 
							
							
							帖配置看看
(0)
AC1 # version 9.1.081, ESS 1603 # sysname AC-35x # clock timezone Beijing add 08:00:00 # wlan global-configuration firmware-upgrade disable # telnet server enable # cloud-cluster enable #cloud-cluster service-cluster domain 3 cloud-cluster service-cluster domain 0 cloud-cluster service-cluster mac-address persistent always undo cloud-cluster auto-merge enable # dot1x dot1x authentication-method eap dot1x retry 10 dot1x timer supp-timeout 2 dot1x timer tx-period 2 # wlan tcp mss 1360 # dhcp enable # lldp global enable # system-working-mode standard password-recovery enable # vlan 1 # vlan 3 # vlan 102 # cloud-cluster member 1 member-ip 36.36.9.10 16 join-cluster ip 36.36.9.10 cluster-link bind interface GigabitEthernet1/0/3 # object-group service wpa3dot # dhcp server ip-pool 123 gateway-list 8.102.1.1 network 8.0.0.0 mask 255.0.0.0 address range 8.102.30.1 8.102.30.254 # wlan service-template 6ghz ssid 6GHz vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template bend-t1 ssid bend-t1 vlan 102 client forwarding-location ap akm mode psk preshared-key pass-phrase cipher $c$3$PH8drcpprA2eEhuswbLiRN83RAk9wJYIizCc cipher-suite ccmp security-ie rsn service-template enable # wlan service-template clear ssid clear vlan 102 client forwarding-location ac service-template enable # wlan service-template clear1 ssid clear1 client forwarding-location ac mlo enable service-template enable # wlan service-template clear2 ssid clear2 vlan 102 client forwarding-location ac mlo enable service-template enable # wlan service-template enterprise-t1 ssid enterprise-t1 vlan 102 client forwarding-location ac mlo enable akm mode dot1x cipher-suite ccmp security-ie rsn wpa3 enterprise-only-mode client-security authentication-mode dot1x client-security ignore-authentication dot1x domain domain # wlan service-template k1 ssid k1 vlan 102 client forwarding-location ac mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$f+m2bO1EUKDgMf9erkXO0TbFiSpq+Rc2/bdI cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k2 ssid k2 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k3 ssid k3 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k4 ssid k4 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k5 ssid k5 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k6 ssid k6 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k7 ssid k7 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k8 ssid k8 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k9 ssid k9 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k10 ssid k10 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k11 ssid k11 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k12 ssid k12 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k13 ssid k13 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k14 ssid k14 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k15 ssid k15 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k16 ssid k16 client forwarding-location ac service-template enable # wlan service-template mac ssid mac client forwarding-location ac client-security authentication-mode mac mac-authentication domain dd1 service-template enable # wlan service-template mlo client forwarding-location ac # wlan service-template mlo-1 ssid mlo-1 client forwarding-location ac mlo enable akm mode private-psk cipher-suite ccmp security-ie rsn client-security authentication-mode mac service-template enable # wlan service-template mlo-2 ssid mlo-2 client forwarding-location ac mlo enable akm mode dot1x cipher-suite ccmp security-ie rsn client-security authentication-mode mac-and-dot1x service-template enable # wlan service-template mlo-3 ssid mlo-3 client forwarding-location ac mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$cO156MCZTCMnGYYB8f8B6lAyn7izz5/IQSCZ cipher-suite ccmp security-ie rsn service-template enable # wlan service-template mlo-4 ssid mlo-4 client forwarding-location ac akm mode dot1x cipher-suite gcmp security-ie rsn wpa3 enterprise client-security authentication-mode dot1x service-template enable # wlan service-template mlo-5 ssid mlo-5 client forwarding-location ac mlo enable service-template enable # wlan service-template mlo-6 ssid mlo-6 client forwarding-location ac mlo enable service-template enable # wlan service-template mlo-7 ssid mlo-7 client forwarding-location ac mlo enable service-template enable # wlan service-template mlo-8 ssid mlo-8 client forwarding-location ac mlo enable service-template enable # wlan service-template mlo-9 ssid mlo-9 client forwarding-location ac mlo enable service-template enable # wlan service-template mlo-t1 ssid mlo-t1 vlan 102 client forwarding-location ac mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$UDF8LRRSjjgSX+azhXENu6HTLkNbyK6yYZHq cipher-suite ccmp security-ie rsn pmf optional service-template enable # wlan service-template mlo-t2 ssid mlo-t2 vlan 102 client forwarding-location ap mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$MrtpssVQZyolXSvTBmhxFEKab9MQfvhaLoIb cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional # wlan service-template mlo-test2 