求MSR800-W无线配置模板。
尝试多次,手机连接无线,均提示密码错误,我也不知道哪里出问题了....请大侠帮忙,谢谢。
以下为配置信息
| # |
| version 5.20, ESS 2512 |
| # |
| sysname Felix-H3C |
| # |
| domain default enable system |
| # |
| dar p2p signature-file flash:/p2p_default.mtd |
| # |
| port-security enable |
| # |
| web https-authorization mode auto |
| # |
| password-recovery enable |
| # |
| acl number 3000 name bohao |
| rule 0 permit ip |
| # |
| vlan 1 |
| # |
| vlan 10 |
| # |
| domain system |
| access-limit disable |
| state active |
| idle-cut disable |
| self-service-url disable |
| # |
| dhcp server ip-pool tr069_vlan10_1 extended |
| network mask 255.255.255.224 |
| # |
| dhcp server ip-pool vlan10 |
| network 172.16.4.32 mask 255.255.255.224 |
| gateway-list 172.16.4.33 |
| dns-list 114.114.114.114 8.8.8.8 |
| expired day 0 hour 2 |
| # |
| user-group system |
| group-attribute allow-guest |
| # |
| local-user admin |
| password cipher $c$3$mzKdoAGrTsV+4yVkBBYKV/MgVF06M1+nP8Jg3YrQzA== |
| authorization-attribute level 3 |
| service-type telnet terminal |
| service-type web |
| # |
| wlan rrm |
| dot11b mandatory-rate 1 2 |
| dot11b supported-rate 5.5 11 |
| dot11g mandatory-rate 1 2 5.5 11 |
| dot11g supported-rate 6 9 12 18 24 36 48 54 |
| # |
| wlan service-template 1 crypto |
| ssid CannotAccess |
| cipher-suite wep104 |
| wep default-key 1 wep104 pass-phrase cipher $c$3$HHNY6Gu5VNqxmxu0qVbgUvcrmTZns2 |
| 0U6XwLYkRwv04= |
| service-template enable |
| # |
| cwmp |
| undo cwmp enable |
| # |
| interface Cellular0/0 |
| async mode protocol |
| link-protocol ppp |
| # |
| interface Dialer1 |
| nat outbound 3000 |
| link-protocol ppp |
| ppp chap user ******* |
| ppp chap password cipher $c$3$raw+DEXpiwcCfK2cWzvx4S8S7R4YZNRYFAg= |
| ppp pap local-user ******* password cipher $c$3$oZqdzMzYbCkplem28VZEtY/vRp |
| zXtTfUZo4= |
| ppp ipcp dns admit-any |
| ppp ipcp dns request |
| mtu 1492 |
| ip address ppp-negotiate |
| tcp mss 1024 |
| dialer user home |
| dialer user username |
| dialer-group 1 |
| dialer bundle 1 |
| # |
| interface NULL0 |
| # |
| interface Vlan-interface1 |
| # |
| interface Vlan-interface10 |
| ip address 172.16.4.33 255.255.255.224 |
| undo dhcp select server global-pool |
| dhcp server apply ip-pool tr069_vlan10_1 |
| # |
| interface GigabitEthernet0/0 |
| port link-mode route |
| pppoe-client dial-bundle-number 1 |
| # |
| interface GigabitEthernet0/1 |
| port link-mode bridge |
| port access vlan 10 |
| # |
| interface GigabitEthernet0/2 |
| port link-mode bridge |
| # |
| interface GigabitEthernet0/3 |
| port link-mode bridge |
| # |
| interface GigabitEthernet0/4 |
| port link-mode bridge |
| # |
| interface WLAN-Ethernet0 |
| # |
| interface WLAN-Ethernet1 |
| # |
| interface WLAN-BSS32 |
| port access vlan 10 |
| # |
| interface WLAN-Radio1/0 |
| service-template 1 interface wlan-bss 32 |
| # |
| ip route-static 0.0.0.0 0.0.0.0 Dialer1 |
| # |
| dhcp server forbidden-ip 172.16.4.55 172.16.4.62 |
| # |
| dhcp enable |
| # |
| ip https enable |
| # |
| dialer-rule 1 ip permit |
| # |
| nms primary monitor-interface Dialer1 |
| # |
| load xml-configuration |
| # |
| load tr069-configuration |
| # |
| user-interface con 0 |
| authentication-mode scheme |
| user-interface tty 13 |
| user-interface vty 0 4 |
| authentication-mode scheme |
| user privilege level 3 |
| # |
| return |
(0)
最佳答案
wlan service-template 1 crypto
ssid CannotAccess
cipher-suite wep104
wep default-key 1 wep104
pass-phrase cipher $c$3$HHNY6Gu5VNqxmxu0qVbgUvcrmTZns2 0U6XwLYkRwv04=
service-template enable
这个加密模式太古老了,用CCMP+RSN的方式吧
(0)
没有附件呐,不加密的方式可以连接上吗?会不会是您加密方式有问题。
(0)
感谢达人回答,问题已经解决
不好意思,刚刚没刷出来,加密可参考如下配置: 配置无线加密服务模板 # 配置创建无线服务模板,ssid为test [H3C] wlan service-template 1 [H3C-wlan-st-1] ssid test # 配置AKM为PSK,配置PSK密钥,使用明文的字符串12345678作为共享密钥。 [H3C-wlan-st-1] akm mode psk [H3C-wlan-st-1] preshared-key pass-phrase simple 12345678 # 配置CCMP为加密套件,配置WPA2为安全信息元素。 [H3C-wlan-st-1] cipher-suite ccmp [H3C-wlan-st-1] security-ie rsn # 使能无线服务模板。 [H3C-wlan-st-1] service-template enable [H3C-wlan-st-1] quit
等我试一下,谢谢。如有问题,评论区发你
在模板下好像没有 akm这条命令呢.....
port-security port-mode psk 这个试一下
它是在security-ie这条命令下选择加密模式。然后设置密码好像只有wep开头的命令,没有直接Preshared开头的命令。我先试一下wep开头的命令设置一条密码试一下
那个加密方式比较老了、
达人,已经找到如何用wpa2加密,在bss下操作。但是配置好密码和相关密码套件(ccmp)之后,bss接口一下UP,一会儿又down....什么毛病?
终于,可以密码认证。但是不能获取到IP地址...也是醉了。所以bss接口,到底用access模式还是hybrid?如果用hybrid,是不是只能是vlan 1?
配置为access口,绑定您的业务vlan
感谢达人回答,问题已经解决
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
感谢达人的回答,问题已经解决