Motorola Wing 5 Manual
Have a look at the manual Motorola Wing 5 Manual online for free. It’s possible to download the document as PDF or print. UserManuals.tech offer 249 Motorola manuals and user’s guides for free. Share the user manual or guide on Facebook, Twitter or Google+.
MANAGEMENT-POLICY 17 - 9 17.1.5 https management-policy Enables the secure Hyper Text Transport Protocol Secure (HTTPS) server Supported in the following platforms: AP300 AP621 AP650 AP6511 AP6521 AP6532 AP71XX RFS4000 RFS6000 RFS7000 NX9000 NX9500 Syntax https Parameters • https Examples rfs7000-37FABE(config-management-policy-test)#https server rfs7000-37FABE(config-management-policy-test)# rfs7000-37FABE(config-management-policy-test)#show context management-policy test http server https server ftp username ftpuser password 1 aa91489995daff7b1363f37967c5104fe5952cae4936f902e653fccf81e8bb68 rootdir dir aaa-login radius external aaa-login radius policy test banner motd Have a Good Day rfs7000-37FABE(config-management-policy-test)# Related Commands https Enables HTTPS on this management policy – Sets the HHTPS server name noDisables the HTTPS server
17 - 10 WiNG CLI Reference Guide 17.1.6 idle-session-timeout management-policy Configures a session’s idle timeout. After the timeout period has been exceeded, the session is automatically terminated. Supported in the following platforms: AP300 AP621 AP650 AP6511 AP6521 AP6532 AP71XX RFS4000 RFS6000 RFS7000 NX9000 NX9500 Syntax idle-session-timeout Parameters • idle-session-timeout Examples rfs7000-37FABE(config-management-policy-test)#idle-session-timeout 30 rfs7000-37FABE(config-management-policy-test)# rfs7000-37FABE(config-management-policy-test)#show context management-policy test http server https server aaa-login radius external aaa-login radius policy test idle-session-timeout 30 banner motd “Have a Good Day” rfs7000-37FABE(config-management-policy-test)# Related Commands Sets the interval after which a configuration session is timed out. Specify a value from 0 - 1440 minutes. Zero (0) indicates the session is never terminated. noDisables idle session timeout period
MANAGEMENT-POLICY 17 - 11 17.1.7 no management-policy Negates a command or reverts values to their default. When used in the config management policy mode, the no command negates or reverts management policy parameters. Supported in the following platforms: AP300 AP621 AP650 AP6511 AP6521 AP6532 AP71XX RFS4000 RFS6000 RFS7000 NX9000 NX9500 Syntax no [aaa-login|banner|ftp|http|https|idle-session-timeout|restrict-access| snmp-server|ssh|telnet|user|service] no aaa-login tacacs [accounting|authorization|policy] no banner motd no ftp {password|rootdir} no [http|hhtps] server no [idle-session-timeout|restrict-action] no snmp-server [community|enable|host|manager|user] no snmp-server [community |enable [throttle|traps]| host port |manager [all|v2|v3]|max-pending-requests| user [snmpmanager|snmpoperator|snmptrap] no [ssh {port|use-key}|telnet|user ] no service prompt crash-info Parameters • no aaa-login tacacs [accounting|authorization|policy] no aaa-login Disables or reverts user authorization parameters tacacs Disables TACACS server parameters accounting Disables TACACS accounting
17 - 12 WiNG CLI Reference Guide • no banner motd] • no ftp {password|rootdir} • no [http|hhtps] server • no [idle-session-timeout|restrict-action] • no snmp-server [community |enable [throttle|traps]| host port |manager [all|v2|v3]|max-pending-requests| user [snmpmanager|snmpoperator|snmptrap] authorization Disables TACACS authorization policy Disables a TACACS policy no banner motd Removes the motd banner no ftp Reverts to default FTP server settings password Optional. Reverts to default FTP password rootdir Optional. Reverts to default FTP root directory no http Disables the HTTP server no https Disables the HTTPS server no idle-session-timeout Disables session timeout period no restrict-session Removes management access restrictions placed on a device no snmp-server Disables the SNMP server parameters community Disables SNMP server access to a community – Specify the name of the community. enable [throttle|traps] Disables SNMP traps and throttle host port Removes SNMP trap recipient (host) details – Enter the IP address of the host (the trap recipient) port – Disables the port for sending SNMP traps manager [all|v2|v3] Disables SNMP manager max-pending-requests Resets the maximum pending requests to default user [snmpmanager| snmpoperator|snmptrap]Removes SNMPv3 user snmpmanager – Removes the SNMP manager snmpoperator – Removes the SNMP operator snmptrap – Removes the SNMP trap user