client forwarding-location ac # wlan service-template nomlo-t1 ssid nomlo-t1 vlan 102 client forwarding-location ac mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$FZVoKdr0wHdkjnGR3tFAKRnEjG4EmXd2Q7aU cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional # wlan service-template nomlo-t2 ssid nomlo-t2 client forwarding-location ap akm mode psk preshared-key pass-phrase cipher $c$3$KM2DT34HbAcLzO9CN2uqKcL6r7nLaiHkTq81 cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template nomlo0t2 client forwarding-location ac # wlan service-template owe ssid owe client forwarding-location ac cipher-suite ccmp security-ie rsn # wlan service-template portal ssid portal client forwarding-location ac portal enable method direct portal domain dm1 service-template enable # wlan service-template test7538 client forwarding-location ac # wlan service-template test7539 client forwarding-location ac # wlan service-template ttt1 ssid ttt1 vlan 102 client forwarding-location ac mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$MwQJybOVZgw/cplHZCbwBl/T2pkc1LGpAiHy cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template ttt2 ssid ttt2 vlan 102 client forwarding-location ap mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$RXgTBIFsUPvE82Y5ZkmQG3Xb3cT5KfSTZJ3n cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template ttt3 ssid ttt3 vlan 102 client forwarding-location ac mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$qYpldrECuczLvWV51/EcNOxiK24e3M3K3xMI cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template wap3dot client forwarding-location ac # wlan service-template wpa2 ssid wpa2 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$7lz877/D0iTlyrA1Y5IOwerEDYg8jvluffdF0xk= cipher-suite ccmp security-ie rsn service-template enable # wlan service-template wpa3 ssid wpa3 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$Jaj6UjamTgeDmnxm6deSXfnOXmQ/IZmTJ1I7 cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template wpa3dot ssid wpa3dot vlan 102 client forwarding-location ac mlo enable akm mode dot1x cipher-suite ccmp security-ie rsn wpa3 enterprise-only-mode client-security authentication-mode dot1x dot1x domain bbb service-template enable # wlan service-template x1 client forwarding-location ac # interface NULL0 # interface Vlan-interface1 ip address 90.90.0.208 255.255.0.0 # interface Vlan-interface3 ip address dhcp-alloc # interface Vlan-interface102 ip address 8.102.10.23 255.255.0.0 # interface GigabitEthernet1/0/1 port link-mode bridge # interface GigabitEthernet1/0/2 port link-mode bridge # interface GigabitEthernet1/0/4 port link-mode bridge # interface GigabitEthernet1/0/5 port link-mode bridge port link-type trunk port trunk permit vlan 1 3 102 port trunk pvid vlan 102 undo stp enable # interface GigabitEthernet1/0/6 port link-mode bridge shutdown # interface GigabitEthernet1/0/7 port link-mode bridge # interface GigabitEthernet1/0/8 port link-mode bridge # interface GigabitEthernet1/0/9 port link-mode bridge # interface GigabitEthernet1/0/10 port link-mode bridge # interface GigabitEthernet1/0/11 port link-mode bridge # interface GigabitEthernet1/0/12 port link-mode bridge # interface GigabitEthernet1/0/13 port link-mode bridge # interface GigabitEthernet1/0/14 port link-mode bridge # interface GigabitEthernet1/0/15 port link-mode bridge # interface GigabitEthernet1/0/16 port link-mode bridge # interface GigabitEthernet1/0/17 port link-mode bridge # interface GigabitEthernet1/0/18 port link-mode bridge # interface GigabitEthernet1/0/3 shutdown # interface M-GigabitEthernet0/0/0 # scheduler logfile size 16 # line class aux user-role network-admin # line class vty user-role network-operator # line aux 0 user-role network-admin # line vty 0 31 authentication-mode scheme user-role network-operator # line vty 32 63 user-role network-operator # ip route-static 0.0.0.0 0 8.102.1.1 ip route-static 0.0.0.0 0 90.90.0.1 ip route-static 0.0.0.0 0 8.102.11.11 ip route-static 8.0.0.0 8 8.102.11.11 # undo info-center logfile enable info-center source STAMGR console deny info-center source STAMGR logbuffer deny # ssh server enable # gratuitous-arp mac-change retransmit 3 interval 2 # radius scheme test6688 primary authentication 8.102.10.5 primary accounting 8.102.10.5 key authentication cipher $c$3$rasko55gfRuG/X0YtVRxIMMAg9GP3w== key accounting cipher $c$3$JxeI+VxWzU/ov5ulLhz9WqJbbFfHkA== user-name-format without-domain # domain name bbb authentication default radius-scheme test6688 authorization default radius-scheme test6688 accounting default radius-scheme test6688 # domain name system # domain default enable system # role name level-0 description Predefined level-0 role # role name level-1 description Predefined level-1 role # role name level-2 description Predefined level-2 role # role name level-3 description Predefined level-3 role # role name level-4 description Predefined level-4 role # role name level-5 description Predefined level-5 role # role name level-6 description Predefined level-6 role # role name level-7 description Predefined level-7 role # role name level-8 description Predefined