ100-Node1(config-admin-radius)# radius-1 ip 1.1.1.1 port 1813 realm tw1 shared-secret 11 exit SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 31 Configuration Commands admin-radius Related Commands Table 6 lists the related admin-radius-service configuration commands. Table 6. Commands related to ruckus(config-radius-service) Syntax and Type Parameters (if any) Description ruckus(config-admin-radius)# backup ip : Sets the IP address of secondary RADIUS server Enables backup of RADIUS server. Type: Privileged port : Sets the port of secondary RADIUS server shared-secret: Sets the shared secret of secondary RADIUS server request-timeout : Sets the request timeout seconds for failover policy max-retry : Sets the maximum number of retries for failover policy retry-prilnvl : Sets the reconnect primary minutes for failover policy ruckus(config-admin-radius)# do Executes the do command. Type: Privileged ruckus(config-admin-radius)# end Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-admin-radius)# exit Exits from the EXEC. Type: Privileged ruckus(config-admin-radius)# help Displays the help. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 32 Configuration Commands admin-radius Table 6. Commands related to ruckus(config-radius-service) Syntax and Type Parameters (if any) Description ruckus(config-admin-radius)# ip Sets the IP addresses of the primary RADIUS server. Sets the RADIUS server name. Type: Privileged ruckus(config-admin-radius)# name Type: Privileged ruckus(config-admin-radius)# no backup Disables the backup RADIUS support. Type: Privileged ruckus(config-admin-radius)# port Type: Privileged ruckus(config-admin-radius)# realm Type: Privileged ruckus(config-admin-radius)# service Type: Privileged ruckus(config-admin-radius)# shared-secret Type: Privileged Sets the port addresses of the primary RADIUS server. Multiple realms Sets the realms. supported. Use a comma (,) to separate realms (example:home1,home2) : Multiple Sets the services. services supported. Use a comma (,) to separate services (example:home1,home2) Shared Sets the shared secret of the primary RADIUS server. secret between 1 and 255. ruckus(config-admin-radius)# test Type: Privileged Tests the RADIUS server based on the user credentials. ruckus(config-admin-radius)# type [ radius | tacacs ]] Sets the admin authentication type, Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 33 Configuration Commands ap ap To update the AP configuration, use the following commands: ruckus(config)# ap ruckus(config)# ap pre-prov > > ruckus(config)# ap swap > > Syntax Description This command uses the following syntax: lock : AP MAC address lock: Lock AP pre-prov : AP MAC address pre-prov: Update Pre-provision configuration swap : AP MAC address swap: Update Swap configuration trigger-swap : AP MAC address trigger-swap: Trigger swap action approve : AP MAC address approve: Approve AP to go ahead registration process Default This command has no default settings. Command Mode Config Example ruckus(config)# ap mac SZ100-Node1(config)# ap A1:87:45:34:56:FE ruckus(config)# ap pre-prov > SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 34 Configuration Commands ap SZ100-Node1(config)# ap pre-prov import ftp:// ruckus:ruckus1!@172.19.7.100/backup/AP_ad8745345 ruckus(config)# ap swap > SZ100-Node1(config)# ap swap export ftp:// ruckus:ruckus1!@172.19.7.100 Related Commands • Table 7 lists the related ap profile configuration commands. • Table 8 lists the related ap model configuration commands. • Table 10 lists the related ap model lan1 configuration commands. Table 7 lists the related ap profile configuration commands. Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) Description ruckus(config-ap)# admin Sets the administrative logon credentials. Sets the administrative mode to either locked or unlocked. Sets the access point administration login credentials. Sets the model specification (overrides the zone configuration). Sets the access point administrative password. Sets the user location information of LAC or TAC. Type: Privileged ruckus(config-ap)# admin-mode Type: Privileged ruckus(config-ap)# ap-logon Type: Privileged ruckus(config-ap)# ap-model Type: Privileged ruckus(config-ap)# ap-password Type: Privileged ruckus(config-ap)# area-code Type: Privileged ruckus(config-ap)# bonjourgateway Enables the bonjour gateway. Type: Privileged ruckus(config-ap)# bonjour-policy Enables the bonjour policy. Type: Privileged ruckus(config-ap)# channelevaluation-interval Type: Privileged :The interval value (Range: 60-3600 sec) SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B Sets the channel evaluation interval. 35 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) ruckus(config-ap)# channel-select- 2.4g ${value}: 2.4GHz mode radio Description Sets a mode to automatically adjust AP channels. Type: Privileged 5g ${value}: 5GHz radio ruckus(config-ap)# channelflymtbc 2.4g : 2.4GHz Set MTBC value of ChannelFly radio Type: Privileged : MTBC value (Range:100~1440) 5g : 5GHz radio SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 36 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) Description ruckus(config-ap)# clientadmission-control 2.4g Enables the client admission control. Type: Privileged 2.4g minClientCount 5g Min Client Count (Default: 10) 2.4g maxRadioLoad Max Radio Load (Default: 75%) 2.4g minClientThroughput : Min Client Throughput (Default: 0.0Mbps) 5g minClientCount Min Client Count (Default: 20) 5g maxRadioLoad Max Radio Load (Default: 75%) 5g minClientThroughput Min Client Throughput (Default: 0.0Mbps) ruckus(config-ap)# description Sets the model specification (overrides the zone configuration). [ ipv6 | ipv4 ] Sets the device IP mode. Type: Privileged ruckus(config-ap)# device-ipmode Type: Privileged ruckus(config-ap)# do Executes the do command. