Zyxel ZyWALL 1100 [77/438] Security profile example

Zyxel USG 1900 [77/438] Security profile example
Chapter 8 Wireless LAN Profiles
ZyWALL / USG (ZLD) CLI Reference Guide
77
8.5.1 Security Profile Example
The following example creates a security profile with the name ‘SECURITY01’..
8.6 MAC Filter Profile Commands
The following table identifies the values required for many of these commands. Other input values
are discussed with the corresponding commands.
The following table describes the commands available for security profile management. You must
use the
configure terminal command to enter the configuration mode before you can use
these commands.
Router(config)# wlan-security-profile SECURITY01
Router(config-security-profile)# mode wpa2
Router(config-security-profile)# wpa-encrypt aes
Router(config-security-profile)# wpa-psk 12345678
Router(config-security-profile)# idle 3600
Router(config-security-profile)# reauth 1800
Router(config-security-profile)# group-key 1800
Router(config-security-profile)# exit
Router(config)#
Table 21 Input Values for General MAC Filter Profile Commands
LABEL DESCRIPTION
macfilter_profile_name The MAC filter profile name. You may use 1-31 alphanumeric characters,
underscores (
_), or dashes (-), but the first character cannot be a number.
This value is case-sensitive.
description2 Sets the description of the profile. You may use up to 60 alphanumeric
characters, underscores (
_), or dashes (-). This value is case-sensitive.
Table 22 Command Summary: MAC Filter Profile
COMMAND DESCRIPTION
show wlan-macfilter-profile {all |
macfilter_profile_name}
Displays the security profile(s).
all: Displays all profiles for the selected operating mode.
macfilter_profile_name: Displays the specified profile for the
selected operating mode.
wlan-macfilter-profile rename
macfilter_profile_name1
macfilter_profile_name2
Gives an existing security profile (macfilter_profile_name1) a
new name (macfilter_profile_name2).
[no] wlan-macfilter-profile
macfilter_profile_name
Enters configuration mode for the specified MAC filter profile. Use
the no parameter to remove the specified profile.
filter-action {allow | deny} Permits the wireless client with the MAC addresses in this profile
to connect to the network through the associated SSID; select
deny to block the wireless clients with the specified MAC
addresses.
The default is set to deny.
[no] MAC description description2 Sets the MAC address (with optional description) to which this
profile applies.
exit Exits configuration mode for this profile.

Содержание

Похожие устройства