level-8 role # role name level-9 description Predefined level-9 role # role name level-10 description Predefined level-10 role # role name level-11 description Predefined level-11 role # role name level-12 description Predefined level-12 role # role name level-13 description Predefined level-13 role # role name level-14 description Predefined level-14 role # user-group system # local-user admin class manage password hash $h$6$3l25sAqeaVIQ7OaP$snQhfo49iuKkzv3o2kFPjnet1zgLO64MFhrpNNfLmEc5gf5OGuZGtibVeoK/I/bE1WjCfrKlvtUTroNm7eN/Lw== service-type telnet http https ssh authorization-attribute user-role network-admin # netconf ssh server enable # ip http enable ip https enable # rrop arp ap-proxy-gateway enable # wlan ap-group default- vlan 1 radio 2.4g radio 5g radio 6g # wlan ap-group default-group vlan 1 radio 2.4g radio 5g radio 6g ap-model WA7539 radio 1 radio 2 radio 3 gigabitethernet 1 ten-gigabitethernet 1 ten-gigabitethernet 2 # wlan ap-group default-ponapgroup type pon vlan 1 # wlan virtual-ap-group default-virtualapgroup # wlan ap test7539 model WA7539 serial-id 219801A4L7823AE00015 region-code HK wlan tunnel-preempt enable firmware-upgrade disable priority 7 vlan 1 vlan 102 radio 1 type dot11be channel 77 max-power 17 radio enable channel band-width 320 service-template ttt3 service-template wpa3dot service-template k1 service-template mlo-4 service-template ttt1 service-template ttt2 radio 2 type dot11abe channel 149 radio enable channel band-width 160 service-template clear2 service-template mlo-t1 radio 3 type dot11gbe channel 10 max-power 1 radio enable channel band-width 40 service-template clear2 service-template mlo-t1 gigabitethernet 1 ten-gigabitethernet 1 ten-gigabitethernet 2 # cloud-management server domain 8.102.2.5 cloud-management server port 31443
 
							
							AC1
#
 version 9.1.081, ESS 1603
#
 sysname AC-35x
#
 clock timezone Beijing add 08:00:00
#
wlan global-configuration
 firmware-upgrade disable
#
 telnet server enable
#
 cloud-cluster enable
#cloud-cluster service-cluster domain 3
 cloud-cluster service-cluster domain 0
 cloud-cluster service-cluster mac-address persistent always
 undo cloud-cluster auto-merge enable
#
 dot1x
 dot1x authentication-method eap
 dot1x retry 10
 dot1x timer supp-timeout 2
 dot1x timer tx-period 2
#              
 wlan tcp mss 1360
#
 dhcp enable
#
 lldp global enable
#
 system-working-mode standard
 password-recovery enable
#
vlan 1
#
vlan 3
#
vlan 102
#
cloud-cluster member 1
 member-ip 36.36.9.10 16
 join-cluster ip 36.36.9.10
 cluster-link bind interface GigabitEthernet1/0/3 
#
object-group service wpa3dot
#
dhcp server ip-pool 123
 gateway-list 8.102.1.1
 network 8.0.0.0 mask 255.0.0.0
 address range 8.102.30.1 8.102.30.254
#
wlan service-template 6ghz
 ssid 6GHz
 vlan 102
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template bend-t1
 ssid bend-t1
 vlan 102
 client forwarding-location ap
 akm mode psk
 preshared-key pass-phrase cipher $c$3$PH8drcpprA2eEhuswbLiRN83RAk9wJYIizCc
 cipher-suite ccmp
 security-ie rsn
 service-template enable
#
wlan service-template clear
 ssid clear
 vlan 102
 client forwarding-location ac
 service-template enable
#
wlan service-template clear1
 ssid clear1
 client forwarding-location ac
 mlo enable
 service-template enable
#
wlan service-template clear2
 ssid clear2
 vlan 102
 client forwarding-location ac
 mlo enable
 service-template enable
#
wlan service-template enterprise-t1
 ssid enterprise-t1
 vlan 102
 client forwarding-location ac
 mlo enable
 akm mode dot1x
 cipher-suite ccmp
 security-ie rsn
 wpa3 enterprise-only-mode
 client-security authentication-mode dot1x
 client-security ignore-authentication 
 dot1x domain domain
#
wlan service-template k1
 ssid k1
 vlan 102
 client forwarding-location ac
 mlo enable
 akm mode psk
 preshared-key pass-phrase cipher $c$3$f+m2bO1EUKDgMf9erkXO0TbFiSpq+Rc2/bdI
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional  
 service-template enable
#
wlan service-template k2
 ssid k2
 vlan 102
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k3
 ssid k3
 vlan 102
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k4
 ssid k4
 vlan 102
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k5
 ssid k5
 vlan 102
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k6
 ssid k6
 vlan 102
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k7
 ssid k7
 vlan 102
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k8
 ssid k8
 vlan 102
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k9
 ssid k9
 vlan 102
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k10
 ssid k10
 vlan 102
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k11
 ssid k11
 vlan 102
 client forwarding-location ac
 akm mode psk  
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k12
 ssid k12
 vlan 102
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k13
 ssid k13
 vlan 102
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k14
 ssid k14
 vlan 102
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k15
 ssid k15
 vlan 102      
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template k16
 ssid k16