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 37 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) ruckus(config-ap)# end Description Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-ap)# exit Exits from the EXEC. Type: Privileged ruckus(config-ap)# gps Sets the GPS coordinates to latitude and longitude values. Sets the GPS coordination latitude. Type: Privileged Sets the GPS coordination longitude. ruckus(config-ap)# help Displays the help. Type: Privileged ruckus(config-ap)# gps-latitude Type: Privileged ruckus(config-ap)# gps-longitude Type: Privileged ruckus(config-ap)# hotspot20 Type: Privileged [ swe | cze | spa Sets the hotspot 2.0 settings. | eng | chi | ger | fre | jpn | dan | tur ] : Name swe: Swedish cze: Czech spa: Spanish eng: English chi: Chinese ger: German fre: French jpn: Japanese dan: Danish tur: Turkish ruckus(config-ap)# ip Type: Privileged address and secondary DNS servers. name-server secondary SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 38 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) ruckus(config-ap)# ip6 [ keep | auto ]: Retains the Sets the AP IPv6 address. AP settings Type: Privileged Description static Sets the location. Sets the additional information for location. [ disable | mesh | root | auto ] Sets the mesh mode to either: Type: Privileged ruckus(config-ap)# locationadditional-info Type: Privileged ruckus(config-ap)# mesh Type: Privileged • disable: Disable • mesh: Mesh AP • root: Root AP • auto: Auto ruckus(config-ap)# model Sets the model specifications. It overrides the zone configuration. Type: Privileged ruckus(config-ap)# name Sets the AP name. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 39 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) Description ruckus(config-ap)# no admin Disables the configuration. Type: Privileged bonjour-gateway channel-evaluationinterval channel-select-mode client-admission-control description gps ...................................continued hotspot20 ip location location-additional-info ruckus(config-ap)# no model Type: Privileged override-ap-mgmt-vlan Disables the configuration. channel-select-mode override-clientadmission-control override-smart-mon override-syslog-opt override-zone-location override-zone-locationadditional-info radio smart-mon swap-in-ap uplink-ap venue-profile ruckus(config-ap)# override-apmgmt-vlan Override AP Management VLAN. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 40 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) Description ruckus(config-ap)# overridechannel-select-mode <2.4g> : 2.4 GHz radio Type: Privileged Overrides the auto channel selection mode and channelFly MTBC. ruckus(config-ap)# override-client- <2.4g> <5g> admission-control Overrides the client admission control. <5g> : 5 GHz radio Type: Privileged ruckus(config-ap)# override-smartmon Overrides the smart monitor. Type: Privileged ruckus(config-ap)# overridesyslog-opt Override Syslog options Type: Privileged ruckus(config-ap)# override-zonelocation Overrides the zone location settings. Type: Privileged ruckus(config-ap)# override-zonelocation-additional-info Overrides the zone’s additional information setting on location. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 41 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) Description ruckus(config-ap)# radio 2.4g channel Sets the radio channels. Type: Privileged 5g channel 2.4g channelization 5g channelization 2.4g tx-power 5g tx-power 2.4g wlan-service 5g wlan-service 2.4g wlan-group 5g wlan-group 2.4g roam [ enable | disable ] 5g roam [ enable | disable ] ruckus(config-ap)# smart-mon interval Enables the smart monitor. Type: Privileged threshold ruckus(config-ap)# swap-in-ap Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B Sets the AP Mac IP address for swap-in. 42 Configuration Commands ap Table 7. Commands related to ruckus(config-ap). Syntax and Type Parameters (if any) ruckus(config-ap)# syslog enable Sets the syslog server. Enable the syslog server Type: Privileged Description enable [ Local2 | Keep Original | Local1 | Local5 | Local6 | Local0 | Local7 | Local3 | Local4 ] [ Error | Critical | Warning | All | Alert | Notice | Info | Emergency ] disable - Disables the syslog server ruckus(config-ap)# uplink [ smart | manual ] Type: Privileged ruckus(config-ap)# uplink-ap Sets the uplink to manual access point. Type: Privileged ruckus(config-ap)# venue-profile Sets the uplink selection to either smart or manual. Sets the venue profile Moves the access point to another zone. Type: Privileged ruckus(config-ap)# zone Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 43 Configuration Commands ap Table 8 lists the related to ap-model configuration commands. Table 8. Commands related to ruckus(config-ap-model) Syntax and Type Parameters (if any) ruckus(config-ap-model)# do Description Executes the do command. Type: Privileged ruckus(config-ap-model)# end Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-ap-model)# exit Exits from the EXEC. Type: Privileged ruckus(config-ap-model)# ext-ant 2.4g - 2.4 with Enables the external antenna. DBI number Type: Privileged 2.4gg [ 3 | 2 ] 3/2 antennas 5g - 5g with DBI number 5gg [ 2 | 3 ] 5gg with 2/3 antennas ruckus(config-ap-model)# help Displays the help. Type: Privileged ruckus(config-ap-model)# internalheater Enables the internal heater. Type: Privileged ruckus(config-ap-model)# lan1 ruckus(config-ap-model)# lan2 Sets the LAN configurations from 1 to 5. ruckus(config-ap-model)# lan3 ruckus(config-ap-model)# lan4 ruckus(config-ap-model)# lan5 Type: Privileged ruckus(config-ap-model)# led Enables the status of LEDs. Type: Privileged ruckus(config-ap-model)# ledmode Sets the LED mode. