Using The Cli To Configure Hybrid-Reap Groups - Cisco 2100 Series Configuration Manual

Wireless lan controller
Hide thumbs Also See for 2100 Series:
Table of Contents

Advertisement

Configuring Hybrid-REAP Groups

Using the CLI to Configure Hybrid-REAP Groups

Follow these steps to configure hybrid-REAP groups using the controller CLI.
To add or delete a hybrid-REAP group, enter this command:
Step 1
config hreap group group_name {add | delete}
To configure a primary or secondary RADIUS server for the hybrid-REAP group, enter this command:
Step 2
config hreap group group_name radius server {add | delete} {primary | secondary} server_index
Step 3
To add an access point to the hybrid-REAP group, enter this command:
config hreap group group_name ap {add | delete} ap_mac
Step 4
To configure local authentication for a hybrid-REAP group, follow these steps:
a.
b.
c.
d.
e.
f.
g.
h.
Cisco Wireless LAN Controller Configuration Guide
13-22
Make sure that a primary and secondary RADIUS server are not configured for the hybrid-REAP
group.
To enable or disable local authentication for this hybrid-REAP group, enter this command:
config hreap group group_name radius ap {enable | disable}
To enter the username and password of a client that you want to be able to authenticate using LEAP
or EAP-FAST, enter this command:
config hreap group group_name radius ap user add username password password
You can add up to 100 clients.
Note
To allow a hybrid-REAP access point to authenticate clients using LEAP or to disable this behavior,
enter this command:
config hreap group group_name radius ap leap {enable | disable}
To allow a hybrid-REAP access point to authenticate clients using EAP-FAST or to disable this
behavior, enter this command:
config hreap group group_name radius ap eap-fast {enable | disable}
Enter one of the following commands, depending on how you want PACs to be provisioned:
config hreap group group_name radius ap server-key key—Specifies the server key used to
encrypt and decrypt PACs. The key must be 32 hexadecimal characters.
config hreap group group_name radius ap server-key auto—Allows PACs to be sent
automatically to clients that do not have one during PAC provisioning.
To specify the authority identifier of the EAP-FAST server, enter this command:
config hreap group group_name radius ap authority id id
where id is 32 hexadecimal characters.
To specify the authority identifier of the EAP-FAST server in text format, enter this command:
config hreap group group_name radius ap authority info info
where info is up to 32 hexadecimal characters.
Chapter 13
Configuring Hybrid REAPWireless Device Access
OL-17037-01

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

4400 series

Table of Contents