 client forwarding-location ac
 service-template enable
#
wlan service-template mac
 ssid mac
 client forwarding-location ac
 client-security authentication-mode mac
 mac-authentication domain dd1
 service-template enable
#
wlan service-template mlo
 client forwarding-location ac
#
wlan service-template mlo-1
 ssid mlo-1
 client forwarding-location ac
 mlo enable
 akm mode private-psk
 cipher-suite ccmp
 security-ie rsn
 client-security authentication-mode mac
 service-template enable
#
wlan service-template mlo-2
 ssid mlo-2
 client forwarding-location ac
 mlo enable
 akm mode dot1x
 cipher-suite ccmp
 security-ie rsn
 client-security authentication-mode mac-and-dot1x
 service-template enable
#
wlan service-template mlo-3
 ssid mlo-3    
 client forwarding-location ac
 mlo enable
 akm mode psk
 preshared-key pass-phrase cipher $c$3$cO156MCZTCMnGYYB8f8B6lAyn7izz5/IQSCZ
 cipher-suite ccmp
 security-ie rsn
 service-template enable
#
wlan service-template mlo-4
 ssid mlo-4
 client forwarding-location ac
 akm mode dot1x
 cipher-suite gcmp
 security-ie rsn
 wpa3 enterprise
 client-security authentication-mode dot1x
 service-template enable
#
wlan service-template mlo-5
 ssid mlo-5
 client forwarding-location ac
 mlo enable
 service-template enable
#
wlan service-template mlo-6
 ssid mlo-6
 client forwarding-location ac
 mlo enable
 service-template enable
#
wlan service-template mlo-7
 ssid mlo-7
 client forwarding-location ac
 mlo enable
 service-template enable
#
wlan service-template mlo-8
 ssid mlo-8
 client forwarding-location ac
 mlo enable
 service-template enable
#
wlan service-template mlo-9
 ssid mlo-9
 client forwarding-location ac
 mlo enable    
 service-template enable
#
wlan service-template mlo-t1
 ssid mlo-t1
 vlan 102
 client forwarding-location ac
 mlo enable
 akm mode psk
 preshared-key pass-phrase cipher $c$3$UDF8LRRSjjgSX+azhXENu6HTLkNbyK6yYZHq
 cipher-suite ccmp
 security-ie rsn
 pmf optional
 service-template enable
#
wlan service-template mlo-t2
 ssid mlo-t2
 vlan 102
 client forwarding-location ap
 mlo enable
 akm mode psk
 preshared-key pass-phrase cipher $c$3$MrtpssVQZyolXSvTBmhxFEKab9MQfvhaLoIb
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
#
wlan service-template mlo-test2
 client forwarding-location ac
#
wlan service-template nomlo-t1
 ssid nomlo-t1
 vlan 102
 client forwarding-location ac
 mlo enable
 akm mode psk
 preshared-key pass-phrase cipher $c$3$FZVoKdr0wHdkjnGR3tFAKRnEjG4EmXd2Q7aU
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
#
wlan service-template nomlo-t2
 ssid nomlo-t2
 client forwarding-location ap
 akm mode psk
 preshared-key pass-phrase cipher $c$3$KM2DT34HbAcLzO9CN2uqKcL6r7nLaiHkTq81
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template nomlo0t2
 client forwarding-location ac
#
wlan service-template owe
 ssid owe
 client forwarding-location ac
 cipher-suite ccmp
 security-ie rsn
#
wlan service-template portal
 ssid portal
 client forwarding-location ac
 portal enable method direct
 portal domain dm1
 service-template enable
#
wlan service-template test7538
 client forwarding-location ac
#
wlan service-template test7539
 client forwarding-location ac
#
wlan service-template ttt1
 ssid ttt1
 vlan 102
 client forwarding-location ac
 mlo enable
 akm mode psk
 preshared-key pass-phrase cipher $c$3$MwQJybOVZgw/cplHZCbwBl/T2pkc1LGpAiHy
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template ttt2
 ssid ttt2
 vlan 102
 client forwarding-location ap
 mlo enable    
 akm mode psk
 preshared-key pass-phrase cipher $c$3$RXgTBIFsUPvE82Y5ZkmQG3Xb3cT5KfSTZJ3n
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template ttt3
 ssid ttt3
 vlan 102
 client forwarding-location ac
 mlo enable
 akm mode psk
 preshared-key pass-phrase cipher $c$3$qYpldrECuczLvWV51/EcNOxiK24e3M3K3xMI
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template wap3dot
 client forwarding-location ac
#
wlan service-template wpa2
 ssid wpa2
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$7lz877/D0iTlyrA1Y5IOwerEDYg8jvluffdF0xk=
 cipher-suite ccmp
 security-ie rsn
 service-template enable
#
wlan service-template wpa3
 ssid wpa3
 client forwarding-location ac
 akm mode psk
 preshared-key pass-phrase cipher $c$3$Jaj6UjamTgeDmnxm6deSXfnOXmQ/IZmTJ1I7
 cipher-suite ccmp
 security-ie rsn
 wpa3 personal optional
 pmf optional
 service-template enable
#
wlan service-template wpa3dot
 ssid wpa3dot  
 vlan 102
 client forwarding-location ac
 mlo enable
 akm mode dot1x
 cipher-suite ccmp
 security-ie rsn
 wpa3 enterprise-only-mode
 client-security authentication-mode dot1x
 dot1x domain bbb
 service-template enable
#
wlan service-template x1
 client forwarding-location ac
#
interface NULL0
#
interface Vlan-interface1
 ip address 90.90.0.208 255.255.0.0
#
interface Vlan-interface3
 ip address dhcp-alloc
#
interface Vlan-interface102
 ip address 8.102.10.23 255.255.0.0
#
interface GigabitEthernet1/0/1
 port link-mode bridge
#
interface GigabitEthernet1/0/2
 port link-mode bridge
#
interface GigabitEthernet1/0/4
 port link-mode bridge
#
interface GigabitEthernet1/0/5
 port link-mode bridge
 port link-type trunk