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 44 Configuration Commands ap Table 8. Commands related to ruckus(config-ap-model) Syntax and Type Parameters (if any) ruckus(config-ap-model)# lldp Description Enables link layer discovery protocol. Type: Privileged ruckus(config-ap-model)# lldp-ad- interval Sets the LLDP advertise interval. Type: Privileged ruckus(config-ap-model)# lldphold-time Sets the LLDP hold time. Type: Privileged ruckus(config-ap-model)# lldpmgmt Enables LLDP management IP TLV. Type: Privileged ruckus(config-ap-model)# no ext-ant Type: Privileged internal-heater Disables or deletes the settings that have been configured. lan1 lan2 lan3 lan4 lan5 led lldp lldp-mgmt poe-out-port radio-band usb Enables the PoE out port. ruckus(config-ap-model)# poeout-port Type: Privileged ruckus(config-ap-model)# radioband ${value} Switches the radio band. [ enable | disable] Sets the USB port for a specific AP model. Type: Privileged ruckus(config-ap-model)# usb Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 45 Configuration Commands ap Table 9 lists the related to ap-model-lan1 configuration commands. Table 9. Commands related to ruckus(config-ap-model-lan1) Syntax and Type Parameters (if any) Description ruckus(config-ap-model-lan1)# 8021x <802.1x-type> Sets 802.1x. Sets the authentication service configurations. Sets the authentication service configurations. Type: Privileged ruckus(config-ap-model-lan1)# acct-service Type: Privileged ruckus(config-ap-model-lan1)# auth-service Type: Privileged ruckus(config-ap-model-lan1)# do Executes the do command. Type: Privileged ruckus(config-ap-model-lan1)# end Ends the current configuration session and returns to privileged EXEC mode. Type: Privileged ruckus(config-ap-model-lan1)# exit Exits from the EXEC. Type: Privileged ruckus(config-ap-model-lan1)# help Displays the help. Type: Privileged ruckus(config-ap-model-lan1)# no overwrite Does not permit overwriting. Type: Privileged Sets the MAC bypass. ruckus(config-ap-model-lan1)# mac-bypass Type: Privileged ruckus(config-ap-model-lan1)# members Sets the AP model configurations. Type: Privileged ruckus(config-ap-model-lan1)# no acct-service Type: User mac-bypass SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B Disables or deletes the settings that have been configured. 46 Configuration Commands ap-auto-approve Table 9. Commands related to ruckus(config-ap-model-lan1) Syntax and Type Parameters (if any) Description ruckus(config-ap-model-lan1)# profile : Ethernet port profile. Sets the Ethernet port profile. ruckus(config-ap-model-lan1)# supplicant mac Sets the supplicant. Type: Privileged custom ruckus(config-ap-model-lan1)# type [trunk-port | access-port | Sets the port type. general-port] Type: Privileged Type: Privileged ruckus(config-ap-model-lan1)# untag-id Sets the VLAN untag ID. : VLAN members Sets the VLAN members. Type: Privileged ruckus(config-ap-model-lan1)# vlan-members Type: Privileged ap-auto-approve To enable auto approve, use the following command: ruckus(config)# ap-auto-approve Syntax Description This command has no arguments or keywords Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-auto-approve Successful operation SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 47 Configuration Commands ap-auto-tagging ap-auto-tagging To setup critical access point auto tagging rules or to enable auto tagging critical access points, use the following command: ruckus(config)# ap-auto-tagging Syntax Description This command has no arguments or keywords Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-auto-tagging SZ100-Node1(config-ap-auto-tagging)# Related Commands Table 10 lists the related to ap-auto-tagging configuration commands. exi Table 10. Commands related to ruckus(config-ap-auto-tagging) Syntax and Type Parameters (if any) ruckus(config-ap-auto-tagging)# do Description Executes the do command. Type: Privileged ruckus(config-ap-auto-tagging)# enable Enables the auto tagging for critical APs. Type: Privileged ruckus(config-ap-auto-tagging)# end Type: Privileged ruckus(config-ap-auto-tagging)# exit Ends the current configuration session and returns to privileged EXEC mode. Exits from the EXEC. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 48 Configuration Commands ap-cert-check Table 10. Commands related to ruckus(config-ap-auto-tagging) Syntax and Type Parameters (if any) ruckus(config-ap-auto-tagging)# help Description Displays the help. Type: Privileged ruckus(config-ap-auto-tagging)# no Disables the auto tagging for critical APs. Type: Privileged ruckus(config-ap-auto-tagging)# rule Type: Privileged ruckus(config-ap-auto-tagging)# threshold - Traffic Selects the auto tagging rule. To bytes exceeds threshold view this command the ap-autorule tagging should be enabled. Disables the auto tagging for critical APs. To view this command the ap-auto-tagging should be enabled. [m|g] Sets the unit to either mega bytes or giga bytes. Type: Privileged ruckus(config-ap-auto-tagging)# unit Type: Privileged ap-cert-check To enable the access point certificate check, use the following command: ruckus(config)# ap-cert-check Syntax Description This command has no arguments or keywords. Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-cert-check Successful operation SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 49 Configuration Commands ap-control-mgmt-tos ap-control-mgmt-tos To enable the access control and management traffic type of service and values, use the following command: ruckus(config)# ap-control-mgmt-tos Syntax Description This command has no arguments or keywords. Default This command uses the following syntax: value: TOS value Command Mode Config Example SZ100-Node1(config)# ap-control-mgmt-tos 10 ap-group To create or update the AP group configuration, use the following command: ruckus(config)# ap-group Syntax Description This command has no arguments or keywords. Default This command uses the following syntax: name: Name of the AP group Command Mode Config Example SZ100-Node1(config)# ap-group name1 Related Commands • Table 11 lists the related to ap-group configuration commands. • Table 12 lists the related ap-group-lldp configuration commands. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 50 Configuration Commands ap-group • Table 13 lists the related ap-group-port-setting configuration commands. • Table 14 lists the commands related ap-model configuration commands. • Table 15 lists the related ap-model-lan1 configuration commands. Table 11 lists the related to ap-group configuration commands. Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) ruckus(config-ap-group)# channel 2.4g ${value} Type: Privileged Description Sets the channel. 5g indoor ${value} 5g outdoor ${value} ruckus(config-ap-group)# channel-evaluation-interval Type: Privileged ruckus(config-ap-group)# channel-range Type: Privileged : The interval value (Range: 60~3600 sec) Sets the channel evaluation interval. • 2.4g [ ] Sets the channel range • 5g indoor [ ] • 5g outdoor [ ] ruckus(config-ap-group)# channel-select-mode 2.4g ${value} 5g ${value} Sets a mode to automatically adjust AP channels ruckus(config-ap-group)# channelfly-mtbc 2.4g Set the MTBC value of ChannelFlu Type: Privileged is the MTBC value (Range: 100~1440) ruckus(config-ap-group)# channelization 2.4g [ 20 | 40 ] Type: Privileged 5g Sets the channelization. 5g [ 40 | 20 ] Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 51 Configuration Commands ap-group Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) Description ruckus(config-ap-group)# clientadmission-control 2.4g Enables the client admission control. Type: Privileged 2.4g minClientCount 5g Min Client Count (Default: 10) 2.4g maxRadioLoad Max Radio Load (Default: 75%) 2.4g minClientThroughput : Min Client Throughput (Default: 0.0Mbps) ...................................continued ruckus(config-ap-group)# clientadmission-control 5g minClientCount Type: Privileged Min Client Count (Default: 20) Enables the client admission control. 5g maxRadioLoad Max Radio Load (Default: 75%) 5g minClientThroughput Min Client Throughput (Default: 0.0Mbps) ruckus(config-ap-group)# description Sets the description. Type: Privileged ruckus(config-ap-group)# do Sets the do command Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 52 Configuration Commands ap-group Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) ruckus(config-ap-group)# end Description Type: Privileged Ends the current configuration session and returns to the privileged EXEC mode. ruckus(config-ap-group)# exit Exits from the EXEC. Type: Privileged ruckus(config-ap-group)# external-antenna 5g [ disable | Sets the external antenna for enable ] specific AP model. Type: Privileged 5g gain 2.4g gain 2.4g [ enable | disable ] 2.4g [ 3antennas | 2-antennas ] 5g [ 3antennas | 2-antennas ] ruckus(config-ap-group)# help Displays the help message. Type: Privileged ruckus(config-ap-group)# gps Sets the GPS coordinates. Type: Privileged ruckus(config-ap-group)# internal- [ enable | heater disable ] Sets the internal heater for specific AP model. Type: Privileged ruckus(config-ap-group)# lbs Enables the location based service. Type: Privileged Sets the location based service. ruckus(config-ap-group)# lbsservice Type: Privileged ruckus(config-ap-group)# ledmode Sets the LED mode for specific AP model. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 53 Configuration Commands ap-group Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) Description ruckus(config-ap-group)# lldp [ enable | disable ] Sets the LLDP for a specific AP model. Type: Privileged ruckus(config-ap-group)# location Sets the location. Type: Privileged ruckus(config-ap-group)# location-additional-info Sets the additional information for location. Type: Privileged Sets the AP group member. It adds move-to a new access point to current AP group. remove ruckus(config-ap-group)# member add Type: Privileged The AP Mac address removes the access point from the current AP group and moves it to other AP group. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 54 Configuration Commands ap-group Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) Description ruckus(config-ap-group)# no channel 2.4g Type: Privileged channel 5g indoor Disables / deletes the configuration settings. channel 5g outdoor channel-evaluationinterval channel-range channel-select-mode ..................continued channelization 2.4g channelization 5g client-admission-control description external-antenna 5g external-antenna 2.4g external-antenna ${model} gps internal-heater lbs led-mode lldp location location-additional-info override-ap-mgmt-vlan override-channel-selectmode override-client-admissioncontrol SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 55 Configuration Commands ap-group Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) Description ruckus(config-ap-group)# no override-lbs Type: Privileged override-zone-location Disables / deletes the configuration settings. override-zone-locationadditional-info poe-operating-mode poe-out port-setting radio-band status-leds tx-power 2.4g tx-power 5g usb-port usb-software venue-profile wlan-group 2.4g wlan-group 5g ruckus(config-ap-group)# override-ap-mgmt-vlan Overrides AP Management VLAN 2.4g Overrides Auto Channel Selection Mode and ChannelFlyMTBC Type: Privileged ruckus(config-ap-group)# override-channel-select-mode 5g Type: Privileged ruckus(config-ap-group)# override-client-admission-control 2.4g 5g Overrides the client admission control settings. Type: Privileged ruckus(config-ap-group)# override-lbs Overrides the location based service to zone settings. Type: Privileged ruckus(config-ap-group)# override-zone-location Overrides the zone location settings. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 56 Configuration Commands ap-group Table 11. Commands related to ruckus(config-ap-group) Syntax and Type Parameters (if any) ruckus(config-ap-group)# override-zone-location-additionalinfo Description Overrides the zone’s additional information setting on location. Type: Privileged ruckus(config-ap-group)# poeoperating-mode Switch the PoE Operating Mode for specific AP model Type: Privileged ruckus(config-ap-group)# poe-out [ enable | disable ] Type: Privileged Sets the PoE out port for a specific AP model. ruckus(config-ap-group)# portsetting Sets the port settings for specific AP model. [ 2.4g | 5g ] Switches the radio band for a specific AP model. [ enable | disable ] Sets the status LED for specific AP model. ruckus(config-ap-group)# txpower 2.4g ${value} Sets the TX power adjustment. Type: Privileged 5g ${value} ruckus(config-ap)# usb-port [ enable | disable ] Sets the USB port for a specific AP model. AP model name Sets the USB port for a specific AP model. Type: Privileged ruckus(config-ap-group)# radioband Type: Privileged ruckus(config-ap-group)# statusleds Type: Privileged Type: Privileged ruckus(config-ap)# usb-software Type: Privileged AP USB software name ruckus(config-ap)# venue-profile Sets the venue profile 2.4g Sets the WLAN group configurations. Type: Privileged ruckus(config-ap-group)# wlangroup 5g Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 57 Configuration Commands ap-group Table 12 lists the related ap-group-lldp configuration commands. Table 12. Commands related to ruckus(config-ap-group-lldp) Syntax and Type Parameters (if any) Description ruckus(config-ap-group-lldp)# lldp-ad-interval Sets the LLDP advertise interval in seconds from the range 1 to 300. Type: Privileged Sets the LLDP hold time in seconds from the range 60 to 1200. ruckus(config-ap-group-lldp)# lldp-mgmt Enables the LLDP management IP TLV. Type: Privileged ruckus(config-ap-group-lldp)# lldp-hold-time Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 58 Configuration Commands ap-group Table 13 lists the related ap-group-port-setting configuration commands. Table 13. Commands related to ruckus(config-ap-group-port) Syntax and Type Parameters (if any) ruckus(config-ap-group-portsetting)# do Description Executes the do command. Type: Privileged ruckus(config-ap-group-portsetting)# dot1x authsvr [ ] Sets the 802.1x role. Type: Privileged accsvr mac-auth-bypass [ true | false ] supplicant user-name [ password supplicant mac ruckus(config-zone-ap-groupport-setting)# exit Exits from the EXEC. Type: Privileged ruckus(config-zone-ap-groupport-setting)# help Displays the help. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 59 Configuration Commands ap-group Table 13. Commands related to ruckus(config-ap-group-port) Syntax and Type Parameters (if any) Description ruckus(config-zone-ap-groupport-setting)# lan Enables or disable specific port. Type: Privileged uplink [ general | access | trunk ] untag member dot1x [ auth-macbased | disabled | authport-based | supplicant ] ruckus(config-zone-ap-groupport-setting)# no dot1x accsvr lan Disables or deletes the configuration settings. Type: Privileged Table 14 lists the commands related ap-model configuration commands. Table 14. Commands related to (config-ap-model) Syntax and Type Parameters (if any) ruckus(config-ap-model)# do Description Executes the do command. Type: Privileged ruckus(config-zone-ap-model)# end Ends the current configuration session and returns to privileged EXEC mode. Type: Privileged ruckus(config-zone-ap-model)# exit Exits from the EXEC. Type: Privileged ruckus(config-ap-model)# ext-ant 2.4g Type: Privileged Sets the external antenna. 