Transcript
AP 7181 Access Point Command Line Interface Guide Version 1.0.0.A October 21, 2010
Contents
1 CLI Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-1 1.1 Connecting to the CLI . . . . . . . . . . . . . . . . . . . . . . . . . . 1-2 1.1.1 Accessing the CLI through the Serial Port. . . . . . . . . . 1-2 1.1.2 Accessing the CLI via Telnet . . . . . . . . . . . . . . . . . . . 1-2 1.2 Admin and Common Commands . . . . . . . . . . . . . . . . . . 1-3 1.3 Network Commands . . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-7 1.3.1 MeshConnex Platform Integration . . . . . . . . . . . . . . . 1-7 1.3.2 Network LAN Commands . . . . . . . . . . . . . . . . . . . . . 1-13 1.3.2.1 Network LAN, Bridge Commands . . . . . . . . . . . . . 1-16 1.3.2.2 Network LAN, WLAN-Mapping Commands . . . . 1-18 1.3.3.3 Network LAN, DHCP Commands . . . . . . . . . . . . . 1-22 1.3.3.4 Network Type Filter Commands . . . . . . . . . . . . . . 1-26 1.3.4 Network WAN Commands . . . . . . . . . . . . . . . . . . . . 1-29 1.3.4.1 Network WAN NAT Commands . . . . . . . . . . . . . . 1-31 1.3.4.2 Network WAN, VPN Commands . . . . . . . . . . . . . 1-36 1.3.4.3 Device Deployment Height . . . . . . . . . . . . . . . . . . 1-42 1.3.4.4 Netwrok WAN, Dynamic DNS Commands . . . . . . 1-44 1.3.5 Network Wireless Commands . . . . . . . . . . . . . . . . . . 1-47
1.3.5.1 Network WLAN Commands . . . . . . . . . . . . . . . . . 1-47 1.3.5.2 Network Security Commands . . . . . . . . . . . . . . . . . 1-56 1.3.5.3 Network ACL Commands. . . . . . . . . . . . . . . . . . . . 1-63 1.3.5.4 Network Radio Configuration Commands . . . . . . . 1-65 1.3.5.5 Network Quality of Service (QoS) Commands . . . 1-83 1.3.5.6 Network Bandwidth Management Commands . . . . 1-85 1.3.5.7 Network Rogue-AP Commands . . . . . . . . . . . . . . . 1-86 1.3.5.8 Network MU Locationing Commands . . . . . . . . . . 1-91 1.3.6 Network Firewall Commands . . . . . . . . . . . . . . . . . . 1-93 1.3.7 Network Router Commands. . . . . . . . . . . . . . . . . . . . 1-97 1.4 System Commands . . . . . . . . . . . . . . . . . . . . . . . . . . . 1-100 1.4.1 Power Setup Commands . . . . . . . . . . . . . . . . . . . . . 1-103 1.4.2 System Access Commands . . . . . . . . . . . . . . . . . . . 1-104 1.4.3 System Certificate Management Commands . . . . . . 1-106 1.4.4 System SNMP Commands. . . . . . . . . . . . . . . . . . . . 1-111 1.4.4.1 System SNMP Access Commands . . . . . . . . . . . . 1-111 1.4.4.2 System SNMP Traps Commands . . . . . . . . . . . . . 1-111 1.4.5 System User Database Commands. . . . . . . . . . . . . . 1-118 1.4.5.1 Adding and Removing Users . . . . . . . . . . . . . . . . 1-118 1.4.6 System Radius Commands. . . . . . . . . . . . . . . . . . . . 1-123 1.4.7 System Network Time Protocol (NTP) Commands 1-133 1.4.8 System Log Commands . . . . . . . . . . . . . . . . . . . . . . 1-135 1.4.9 System Configuration Update Commands. . . . . . . . 1-138 1.4.10 Firmware Update Commands . . . . . . . . . . . . . . . . 1-142 1.5 Statistics Commands . . . . . . . . . . . . . . . . . . . . . . . . . . 1-146
MOTOROLA and the Stylized M Logo are registered in the US Patent & Trademark Office. All other product or service names are the property of their respective owners. © Motorola, Inc. 2010. All rights reserved.