 port trunk permit vlan 1 3 102
 port trunk pvid vlan 102
 undo stp enable
#
interface GigabitEthernet1/0/6
 port link-mode bridge
 shutdown
#
interface GigabitEthernet1/0/7
 port link-mode bridge
#
interface GigabitEthernet1/0/8
 port link-mode bridge
#
interface GigabitEthernet1/0/9
 port link-mode bridge
#
interface GigabitEthernet1/0/10
 port link-mode bridge
#
interface GigabitEthernet1/0/11
 port link-mode bridge
#
interface GigabitEthernet1/0/12
 port link-mode bridge
#
interface GigabitEthernet1/0/13
 port link-mode bridge
#
interface GigabitEthernet1/0/14
 port link-mode bridge
#              
interface GigabitEthernet1/0/15
 port link-mode bridge
#
interface GigabitEthernet1/0/16
 port link-mode bridge
#
interface GigabitEthernet1/0/17
 port link-mode bridge
#
interface GigabitEthernet1/0/18
 port link-mode bridge
#
interface GigabitEthernet1/0/3
 shutdown
#
interface M-GigabitEthernet0/0/0
#
 scheduler logfile size 16
#
line class aux
 user-role network-admin
#
line class vty 
 user-role network-operator
#
line aux 0
 user-role network-admin
#
line vty 0 31
 authentication-mode scheme
 user-role network-operator
#
line vty 32 63
 user-role network-operator
#
 ip route-static 0.0.0.0 0 8.102.1.1
 ip route-static 0.0.0.0 0 90.90.0.1
 ip route-static 0.0.0.0 0 8.102.11.11
 ip route-static 8.0.0.0 8 8.102.11.11
#
 undo info-center logfile enable
 info-center source STAMGR console deny
 info-center source STAMGR logbuffer deny
#
 ssh server enable
#              
 gratuitous-arp mac-change retransmit 3 interval 2
#
radius scheme test6688
 primary authentication 8.102.10.5
 primary accounting 8.102.10.5
 key authentication cipher $c$3$rasko55gfRuG/X0YtVRxIMMAg9GP3w==
 key accounting cipher $c$3$JxeI+VxWzU/ov5ulLhz9WqJbbFfHkA==
 user-name-format without-domain
#
domain name bbb
 authentication default radius-scheme test6688
 authorization default radius-scheme test6688
 accounting default radius-scheme test6688
#
domain name system
#
 domain default enable system
#
role name level-0
 description Predefined level-0 role
#
role name level-1
 description Predefined level-1 role
#
role name level-2
 description Predefined level-2 role
#
role name level-3
 description Predefined level-3 role
#
role name level-4
 description Predefined level-4 role
#
role name level-5
 description Predefined level-5 role
#
role name level-6
 description Predefined level-6 role
#
role name level-7
 description Predefined level-7 role
#
role name level-8
 description Predefined level-8 role
#
role name level-9
 description Predefined level-9 role
#
role name level-10
 description Predefined level-10 role
#
role name level-11
 description Predefined level-11 role
#
role name level-12
 description Predefined level-12 role
#
role name level-13
 description Predefined level-13 role
#
role name level-14
 description Predefined level-14 role
#
user-group system
#
local-user admin class manage
 password hash $h$6$3l25sAqeaVIQ7OaP$snQhfo49iuKkzv3o2kFPjnet1zgLO64MFhrpNNfLmEc5gf5OGuZGtibVeoK/I/bE1WjCfrKlvtUTroNm7eN/Lw==
 service-type telnet http https ssh
 authorization-attribute user-role network-admin
#
 netconf ssh server enable
#
 ip http enable
 ip https enable
#
 rrop arp ap-proxy-gateway enable
#
wlan ap-group default-
 vlan 1
 radio 2.4g
 radio 5g
 radio 6g
#
wlan ap-group default-group
 vlan 1
 radio 2.4g
 radio 5g
 radio 6g
 ap-model WA7539
  radio 1
  radio 2
  radio 3      
  gigabitethernet 1
  ten-gigabitethernet 1
  ten-gigabitethernet 2
#
wlan ap-group default-ponapgroup type pon
 vlan 1
#
wlan virtual-ap-group default-virtualapgroup
#
wlan ap test7539 model WA7539 
 serial-id 219801A4L7823AE00015
 region-code HK
 wlan tunnel-preempt enable
 firmware-upgrade disable
 priority 7
 vlan 1
 vlan 102
 radio 1
  type dot11be
  channel 77
  max-power 17
  radio enable
  channel band-width 320 
  service-template ttt3
  service-template wpa3dot
  service-template k1
  service-template mlo-4
  service-template ttt1
  service-template ttt2
 radio 2
  type dot11abe
  channel 149
  radio enable
  channel band-width 160 
  service-template clear2
  service-template mlo-t1
 radio 3
  type dot11gbe
  channel 10
  max-power 1
  radio enable
  channel band-width 40 
  service-template clear2
  service-template mlo-t1
 gigabitethernet 1
 ten-gigabitethernet 1
 ten-gigabitethernet 2
#
 cloud-management server domain 8.102.2.5
 cloud-management server port 31443
(0)
贴主要配置:ip,互联端口;看看端口状态