2.4gg [ 3 | 2 ] 5g 5gg [ 2 | 3 ] SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 60 Configuration Commands ap-group Table 14. Commands related to (config-ap-model) Syntax and Type Parameters (if any) ruckus(config-zone-ap-model)# help Description Displays the help. Type: Privileged ruckus(config-ap-model)# internalheater Enables international heater. Type: Privileged Sets the LAN configurations from 1 to 5. ruckus(config-ap-model)# lan1 ruckus(config-ap-model)# lan2 ruckus(config-ap-model)# lan3 ruckus(config-ap-model)# lan4 ruckus(config-ap-model)# lan5 Type: Privileged ruckus(config-ap-model)# led Enables the status of led. Type: Privileged ruckus(config-ap-model)# ledmode Sets the led mode description. Type: Privileged ruckus(config-ap-model)# lldp Enables the Link Layer Discovery Protocol (LLDP). Type: Privileged ruckus(config-ap-model)# lldp-ad- interval Sets the LLDP advertise interval. Type: Privileged ruckus(config-ap-model)# lldphold-time Sets the LLDP hold time. Type: Privileged ruckus(config-ap-model)# lldpmgmt Enables the LLDP management IP TLV. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 61 Configuration Commands ap-group Table 14. Commands related to (config-ap-model) Syntax and Type Parameters (if any) Description ruckus(config-ap-model)# no ext-ant Type: Privileged internal-heater Disables or deletes the settings that have been configured. lan1 lan2 lan3 lan4 lan5 led lldp lldp-mgmt poe-operating-mode poe-out-port radio-band usb usb-software ruckus(config-ap-model)# poeoperating-mode ${value} Switch the PoE mode. Type: Privileged ruckus(config-ap-model)# poeout-port Enables the PoE out port. Type: Privileged ${value} Switches the radio band. Type: Privileged [ enable | disable ] Sets the USB port for a specific AP model. ruckus(config-ap)# usb-software ${value} Sets the AP USB software package. ruckus(config-ap-model)# radioband Type: Privileged ruckus(config-ap)# usb-port Type: Privileged Table 15 lists the related ap-model-lan1 configuration commands. SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 62 Configuration Commands ap-group Table 15. Commands related to ruckus(config-ap-model-lan1) Syntax and Type Parameters (if any) Description ruckus(config-ap-model-lan1)# 8021x <8021x-type> Sets the 802.1x. Sets the accounting service configurations. Sets the authentication service configurations. Type: Privileged ruckus(config-ap-model-lan1)# acct-service Type: Privileged ruckus(config-ap-model-lan1)# auth-service Type: Privileged ruckus(config-ap-model-lan1)# do Executes the do command. Type: Privileged ruckus(config-ap-model-lan1)# end Ends the current configuration session and returns to privileged EXEC mode. Type: Privileged ruckus(config-ap-model-lan1)# exit Exits from the EXEC. Type: Privileged ruckus(config-ap-model-lan1)# help Displays the help. Type: Privileged ruckus(config-ap-model-lan1)# mac-bypass Sets the MAC authentication bypass. Type: Privileged ruckus(config-ap-model-lan1)# members Sets the members. Type: Privileged ruckus(config-ap-model-lan1)# no acct-service Type: Privileged mac-bypass Disables or deletes the settings that have been configured. ruckus(config-ap-model-lan1)# supplicant mac Sets the supplicant. Type: Privileged custom SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 63 Configuration Commands ap-group Table 15. Commands related to ruckus(config-ap-model-lan1) Syntax and Type Parameters (if any) Description ruckus(config-ap-model-lan1)# type [ trunk-port | access-port | Sets the port type. general-port ] Type: Privileged ruckus(config-ap-model-lan1)# vlan-untag-id Sets the VLAN untag ID. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 64 Configuration Commands ap-heartbeat ap-heartbeat To setup the access point heartbeat, use the following command: ruckus(config)# ap-heartbeat Syntax Description This command uses the following syntax: seconds: Interval in seconds, which the AP sends the heartbeat to the controller such as: 30, 60, 150 and 300 Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-heartbeat 30 ap-portal-cert To update the AP portal certificate configuration, use the following command: ruckus(config)# ap-portal-cert Syntax Description This command has no arguments or keywords. Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-portal-cert SZ100-Node1(config-ap-portal-cert)# SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 65 Configuration Commands ap-portal-cert Related Commands • Table 16 lists the related to ap-portal-cert configuration commands. • Table 17 lists the related to ap-portal-cert-generate-csr configuration commands. Table 16 lists the related to ap-portal-cert configuration commands. Table 16. Commands related to ruckus(config-ap-portal-cert) Syntax and Type Parameters (if any) ruckus(config-ap-portal-cert)# do Description Executes the do command. Type: Privileged ruckus(config-ap-portal-cert)# end Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-ap-portal-cert)# exit Exits from the EXEC. Type: Privileged ruckus(config-ap-portal-cert)# generate-csr Type: Privileged FTP URL, format: ftp:/ : @ [/ ] ruckus(config-ap-portal-cert)# help Generates the certificate signing request. Displays the help. Type: Privileged ruckus(config-ap-portal-cert)# upload-cert Type: Privileged Uploads the certificate. FTP URL, format: ftp:/ : @ [/ ] SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 66 Configuration Commands ap-portal-cert