Home > Motorola > Wireless > Motorola Wing 5 Manual

Motorola Wing 5 Manual

    Download as PDF Print this page Share this page

    Have a look at the manual Motorola Wing 5 Manual online for free. It’s possible to download the document as PDF or print. UserManuals.tech offer 249 Motorola manuals and user’s guides for free. Share the user manual or guide on Facebook, Twitter or Google+.

    Page
    of 1128
    							MANAGEMENT-POLICY 17 - 9
    17.1.5 https
    management-policy
    Enables the secure Hyper Text Transport Protocol Secure (HTTPS) server
    Supported in the following platforms:
     AP300
     AP621
     AP650
     AP6511
     AP6521
     AP6532
     AP71XX
     RFS4000
     RFS6000
     RFS7000
     NX9000
     NX9500
    Syntax
    https 
    Parameters
    • https 
    Examples
    rfs7000-37FABE(config-management-policy-test)#https server
    rfs7000-37FABE(config-management-policy-test)#
    rfs7000-37FABE(config-management-policy-test)#show context
     management-policy test
     http server
     https server
     ftp username ftpuser password 1   
     aa91489995daff7b1363f37967c5104fe5952cae4936f902e653fccf81e8bb68 rootdir 
     dir
     aaa-login radius external
     aaa-login radius policy test
     banner motd Have a Good Day
    rfs7000-37FABE(config-management-policy-test)#
    Related Commands
    https  Enables HTTPS on this management policy
      – Sets the HHTPS server name
    noDisables the HTTPS server 
    						
    							17 - 10 WiNG CLI Reference Guide
    17.1.6 idle-session-timeout
    management-policy
    Configures a session’s idle timeout. After the timeout period has been exceeded, the session is automatically terminated.
    Supported in the following platforms:
     AP300
     AP621
     AP650
     AP6511
     AP6521
     AP6532
     AP71XX
     RFS4000
     RFS6000
     RFS7000
     NX9000
     NX9500
    Syntax
    idle-session-timeout 
    Parameters
    • idle-session-timeout 
    Examples
    rfs7000-37FABE(config-management-policy-test)#idle-session-timeout 30
    rfs7000-37FABE(config-management-policy-test)#
    rfs7000-37FABE(config-management-policy-test)#show context
    management-policy test
     http server
     https server
     aaa-login radius external
     aaa-login radius policy test
     idle-session-timeout 30
     banner motd “Have a Good Day”
    rfs7000-37FABE(config-management-policy-test)#
    Related Commands
     Sets the interval after which a configuration session is timed out. Specify a value from 
    0 - 1440 minutes. Zero (0) indicates the session is never terminated.
    noDisables idle session timeout period 
    						
    							MANAGEMENT-POLICY 17 - 11
    17.1.7 no
    management-policy
    Negates a command or reverts values to their default. When used in the config management policy mode, the no command 
    negates or reverts management policy parameters.
    Supported in the following platforms:
     AP300
     AP621
     AP650
     AP6511
     AP6521
     AP6532
     AP71XX
     RFS4000
     RFS6000
     RFS7000
     NX9000
     NX9500
    Syntax
    no [aaa-login|banner|ftp|http|https|idle-session-timeout|restrict-access|
    snmp-server|ssh|telnet|user|service]
    no aaa-login tacacs [accounting|authorization|policy]
    no banner motd
    no ftp {password|rootdir}
    no [http|hhtps] server
    no [idle-session-timeout|restrict-action]
    no snmp-server [community|enable|host|manager|user]
    no snmp-server [community |enable [throttle|traps]|
    host  port |manager [all|v2|v3]|max-pending-requests|
    user [snmpmanager|snmpoperator|snmptrap]
    no [ssh {port|use-key}|telnet|user ]
    no service prompt crash-info
    Parameters
    • no aaa-login tacacs [accounting|authorization|policy]
    no aaa-login Disables or reverts user authorization parameters
    tacacs Disables TACACS server parameters
    accounting Disables TACACS accounting 
    						