AC2 version 9.1.081, ESS 1603 # sysname H3C # clock timezone Beijing add 08:00:00 # wlan global-configuration calibrate-channel self-decisive enable all calibrate-power self-decisive enable all # telnet server enable # cloud-cluster enable cloud-cluster service-cluster mac-address persistent always # dot1x authentication-method eap dot1x retry 10 dot1x timer supp-timeout 2 dot1x timer tx-period 2 # wlan tcp mss 1360 # system-working-mode standard password-recovery enable # vlan 1 # vlan 102 # cloud-cluster member 1 # interface NULL0 # interface Vlan-interface1 shutdown ip address dhcp-alloc # interface Vlan-interface102 ip address 8.102.10.24 255.255.0.0 # interface GigabitEthernet1/0/1 port link-mode bridge # interface GigabitEthernet1/0/2 port link-mode bridge # interface GigabitEthernet1/0/3 port link-mode bridge # interface GigabitEthernet1/0/4 port link-mode bridge # interface GigabitEthernet1/0/5 port link-mode bridge port link-type trunk port trunk permit vlan all port trunk pvid vlan 102 undo stp enable # interface GigabitEthernet1/0/6 port link-mode bridge # interface GigabitEthernet1/0/7 port link-mode bridge # interface GigabitEthernet1/0/8 port link-mode bridge # interface GigabitEthernet1/0/9 port link-mode bridge # interface GigabitEthernet1/0/10 port link-mode bridge # interface GigabitEthernet1/0/11 port link-mode bridge # interface GigabitEthernet1/0/12 port link-mode bridge # interface GigabitEthernet1/0/13 port link-mode bridge # interface GigabitEthernet1/0/14 port link-mode bridge # interface GigabitEthernet1/0/15 port link-mode bridge # interface GigabitEthernet1/0/16 port link-mode bridge # interface GigabitEthernet1/0/17 port link-mode bridge # interface GigabitEthernet1/0/18 port link-mode bridge # interface M-GigabitEthernet0/0/0 # scheduler logfile size 16 # line class aux user-role network-admin # line class vty user-role network-operator # line aux 0 user-role network-admin # line vty 0 31 authentication-mode scheme user-role network-operator # line vty 32 63 user-role network-operator # ip route-static 0.0.0.0 0 8.102.1.1 ip route-static 0.0.0.0 0 8.102.11.11 ip route-static 8.0.0.0 8 8.102.11.11 # undo info-center logfile enable info-center source STAMGR console deny info-center source STAMGR logbuffer deny # ssh server enable # gratuitous-arp mac-change retransmit 3 interval 2 # domain name system # domain default enable system # role name level-0 description Predefined level-0 role # role name level-1 description Predefined level-1 role # role name level-2 description Predefined level-2 role # role name level-3 description Predefined level-3 role # role name level-4 description Predefined level-4 role # role name level-5 description Predefined level-5 role # role name level-6 description Predefined level-6 role # role name level-7 description Predefined level-7 role # role name level-8 description Predefined level-8 role # role name level-9 description Predefined level-9 role # role name level-10 description Predefined level-10 role # role name level-11 description Predefined level-11 role # role name level-12 description Predefined level-12 role # role name level-13 description Predefined level-13 role # role name level-14 description Predefined level-14 role # user-group system # local-user admin class manage password hash $h$6$LRJ4l2oamz5ozlLD$2fFLNwDEBolJFbCeQJfdsvx4SDSfqDP6J1+CHn5bDN1GhUmwAfRF30y5WviIa++ncjNefcgqsEQYXrJB/UwOsQ== service-type telnet http https ssh authorization-attribute user-role network-admin # netconf ssh server enable # ip http enable ip https enable # rrop arp ap-proxy-gateway enable # wlan ap-group default-group vlan 1 radio 2.4g radio 5g radio 6g # wlan ap-group default-ponapgroup type pon vlan 1 # wlan virtual-ap-group default-virtualapgroup
贴主要配置:ip,互联端口;看看端口状态
 
	 
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
AC1 # version 9.1.081, ESS 1603 # sysname AC-35x # clock timezone Beijing add 08:00:00 # wlan global-configuration firmware-upgrade disable # telnet server enable # cloud-cluster enable #cloud-cluster service-cluster domain 3 cloud-cluster service-cluster domain 0 cloud-cluster service-cluster mac-address persistent always undo cloud-cluster auto-merge enable # dot1x dot1x authentication-method eap dot1x retry 10 dot1x timer supp-timeout 2 dot1x timer tx-period 2 # wlan tcp mss 1360 # dhcp enable # lldp global enable # system-working-mode standard password-recovery enable # vlan 1 # vlan 3 # vlan 102 # cloud-cluster member 1 member-ip 36.36.9.10 16 join-cluster ip 36.36.9.10 cluster-link bind interface GigabitEthernet1/0/3 # object-group service wpa3dot # dhcp server ip-pool 123 gateway-list 8.102.1.1 network 8.0.0.0 mask 255.0.0.0 address range 8.102.30.1 8.102.30.254 # wlan service-template 6ghz ssid 6GHz vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template bend-t1 ssid bend-t1 vlan 102 client forwarding-location ap akm mode psk preshared-key pass-phrase cipher $c$3$PH8drcpprA2eEhuswbLiRN83RAk9wJYIizCc cipher-suite ccmp security-ie rsn service-template enable # wlan service-template clear ssid clear vlan 102 client forwarding-location ac service-template enable # wlan service-template clear1 ssid clear1 client forwarding-location ac mlo enable service-template enable # wlan service-template clear2 ssid clear2 vlan 102 client forwarding-location ac mlo enable service-template enable # wlan service-template enterprise-t1 ssid enterprise-t1 vlan 102 client forwarding-location ac mlo enable akm mode dot1x cipher-suite ccmp security-ie rsn wpa3 enterprise-only-mode client-security authentication-mode dot1x client-security ignore-authentication dot1x domain domain # wlan service-template k1 ssid k1 vlan 102 client forwarding-location ac mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$f+m2bO1EUKDgMf9erkXO0TbFiSpq+Rc2/bdI cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k2 ssid k2 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k3 ssid k3 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k4 ssid k4 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k5 ssid k5 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k6 ssid k6 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k7 ssid k7 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k8 ssid k8 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k9 ssid k9 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k10 ssid k10 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k11 ssid k11 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k12 ssid k12 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k13 ssid k13 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k14 ssid k14 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k15 ssid k15 vlan 102 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$1BEDp17wGHak1NY39vxetf9+kRqLBIq46ION cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template k16 ssid k16 client forwarding-location ac service-template enable # wlan service-template mac ssid mac client forwarding-location ac client-security authentication-mode mac mac-authentication domain dd1 service-template enable # wlan service-template mlo client forwarding-location ac # wlan service-template mlo-1 ssid mlo-1 client forwarding-location ac mlo enable akm mode private-psk cipher-suite ccmp security-ie rsn client-security authentication-mode mac service-template enable # wlan service-template mlo-2 ssid mlo-2 client forwarding-location ac mlo enable akm mode dot1x cipher-suite ccmp security-ie rsn client-security authentication-mode mac-and-dot1x service-template enable # wlan service-template mlo-3 ssid mlo-3 client forwarding-location ac mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$cO156MCZTCMnGYYB8f8B6lAyn7izz5/IQSCZ cipher-suite ccmp security-ie rsn service-template enable # wlan service-template mlo-4 ssid mlo-4 client forwarding-location ac akm mode dot1x cipher-suite gcmp security-ie rsn wpa3 enterprise client-security authentication-mode dot1x service-template enable # wlan service-template mlo-5 ssid mlo-5 client forwarding-location ac mlo enable service-template enable # wlan service-template mlo-6 ssid mlo-6 client forwarding-location ac mlo enable service-template enable # wlan service-template mlo-7 ssid mlo-7 client forwarding-location ac mlo enable service-template enable # wlan service-template mlo-8 ssid mlo-8 client forwarding-location ac mlo enable service-template enable # wlan service-template mlo-9 ssid mlo-9 client forwarding-location ac mlo enable service-template enable # wlan service-template mlo-t1 ssid mlo-t1 vlan 102 client forwarding-location ac mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$UDF8LRRSjjgSX+azhXENu6HTLkNbyK6yYZHq cipher-suite ccmp security-ie rsn pmf optional service-template enable # wlan service-template mlo-t2 ssid mlo-t2 vlan 102 client forwarding-location ap mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$MrtpssVQZyolXSvTBmhxFEKab9MQfvhaLoIb cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional # wlan service-template mlo-test2 client forwarding-location ac # wlan service-template nomlo-t1 ssid nomlo-t1 vlan 102 client forwarding-location ac mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$FZVoKdr0wHdkjnGR3tFAKRnEjG4EmXd2Q7aU cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional # wlan service-template nomlo-t2 ssid nomlo-t2 client forwarding-location ap akm mode psk preshared-key pass-phrase cipher $c$3$KM2DT34HbAcLzO9CN2uqKcL6r7nLaiHkTq81 cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template nomlo0t2 client forwarding-location ac # wlan service-template owe ssid owe client forwarding-location ac cipher-suite ccmp security-ie rsn # wlan service-template portal ssid portal client forwarding-location ac portal enable method direct portal domain dm1 service-template enable # wlan service-template test7538 client forwarding-location ac # wlan service-template test7539 client forwarding-location ac # wlan service-template ttt1 ssid ttt1 vlan 102 client forwarding-location ac mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$MwQJybOVZgw/cplHZCbwBl/T2pkc1LGpAiHy cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template ttt2 ssid ttt2 vlan 102 client forwarding-location ap mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$RXgTBIFsUPvE82Y5ZkmQG3Xb3cT5KfSTZJ3n cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template ttt3 ssid ttt3 vlan 102 client forwarding-location ac mlo enable akm mode psk preshared-key pass-phrase cipher $c$3$qYpldrECuczLvWV51/EcNOxiK24e3M3K3xMI cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template wap3dot client forwarding-location ac # wlan service-template wpa2 ssid wpa2 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$7lz877/D0iTlyrA1Y5IOwerEDYg8jvluffdF0xk= cipher-suite ccmp security-ie rsn service-template enable # wlan service-template wpa3 ssid wpa3 client forwarding-location ac akm mode psk preshared-key