Table 17 lists the related to ap-portal-cert-generate-csr configuration commands. Table 17. Commands related to ruckus(config-ap-portal-cert-generate-csr) Syntax and Type Parameters (if any) Description ruckus(config-ap-portal-certgenerate-csr)# city Sets the city name. Sets the domain name. Sets the county. Sets the email address. Sets the organization name. Sets the state name. Sets the unit name. Type: Privileged ruckus(config-ap-portal-certgenerate-csr)# common-name Type: Privileged ruckus(config-ap-portal-certgenerate-csr)# country Type: Privileged ruckus(config-ap-portal-certgenerate-csr)# email Type: Privileged ruckus(config-ap-portal-certgenerate-csr)# organization Type: Privileged ruckus(config-ap-portal-certgenerate-csr)# state Type: Privileged ruckus(config-ap-portal-certgenerate-csr)# unit Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 67 Configuration Commands ap-root-ca ap-root-ca To update the AP root CA, use the following command: ruckus(config)# ap-root-ca Syntax Description This command uses the following syntax: ftp-url: AP Root CA file, FTP URL Format: ftp:// : @ / ) Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-root-ca ftp:// mahan:ruckus1!@172.19.7.100/backup/AP_ad87453456fe.csv ap-sci To enable the access point SCI, use the following command: ruckus(config)# ap-sci enable Syntax Description This command uses the following syntax: enable: Enables the AP SCI. Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# ap-sci enable ap-snmp To enable SNMP on AP, use the following command: SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 68 Configuration Commands app-denial-policy ruckus(config)# ap-snmp Syntax Description This command has no arguments or keywords. Default This command has no default settings. Command Mode Privileged Example SZ100-Node1(config)# ap-snmp app-denial-policy To create or update an Application Denial Policy, use the following command: ruckus(config)# app-denial-policy Syntax Description This command has the following parameter: : application name Default This command has no default settings. Command Mode Privileged Example SZ100-Node1(config)# app-denial-policy xyz Related Commands Table 20 lists the related app-denial-policy configuration commands. Table 18. Commands related to ruckus(config-app-denial-policy) Syntax and Type Parameters (if any) ruckus(config-app-denial-policy)# description Description Sets the description. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 69 Configuration Commands app-port-mapping Table 18. Commands related to ruckus(config-app-denial-policy) Syntax and Type Parameters (if any) ruckus(config-app-denial-policy)# rule Description Creates/Updates Application Denial Policy rule Type: Privileged ruckus(config-app-denial-policy)# rule no Removes Application Denial Policy rule. Type: Privileged app-port-mapping To create or update application port mapping, use the following command: ruckus(config)# app-port-mapping Syntax Description This command has the following parameter: : application name Default This command has no default settings. Command Mode Privileged Example SZ100-Node1(config)# app-port-mapping abc Related Commands Table 20 lists the related app-port-mapping configuration commands. Table 19. Commands related to ruckus(config-app-port-mapping) Syntax and Type Parameters (if any) Description ruckus(config-app-portmapping)# port : Port Sets the port. [tcp | udp] Sets the protocol Type: Privileged ruckus(config-app-portmapping)# protocol Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 70 Configuration Commands bonjour-gateway bonjour-gateway To enable the bonjour-gateway, use the following command: ruckus(config)# bonjour-gateway Syntax Description This command has no arguments or keywords. Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# bonjour-gateway Bonjour service is enabled bonjour-policy To create or update the bonjour policy, use the following command: ruckus(config)# bonjour-policy Syntax Description This command uses the following syntax: name: Name of the bonjour-policy Default This command has no default settings. Command Mode Config Example SZ100-Node1(config)# bonjour-policy SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 71 Configuration Commands bonjour-policy Related Commands Table 20 lists the related bonjour-policy configuration commands. Table 20. Commands related to ruckus(config-bonjour-policy) Syntax and Type Parameters (if any) Description ruckus(config-bonjour-policy)# description Sets the description. Type: Privileged ruckus(config-bonjour-policy)# do Executes the do command. Type: Privileged ruckus(config-bonjour-policy)# end Type: Privileged Ends the current configuration session and returns to privileged EXEC mode. ruckus(config-bonjour-policy)# exit Exits from the EXEC. Type: Privileged ruckus(config-bonjour-policy)# help Displays the help. Type: Privileged ruckus(config-bonjour-policy)# name Sets the bonjour policy name. Type: Privileged ruckus(config-bonjour-policy)# no rule Deletes the rules based on the rule priority. Type: Privileged ruckus(config-bonjour-policy)# rule Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B Sets the bonjour policy set of rules based on the rule priority. 