MANAGEMENT-POLICY 17 - 13 • no [ssh {port|use-key}|telnet|user ] • no service prompt crash-info] Examples rfs7000-37FABE(config-management-policy-test)#no banner motd rfs7000-37FABE(config-management-policy-test)#no idle-session-timeout rfs7000-37FABE(config-management-policy-test)#show context management-policy test http server https server no ssh aaa-login radius external aaa-login radius policy test idle-session-timeout 0 rfs7000-37FABE(config-management-policy-test)# Related Commands no ssh {port|use-key} Disables secure shell access port – Optional. Resets SSH port to factory default use-key – Optional. Resets RSA key to factory default no telnet Disables Telnet no user Deletes a user account – Specify the username of the account. no service Disables service commands prompt Disables CLI prompt settings crash-info Excludes asterisks (*) at the end of the prompt, if the device has crash files in flash:/ crashinfo bannerConfigures the login motd banner ftpConfigures the FTP server parameters httpEnables HTTP httpsEnables HTPPS idle-session-timeoutConfigures a session’s idle timeout restrict-accessRestricts management access to a set of hosts or subnets. Also enables the logging of access requests snmp-serverConfigures SNMP engine parameters sshEnables SSH connection between client and server telnetEnables Telnet userAdds a new user account serviceInvokes service commands to troubleshoot or debug (config-if) instance configurations
17 - 14 WiNG CLI Reference Guide 17.1.8 restrict-access management-policy Restricts management access to a set of hosts or subnets Supported in the following platforms: AP300 AP621 AP650 AP6511 AP6521 AP6532 AP71XX RFS4000 RFS6000 RFS7000 NX9000 NX9500 Syntax restrict-access [host|ip-access-list|subnet] restrict-access host {|log|subnet} restrict-access host {log [all|denied-only]} restrict-access host {subnet [] {log [all|denied-only]}} restrict-access ip-access-list restrict-access subnet {|host|log} restrict-access subnet {log [all|denied-only]} restrict-access subnet {host [] {log [all|denied-only]}} Parameters • restrict-access host {log [all|denied-only] host Restricts management access to a specified host. Uses the IP address of a host to filter access requests – Specify the host IP address. log [all|denied-only]Configures a logging policy for access requests. Sets the log type generated for access requests all – Logs all access requests, both denied and permitted denied-only – Logs only denied access
MANAGEMENT-POLICY 17 - 15 • restrict-access host {subnet [] {log [all|denied-only]}} • restrict-access ip-access-list • restrict-access subnet {log [all|denied-only]} • restrict-access subnet {host [] {log [all|denied-only]}} host Restricts management access to a specified host. Uses the IP address of a host to filter access requests – Specify the host IP address. subnet Optional. Restricts access on a specified subnet. Uses a subnet IP address as a second filter option. – Sets the subnet IP address in the A.B.C.D/M format log [all|denied-only] Optional. Configures logging policy for access requests. Sets the log type generated for access requests all – Logs all access requests, both denied and permitted denied-only – Logs only denied access ip-access-list Uses an IP access list to filter access requests Sets the access list name subnet Restricts access to a specified subnet. Uses a subnet IP address to filter access requests – Sets the IP address of the subnet in the A.B.C.D/M format log [all| denied-only]Optional. Configures a logging policy