pass-phrase cipher $c$3$Jaj6UjamTgeDmnxm6deSXfnOXmQ/IZmTJ1I7 cipher-suite ccmp security-ie rsn wpa3 personal optional pmf optional service-template enable # wlan service-template wpa3dot ssid wpa3dot vlan 102 client forwarding-location ac mlo enable akm mode dot1x cipher-suite ccmp security-ie rsn wpa3 enterprise-only-mode client-security authentication-mode dot1x dot1x domain bbb service-template enable # wlan service-template x1 client forwarding-location ac # interface NULL0 # interface Vlan-interface1 ip address 90.90.0.208 255.255.0.0 # interface Vlan-interface3 ip address dhcp-alloc # interface Vlan-interface102 ip address 8.102.10.23 255.255.0.0 # interface GigabitEthernet1/0/1 port link-mode bridge # interface GigabitEthernet1/0/2 port link-mode bridge # interface GigabitEthernet1/0/4 port link-mode bridge # interface GigabitEthernet1/0/5 port link-mode bridge port link-type trunk port trunk permit vlan 1 3 102 port trunk pvid vlan 102 undo stp enable # interface GigabitEthernet1/0/6 port link-mode bridge shutdown # interface GigabitEthernet1/0/7 port link-mode bridge # interface GigabitEthernet1/0/8 port link-mode bridge # interface GigabitEthernet1/0/9 port link-mode bridge # interface GigabitEthernet1/0/10 port link-mode bridge # interface GigabitEthernet1/0/11 port link-mode bridge # interface GigabitEthernet1/0/12 port link-mode bridge # interface GigabitEthernet1/0/13 port link-mode bridge # interface GigabitEthernet1/0/14 port link-mode bridge # interface GigabitEthernet1/0/15 port link-mode bridge # interface GigabitEthernet1/0/16 port link-mode bridge # interface GigabitEthernet1/0/17 port link-mode bridge # interface GigabitEthernet1/0/18 port link-mode bridge # interface GigabitEthernet1/0/3 shutdown # interface M-GigabitEthernet0/0/0 # scheduler logfile size 16 # line class aux user-role network-admin # line class vty user-role network-operator # line aux 0 user-role network-admin # line vty 0 31 authentication-mode scheme user-role network-operator # line vty 32 63 user-role network-operator # ip route-static 0.0.0.0 0 8.102.1.1 ip route-static 0.0.0.0 0 90.90.0.1 ip route-static 0.0.0.0 0 8.102.11.11 ip route-static 8.0.0.0 8 8.102.11.11 # undo info-center logfile enable info-center source STAMGR console deny info-center source STAMGR logbuffer deny # ssh server enable # gratuitous-arp mac-change retransmit 3 interval 2 # radius scheme test6688 primary authentication 8.102.10.5 primary accounting 8.102.10.5 key authentication cipher $c$3$rasko55gfRuG/X0YtVRxIMMAg9GP3w== key accounting cipher $c$3$JxeI+VxWzU/ov5ulLhz9WqJbbFfHkA== user-name-format without-domain # domain name bbb authentication default radius-scheme test6688 authorization default radius-scheme test6688 accounting default radius-scheme test6688 # domain name system # domain default enable system # role name level-0 description Predefined level-0 role # role name level-1 description Predefined level-1 role # role name level-2 description Predefined level-2 role # role name level-3 description Predefined level-3 role # role name level-4 description Predefined level-4 role # role name level-5 description Predefined level-5 role # role name level-6 description Predefined level-6 role # role name level-7 description Predefined level-7 role # role name level-8 description Predefined level-8 role # role name level-9 description Predefined level-9 role # role name level-10 description Predefined level-10 role # role name level-11 description Predefined level-11 role # role name level-12 description Predefined level-12 role # role name level-13 description Predefined level-13 role # role name level-14 description Predefined level-14 role # user-group system # local-user admin class manage password hash $h$6$3l25sAqeaVIQ7OaP$snQhfo49iuKkzv3o2kFPjnet1zgLO64MFhrpNNfLmEc5gf5OGuZGtibVeoK/I/bE1WjCfrKlvtUTroNm7eN/Lw== service-type telnet http https ssh authorization-attribute user-role network-admin # netconf ssh server enable # ip http enable ip https enable # rrop arp ap-proxy-gateway enable # wlan ap-group default- vlan 1 radio 2.4g radio 5g radio 6g # wlan ap-group default-group vlan 1 radio 2.4g radio 5g radio 6g ap-model WA7539 radio 1 radio 2 radio 3 gigabitethernet 1 ten-gigabitethernet 1 ten-gigabitethernet 2 # wlan ap-group default-ponapgroup type pon vlan 1 # wlan virtual-ap-group default-virtualapgroup # wlan ap test7539 model WA7539 serial-id 219801A4L7823AE00015 region-code HK wlan tunnel-preempt enable firmware-upgrade disable priority 7 vlan 1 vlan 102 radio 1 type dot11be channel 77 max-power 17 radio enable channel band-width 320 service-template ttt3 service-template wpa3dot service-template k1 service-template mlo-4 service-template ttt1 service-template ttt2 radio 2 type dot11abe channel 149 radio enable channel band-width 160 service-template clear2 service-template mlo-t1 radio 3 type dot11gbe channel 10 max-power 1 radio enable channel band-width 40 service-template clear2 service-template mlo-t1 gigabitethernet 1 ten-gigabitethernet 1 ten-gigabitethernet 2 # cloud-management server domain 8.102.2.5 cloud-management server port 31443