72 Configuration Commands bonjour-policy Table 21 lists the related bonjour-policy-rule configuration commands. Table 21. Commands related to ruckus(config-bonjour-policy-rule) Syntax and Type Parameters (if any) Description ruckus(config-bonjour-policyrule)# bridge-service airdisk Sets the bridge service. Type: Privileged airport-management airplay airprint airtunes apple-file-sharing apple-mobile-devices (Allows sync with iTunes over Wi-Fi) appletv icloud-sync itunes-remote itunes-sharing open-directory-master optical-disk-sharing other screen-sharing secure-file-sharing secure-shell workgroup-manager www-http www-https xgrid ruckus(config-bonjour-policyrule)# do Executes the do command. Type: Privileged ruckus(config-bonjour-policyrule)# end Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B Ends the current configuration session and returns to privileged EXEC mode. 73 Configuration Commands bridge-profile Table 21. Commands related to ruckus(config-bonjour-policy-rule) Syntax and Type Parameters (if any) ruckus(config-bonjour-policyrule)# exit Description Exits from the EXEC. Type: Privileged ruckus(config-bonjour-policyrule)# from-vlan Sets the from VLAN. Type: Privileged Exits from the EXEC. ruckus(config-bonjour-policyrule)# help Type: Privileged ruckus(config-bonjour-policyrule)# notes Sets the notes. Type: Privileged ruckus(config-bonjour-policyrule)# protocol Sets the bridge service when it is 'other'. Type: Privileged ruckus(config-bonjour-policyrule)# to-vlan Sets the VLAN. Type: Privileged bridge-profile To create or update the bridge configuration, use the following command: ruckus(config)# bridge-profile Syntax Description This command uses the following syntax: name: Authorization service profile name Default This command has no default settings. Command Mode Config SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 74 Configuration Commands bridge-profile Example SZ100#(config)# bridge-profile auth-prof Related Commands • Table 22 lists the related bridge-profile configuration commands. • Table 22 lists the related bridge-profile-dhcp-option82 configuration commands. Table 22 lists the related bridge-profile configuration commands. Table 22. Commands related to ruckus(config-bridge-profile) configuration Syntax and Type Parameters (if any) Description ruckus(config-bridge-profile)# description Sets the description Type: Privileged ruckus(config-bridge-profile)# dhcp-option82 Enables the DHCP Option 82. Type: Privileged ruckus(config-bridge-profile)# dhcp-relay Enables the DHCP relay. Type: Privileged ruckus(config-bridge-profile)# dhcp-server1 Sets the DHCP Server 1 Sets the DHCP Server 1 Type: Privileged ruckus(config-bridge-profile)# dhcp-server2 Type: Privileged ruckus(config-bridge-profile)# do Executes the do command. . Type: Privileged ruckus(config-bridge-profile)# end Type: Privileged ruckus(config-bridge-profile)# exit Ends the current configuration session and returns to the privileged EXEC mode. Exits from the EXEC. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 75 Configuration Commands bridge-profile Table 22. Commands related to ruckus(config-bridge-profile) configuration Syntax and Type Parameters (if any) ruckus(config-bridge-profile)# help Description Displays the help. Type: Privileged ruckus(config-bridge-profile)# name Set the authentication service profile name Type: Privileged ruckus(config-bridge-profile)# no dhcp-option82 Type: Privileged dhcp-relay Disables DHCP Option 82, DHCP Relay or deletes DHCP Server 2 dhcp-server2 relay-both ruckus(config-bridge-profile)# relay-both Enables sending DHCP requests to both the servers simultaneously. Type: Privileged Table 23 lists the related bridge-profile-dhcp-option82 configuration commands. Table 23. Commands related to ruckus(config-bridge-profile-dhcp-option82) Syntax and Type Parameters (if any) ruckus(config-bridge-profiledhcp-option82)# do Description Executes the do command. Type: Privileged ruckus(config-bridge-profiledhcp-option82)# end Type: Privileged ruckus(config-bridge-profiledhcp-option82)# exit Ends the current configuration session and returns to the privileged EXEC mode. Exits from the EXEC. Type: Privileged ruckus(config-bridge-profiledhcp-option82)# help Displays the help. Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 76 Configuration Commands bridge-profile Table 23. Commands related to ruckus(config-bridge-profile-dhcp-option82) Syntax and Type Parameters (if any) Description ruckus(config-bridge-profiledhcp-option82)# no subopt1 Disables various options Type: Privileged subopt151 subopt150 subopt2 ruckus(config-bridge-profiledhcp-option82)# subtopt1 [ ap-info | ap-essid | ap-mac ] Enables subopt-1 Type: Privileged ruckus(config-bridge-profiledhcp-option82)# subtopt150 Enables subopt-150 Type: Privileged ruckus(config-bridge-profiledhcp-option82)# subtopt151 essid Enables subopt-151 area-name Type: Privileged ruckus(config-bridge-profiledhcp-option82)# subtopt2 [ ap-essid | ue-essid | ue-mac Enables subopt-2 | ap-mac ] Type: Privileged SZ-100 and vSZ-E CLI Reference Guide for SmartZone 3.2, 800-71021-001 Rev B 77 Configuration Commands cert-store cert-store To create or update certificate configurations, use the following command: ruckus(config)# cert-store ap-cert ruckus(config)# cert-store cert ruckus(config)# cert-store csr ruckus(config)# cert-store hotspot-cert ruckus(config)# cert-store web-cert Syntax Description This command uses the following syntax: ap-cert : Create / updates the AP port certificate cert : Create / updates the certificate configuration csr