1
CLI Interface
The access point Command Line Interface (CLI) is accessed through the serial port or a Telnet session. The access point CLI follows the same conventions as the Web-based user interface. The CLI does, however, provide an “escape sequence” to provide diagnostics for problem identification and resolution. The CLI for the AP 7181 supports commands for both the AP 7181 and AP-7131. The following terms are unique to the AP 7181 references: Meshed Device - Device which provides meshing services. Mesh Point (MP)- A logical entity which provides meshing services. Each meshed device can support multiple MPs. Mesh Point Root (MPR)- A Mesh Point which is specially configured to serve as a bridge between wireless mesh and wired backhaul. Path - The Mesh Points used to forward packets from end to end. In previous generation MNPG products this was known as a route. Path Selection - The protocols used to create and maintain paths. In previous generation MNPG products this was known as routing or Mesh Scalable Routing (MSR). The CLI treats the following as invalid characters: '
"
\
&
$
^
*
+
?
[
(
{ | , < >
In order to avoid problems when using the CLI, these characters should be avoided.
AP 7181 CLI Reference Guide 1-2
1.1 Connecting to the CLI NOTE When using the console cable to access the CLI interface on the AP 7181, it
should be noted that the port for the console cable is extremely small. It can be difficult to disconnect the cable. It is recommended that you remove the tab on the RJ-45 connector to allow the console cable to be easily disconnected.
1.1.1 Accessing the CLI through the Serial Port To connect to the access point CLI through the serial port: 1. Connect one end of a null modem serial cable to the access point’s serial connector. 2. Attach the other end of the null modem serial cable to the serial port of a PC running HyperTerminal or a similar emulation program. 3. Set the HyperTerminal program to use 115200 baud, 8 data bits, 1 stop bit, no parity, no flow control, and autodetect for terminal emulation. 4. Press
or to enter into the CLI. 5. Enter the default username of admin and the default password of motorola. If this is your first time logging into the access point, you are unable to access any of the access point’s commands until the country code is set. A new password will also need to be created.
1.1.2 Accessing the CLI via Telnet To connect to the access point CLI through a Telnet connection: 1. If this is your first time connecting to your access point, keep in mind the access point uses a static IP WAN address (10.1.1.1). Additionally, the access point’s LAN port is set as a DHCP client. 2. Enter the default username of admin and the default password of motorola. If this is your first time logging into the access point, you are unable to access any of the access point’s commands until the country code is set. A new password will also need to be created.
AP 7181 CLI Reference Guide 1-3
1.2 Admin and Common Commands admin> Description: Displays admin configuration options. The items available under this command are shown below.
Syntax: help passwd summary network system stats .. / save quit
Displays general user interface help. Changes the admin password. Shows a system summary. Goes to the network submenu Goes to the system submenu. Goes to the stats submenu. Goes to the parent menu. Goes to the root menu. Saves the configuration to system flash. Quits the CLI.
admin>help
Description: Displays general CLI user interface help.
Syntax: help
Displays command line help using combinations of function keys for navigation.
Example: admin>help ? * Restriction of “?”:
: display command help - Eg. ?, show ?, s? : “?” after a function argument is treated : as an argument : Eg. admin set lan enable? : (Here “?” is an invalid extra argument, : because it is after the argument : “enable”)
: go backwards in command history
: go forwards in command history
* Note
: 1) commands can be incomplete : - Eg. sh = sho = show : 2) “//” introduces a comment and gets no : resposne from CLI.
admin>
AP 7181 CLI Reference Guide 1-4
admin>passwd
Description: Changes the password for the admin login.
Syntax: passwd
Changes the admin password for access point access. This requires typing the old admin password and entering a new password and confirming it. Passwords can be up to 11 characters. The access point CLI treats the following as invalid characters: '
"
\
&
$
^
*
+
?
[
(
{ | , < >
In order to avoid problems when using the access point CLI, these characters should be avoided.
Example: admin>passwd Old Admin Password:****** New Admin Password (0 - 11 characters):****** Verify Admin Password (0 - 11 characters):****** Country Code: us Warning: The country selected must match the country the device is used in. An incorrect country may result in illegal operation. Your radio's configuration have been defaulted to operate within the regulations of the country selected.
admin>summary
Description: Displays the access point’s system summary.
Syntax: summary
Displays a summary of high-level characteristics and settings for the WAN, LAN and WLAN.