for access requests. Sets the log type generated for access requests all – Logs all access requests, both denied and permitted denied-only – Logs only denied access subnet Restricts access to a specified subnet. Uses a subnet IP address to filter access requests – Sets the IP address of the subnet in the A.B.C.D/M format host Uses the host IP address as a second filter – Specify the host IP address. log [all|denied-only]Optional. Configures a logging policy for access requests. Sets the log type generated for access requests all – Logs all access requests, both denied and permitted denied-only – Logs only denied access
17 - 16 WiNG CLI Reference Guide Examples rfs7000-37FABE(config-management-policy-test)#restrict-access host 172.16.10.2 log all rfs7000-37FABE(config-management-policy-test)# rfs7000-37FABE(config-management-policy-test)#restrict-access subnet 172.16.10.20/24 host 172.16.10.3 log all rfs7000-37FABE(config-management-policy-test)# rfs7000-37FABE(config-management-policy-test)#restrict-access host 172.16.10.4 log denied-only rfs7000-37FABE(config-management-policy-test)# rfs7000-37FABE(config-management-policy-test)#show context management-policy test http server no ssh restrict-access subnet 172.16.10.20/24 host 172.16.10.3 log all restrict-access host 172.16.10.2 log all restrict-access host 172.16.10.4 log denied-only rfs7000-37FABE(config-management-policy-test)# Related Commands noRemoves device access restrictions
MANAGEMENT-POLICY 17 - 17 17.1.9 snmp-server management-policy Enables the Simple Network Management Protocol (SNMP) engine parameters Supported in the following platforms: AP300 AP621 AP650 AP6511 AP6521 AP6532 AP71XX RFS4000 RFS6000 RFS7000 NX9000 NX9500 Syntax snmp-server [community|enable|host|manager|max-pending-request|throttle|user] snmp-server community [ro|rw] snmp-server enable [throttle|traps] snmp-server host [v2c|v3] {} snmp-server [manager [all|v2|v3]|max-pending-request ] snmp-server throttle {interval [3000|5000|7000]} snmp-server user [snmpmanager|snmpoperator|snmptrap] snmp-server user [snmpmanager|snmpoperator|snmptrap] v3 [auth|encrypted] snmp-server user [snmpmanager|snmpoperator|snmptrap] v3 auth md5 [0 |2 |] snmp-server user [snmpmanager|snmpoperator|snmptrap] v3 encrypted [auth md5|des auth md5] [0 |2 | ]
17 - 18 WiNG CLI Reference Guide Parameters • snmp-server community [ro|rw] • snmp-server enable [throttle|traps] • snmp-server host [v2c|v3] {} • snmp-server [manager [all|v2|v3]|max-pending-request ] • snmp-server throttle {interval [3000|5000|7000]} community Sets the community string and access privileges. Enables SNMP access by configuring community strings that act like passwords. Configure different types of community strings, each string providing a different form of access. Provide either read-only (ro) or read-write (rw) access. – Sets the SNMP community name [ro|rw] Select one of the following access types: ro – Assigns read only access to a community string rw – Assigns read and write access to a community string enable throttle Enables SNMP throttle enable traps Enables SNMP traps, sent to the management stations. Enabling this feature, ensures despatch of SNMP notifications to all hosts. host Configures a IP address of the host [v2c|v3] {1-65535} Configures the SNMP version used to send the traps v2c – Uses SNMP version 2c v3 – Uses SNMP version 3 Optional. Specifies the UDP port of the host – Sets a value from 1 - 65535. The default value is 162. manager [all|v2|v3] Enables SNMP manager and specifies the SNMP version all – Enables SNMP manager version v2 and v3 v2 – Enables SNMP manager version v2 only v3 – Enables SNMP manager version v3 only max-pending-request Sets the maximum pending access requests from 64 - 1024. The default is 128. throttle Enables CPU control on SNMP activities. Use this command to set the CPU throttle interval. interval Optional. Configures a delay time in microseconds 3000 – Configures delay time as 3000 microseconds 5000 – Configures delay time as 5000 microseconds 7000 – Configures delay time as 7000 microseconds