    							17 - 12 WiNG CLI Reference Guide
    • no banner motd]
    • no ftp {password|rootdir}
    • no [http|hhtps] server
    • no [idle-session-timeout|restrict-action]
    • no snmp-server [community |enable [throttle|traps]|
    host  port |manager [all|v2|v3]|max-pending-requests|
    user [snmpmanager|snmpoperator|snmptrap]
    authorization Disables TACACS authorization
    policy  Disables a TACACS policy
    no banner motd Removes the motd banner
    no ftp Reverts to default FTP server settings
    password Optional. Reverts to default FTP password
    rootdir Optional. Reverts to default FTP root directory
    no http Disables the HTTP server
    no https Disables the HTTPS server
    no idle-session-timeout Disables session timeout period
    no restrict-session Removes management access restrictions placed on a device
    no snmp-server Disables the SNMP server parameters
    community  Disables SNMP server access to a community
      – Specify the name of the community.
    enable [throttle|traps] Disables SNMP traps and throttle
    host  port  Removes SNMP trap recipient (host) details
      – Enter the IP address of the host (the trap recipient)
     port  – Disables the port for sending SNMP traps
    manager [all|v2|v3] Disables SNMP manager
    max-pending-requests Resets the maximum pending requests to default
    user [snmpmanager|
    snmpoperator|snmptrap]Removes SNMPv3 user
     snmpmanager – Removes the SNMP manager
     snmpoperator – Removes the SNMP operator
     snmptrap – Removes the SNMP trap user 
    						
    							MANAGEMENT-POLICY 17 - 13
    • no [ssh {port|use-key}|telnet|user ]
    • no service prompt crash-info]
    Examples
    rfs7000-37FABE(config-management-policy-test)#no banner motd
    rfs7000-37FABE(config-management-policy-test)#no idle-session-timeout
    rfs7000-37FABE(config-management-policy-test)#show context
    management-policy test
     http server
     https server
     no ssh
     aaa-login radius external
     aaa-login radius policy test
     idle-session-timeout 0
    rfs7000-37FABE(config-management-policy-test)#
    Related Commands
    no ssh {port|use-key} Disables secure shell access
     port – Optional. Resets SSH port to factory default
     use-key – Optional. Resets RSA key to factory default
    no telnet Disables Telnet
    no user  Deletes a user account
     – Specify the username of the account.
    no service Disables service commands
    prompt Disables CLI prompt settings
    crash-info Excludes asterisks (*) at the end of the prompt, if the device has crash files in flash:/
    crashinfo
    bannerConfigures the login motd banner
    ftpConfigures the FTP server parameters
    httpEnables HTTP
    httpsEnables HTPPS
    idle-session-timeoutConfigures a session’s idle timeout
    restrict-accessRestricts management access to a set of hosts or subnets. Also enables the logging of 
    access requests
    snmp-serverConfigures SNMP engine parameters
    sshEnables SSH connection between client and server
    telnetEnables Telnet
    userAdds a new user account
    serviceInvokes service commands to troubleshoot or debug 
    (config-if) instance 
    configurations 
    						
    							17 - 14 WiNG CLI Reference Guide
    17.1.8 restrict-access
    management-policy
    Restricts management access to a set of hosts or subnets
    Supported in the following platforms:
     AP300
     AP621
     AP650
     AP6511
     AP6521
     AP6532
     AP71XX
     RFS4000
     RFS6000
     RFS7000
     NX9000
     NX9500
    Syntax
    restrict-access [host|ip-access-list|subnet]
    restrict-access host  {|log|subnet}
    restrict-access host  {log [all|denied-only]}
    restrict-access host  {subnet [] {log [all|denied-only]}}
    restrict-access ip-access-list 
    restrict-access subnet  {|host|log}
    restrict-access subnet  {log [all|denied-only]}
    restrict-access subnet  {host [] {log [all|denied-only]}}
    Parameters
    • restrict-access host  {log [all|denied-only]
    host  Restricts management access to a specified host. Uses the IP address of a host to filter 
    access requests
      – Specify the host IP address.
    log 
    [all|denied-only]Configures a logging policy for access requests. Sets the log type generated for access 
    requests
     all – Logs all access requests, both denied and permitted
     denied-only – Logs only denied access 
    						
    							MANAGEMENT-POLICY 17 - 15
    • restrict-access host  {subnet [] {log [all|denied-only]}}
    • restrict-access ip-access-list 
    • restrict-access subnet  {log [all|denied-only]}
    • restrict-access subnet  {host [] {log [all|denied-only]}}
    host  Restricts management access to a specified host. Uses the IP address of a host to filter 
    access requests
      – Specify the host IP address.
    subnet  Optional. Restricts access on a specified subnet. Uses a subnet IP address as a second 
    filter option.
      – Sets the subnet IP address in the A.B.C.D/M format
    log [all|denied-only] Optional. Configures logging policy for access requests. Sets the log type generated for 
    access requests
     all – Logs all access requests, both denied and permitted
     denied-only – Logs only denied access
    ip-access-list Uses an IP access list to filter access requests
     Sets the access list name
    subnet  Restricts access to a specified subnet. Uses a subnet IP address to filter access requests
      – Sets the IP address of the subnet in the A.B.C.D/M format
    log [all|
    denied-only]Optional. Configures a logging policy for access requests. Sets the log type generated for 
    access requests
     all – Logs all access requests, both denied and permitted
     denied-only – Logs only denied access
    subnet  Restricts access to a specified subnet. Uses a subnet IP address to filter access requests
      – Sets the IP address of the subnet in the A.B.C.D/M format
    host  Uses the host IP address as a second filter
      – Specify the host IP address.
    log 
    [all|denied-only]Optional. Configures a logging policy for access requests. Sets the log type generated for 
    access requests
     all – Logs all access requests, both denied and permitted
     denied-only – Logs only denied access 
    						