Example: admin>summary AP 7181 firmware version
3.0.0.0-xxx
country code
us
serial number
00A0F8716A74
WLAN 1: WLAN Name
WLAN1
ESS ID
101
Radio
12.4 and 5.0 GHz
VLAN
VLAN1
Security Policy
Default
AP 7181 CLI Reference Guide 1-5
QoS Policy
Default
LAN1 Name: LAN1 LAN1 Mode: enable LAN1 IP: 0.0.0.0 LAN1 Mask: 0.0.0.0 LAN1 DHCP Mode: client LAN2 Name: LAN2 LAN2 Mode: enable LAN2 IP: 192.235.1.1 LAN2 Mask: 255.255.255.0 LAN2 DHCP Mode: client ----------------------------------------------------------------------------WAN Interface
IP Address
Network Mask
Default Gateway
DHCP Client
----------------------------------------------------------------------------enable
172.20.23.10
255.255.255.192
172.20.23.20
enable
admin>..
Description: Displays the parent menu of the current menu. This command appears in all of the submenus under admin. In each case, it has the same function, to move up one level in the directory structure.
Example: admin(network.lan)>.. admin(network)>
admin> /
Description: Displays the root menu, that is, the top-level CLI menu. This command appears in all of the submenus under admin. In each case, it has the same function, to move up to the top level in the directory structure.
Example: admin(network.lan)>/ admin>
admin>save
Description: Saves the configuration to system flash. The save command appears in all of the submenus under admin. In each case, it has the same function, to save the current configuration.
AP 7181 CLI Reference Guide 1-6
Syntax: save
Saves configuration settings. The save command works at all levels of the CLI. The save command must be issued before leaving the CLI for updated settings to be retained.
Example: admin>save admin>
admin>quit
Description: Exits the command line interface session and terminates the session. The quit command appears in all of the submenus under admin. In each case, it has the same function, to exit out of the CLI. Once the quit command is executed, the login prompt displays again.
Example: admin>quit
AP 7181 CLI Reference Guide 1-7
1.3 Network Commands admin>network Description: Displays the network submenu.
1.3.1 MeshConnex Platform Integration MeshConnex (MCX) is initialized with the creation of a Mesh Point (MP). Up to four MPs can be created. When the MPis enabled, the status commands (path table, neighbor table, etc.) are working and will now display real information. The following CLI commands can be called to create/edit/delete Mesh Points.
admin(network.mesh-connex)> show Show Mesh Point parameters. set Set Mesh Point parameters. create Create Mesh Point. edit Edit Mesh Point . delete Delete Mesh Point. delete all Delete all Mesh Points.
admin(network.mesh-connex.create)>
Description: Creates a new Mesh Point.
Syntax: show mp show proxy set mesh-id [MP-MESHID]
Show the parameters for the Mesh Point being created. Show the static proxy table. Set the Mesh Point meshid.[MP-MESHID] is a character string of up to 31 characters. WARNING! If the MeshID is changed for an AP, the preshared key MUST be regenerated. The generation of a pre-shared key using a passphrase includes identification of the MeshID. If the MeshID is changed, the corresponding preshared key is NOT automatically regenerated. This may result in a loss of communication with APs usinging the current pre-shared key.
set radio
Binds the Mesh Point being created to a radio. 5.0GHz or 2.4GHz
set is-root set root-pref root set root-pref next-hop set root-pref interface set beacon-format
Enable or Disable Enable or Disable. Root MPID or 'none' (eg 001570cc57b0) Neighbor IFID or 'none' (eg 001570cc57b0)' 5.0GHz, 2.4GHz, or 'none' MP or AP
AP 7181 CLI Reference Guide 1-8
proxy add-mp ..
Go to the static proxy menu. Creates the new Mesh Point. Cancels the creation of the new Mesh Point.
admin(network.mesh-connex.create.proxy)>
Description: Configure the proxy for a new Mesh Point.
Syntax: show add-addr
Shows the static proxy list. Add the address for the proxy. MAC address for the proxy server (eg. 00a0f8000001). The name of the existing VLAN or None.
delete
Enable or Disable Delete the static proxy list entry.
delete all ..
1 through 10 Delete all static proxy list entries. Return to the network.mesh-connex.create parent menu.
admin(network.mesh-connex.create.security)>
Description: Configure the Secure Mesh security scheme..
Syntax: show set mode set group key lifetieme