    							17 - 16 WiNG CLI Reference Guide
    Examples
    rfs7000-37FABE(config-management-policy-test)#restrict-access host 172.16.10.2 log 
    all
    rfs7000-37FABE(config-management-policy-test)#
    rfs7000-37FABE(config-management-policy-test)#restrict-access subnet 172.16.10.20/24 
    host 172.16.10.3 log all
    rfs7000-37FABE(config-management-policy-test)#
    rfs7000-37FABE(config-management-policy-test)#restrict-access host 172.16.10.4 log 
    denied-only
    rfs7000-37FABE(config-management-policy-test)#
    rfs7000-37FABE(config-management-policy-test)#show context
    management-policy test
     http server
     no ssh
     restrict-access subnet 172.16.10.20/24 host 172.16.10.3 log all
    restrict-access host 172.16.10.2 log all
    restrict-access host 172.16.10.4 log denied-only
    rfs7000-37FABE(config-management-policy-test)#
    Related Commands
    noRemoves device access restrictions 
    						
    							MANAGEMENT-POLICY 17 - 17
    17.1.9 snmp-server
    management-policy
    Enables the Simple Network Management Protocol (SNMP) engine parameters
    Supported in the following platforms:
     AP300
     AP621
     AP650
     AP6511
     AP6521
     AP6532
     AP71XX
     RFS4000
     RFS6000
     RFS7000
     NX9000
     NX9500
    Syntax
    snmp-server [community|enable|host|manager|max-pending-request|throttle|user]
    snmp-server community  [ro|rw]
    snmp-server enable [throttle|traps]
    snmp-server host  [v2c|v3] {}
    snmp-server [manager [all|v2|v3]|max-pending-request ]
    snmp-server throttle {interval [3000|5000|7000]}
    snmp-server user [snmpmanager|snmpoperator|snmptrap]
    snmp-server user [snmpmanager|snmpoperator|snmptrap] v3 [auth|encrypted]
    snmp-server user [snmpmanager|snmpoperator|snmptrap] v3 auth md5 
    [0 |2 |]
    snmp-server user [snmpmanager|snmpoperator|snmptrap] v3 encrypted 
    [auth md5|des auth md5] [0 |2 |
    ] 
    						
    							17 - 18 WiNG CLI Reference Guide
    Parameters
    • snmp-server community  [ro|rw]
    • snmp-server enable [throttle|traps]
    • snmp-server host  [v2c|v3] {}
    • snmp-server [manager [all|v2|v3]|max-pending-request ]
    • snmp-server throttle {interval [3000|5000|7000]}
    community 
    Sets the community string and access privileges. Enables SNMP access by configuring 
    community strings that act like passwords. Configure different types of community 
    strings, each string providing a different form of access. Provide either read-only (ro) or 
    read-write (rw) access.
      – Sets the SNMP community name
    [ro|rw] Select one of the following access types:
     ro – Assigns read only access to a community string
     rw – Assigns read and write access to a community string
    enable throttle Enables SNMP throttle
    enable traps Enables SNMP traps, sent to the management stations. Enabling this feature, ensures 
    despatch of SNMP notifications to all hosts.
    host  Configures a IP address of the host
    [v2c|v3] {1-65535} Configures the SNMP version used to send the traps
     v2c – Uses SNMP version 2c
     v3 – Uses SNMP version 3
     Optional. Specifies the UDP port of the host
      – Sets a value from 1 - 65535. The default value is 162.
    manager [all|v2|v3] Enables SNMP manager and specifies the SNMP version
     all – Enables SNMP manager version v2 and v3
     v2 – Enables SNMP manager version v2 only
     v3 – Enables SNMP manager version v3 only
    max-pending-request 
    Sets the maximum pending access requests from 64 - 1024. The default is 128.
    throttle Enables CPU control on SNMP activities. Use this command to set the CPU throttle 
    interval.
    interval Optional. Configures a delay time in microseconds
     3000 – Configures delay time as 3000 microseconds
     5000 – Configures delay time as 5000 microseconds
     7000 – Configures delay time as 7000 microseconds 
    						
    All Motorola manuals Comments (0)