H3C WAC361 备忘

<H3C>display current-configuration
#
 version 5.20, ESS 3703P73
#
 sysname H3C
#
 domain default enable system
#
 dns proxy enable
#
 telnet server enable
#
 port-security enable
#
 wlan client learn-ipaddr enable
#
 wlan auto-ap enable
#
 password-recovery enable
#
 time-range working 09:00 to 18:00 working-day
#
acl number 200
 rule 0 permit
#
vlan 1
#
vlan 13
#
domain system
 access-limit disable
 state active
 idle-cut disable
 self-service-url disable
#
traffic behavior workingAction
#
user-group system
 group-attribute allow-guest
#
local-user admin
 password cipher $c$3$F7mZWZ+JQ4i27aYd+K+WP/4mGqpLcZm3LMTFs1FK9Zw=
 authorization-attribute level 3
 service-type telnet
 service-type web
#
wlan rrm
 dot11a mandatory-rate 6 12 24
 dot11a supported-rate 9 18 36 48 54
 dot11b mandatory-rate 1 2
 dot11b supported-rate 5.5 11
 dot11g mandatory-rate 1 2 5.5 11
 dot11g supported-rate 6 9 12 18 24 36 48 54
 scan type active
#
wlan service-template 1 clear
 ssid H3C
 bind WLAN-ESS 1
#
wlan service-template 2 crypto
 ssid HZJT
 bind WLAN-ESS 0
 cipher-suite tkip
 cipher-suite ccmp
 security-ie rsn
 security-ie wpa
 key-derivation sha1-and-sha256
 service-template enable
#
wlan ap-group default_group
 ap autoap
 ap wap712h
 ap 50da0001bbc0
 ap 50da-0000-1c40
 ap 50da-0001-ad40
 ap 50da-0001-b000
 ap 50da-0001-b7e0
 ap 50da-0001-bd80
 ap 50da-0001-be20
 ap 50da-0001-bee0
 dot11a service-template 2
 dot11bg service-template 2
 dot11a radio enable
 dot11bg radio enable
#
interface Cellular1/0/1
 async mode protocol
 link-protocol ppp
#
interface NULL0
#
interface Vlan-interface1
 ip address 168.13.0.254 255.255.252.0
#
interface Vlan-interface13
#
interface GigabitEthernet1/0/5
 port link-mode route
 nat outbound
 ip address 192.168.100.210 255.255.255.240
#
interface GigabitEthernet1/0/1
 port link-mode bridge
#
interface GigabitEthernet1/0/2
 port link-mode bridge
#
interface GigabitEthernet1/0/3
 port link-mode bridge
#
interface GigabitEthernet1/0/4
 port link-mode bridge
#
interface WLAN-ESS0
 port link-type hybrid
 port hybrid vlan 1 untagged
 port-security port-mode psk
 port-security tx-key-type 11key
 port-security preshared-key pass-phrase cipher $c$3$N/K5Zbzh1uwlmZWPYGMEU1rYoIZEywlMOX9f
#
interface WLAN-ESS1
#
interface WLAN-ESS2
 port link-type hybrid
 port hybrid vlan 1 untagged
#
interface WLAN-ESS3
 port link-type hybrid
 port hybrid vlan 1 untagged
 port-security port-mode psk
 port-security tx-key-type 11key
 port-security preshared-key pass-phrase cipher $c$3$9W/LlIx5UunGRikasOwtXlRvT7vo/58GAs4D
#
wlan ap 50da-0000-1c40 model WAP722E id 11
 serial-id 219801A0Q29161G00549
 radio 1
  service-template 2
  radio enable
 radio 2
  service-template 2
  radio enable
#
wlan ap 50da-0001-ad40 model WAP722E id 10
 serial-id 219801A0Q29161G00759
 radio 1
  service-template 2
  radio enable
 radio 2
  service-template 2
  radio enable
#
wlan ap 50da-0001-b000 model WAP722E id 7
 serial-id 219801A0Q29161G00862
 radio 1
  service-template 2
  radio enable
 radio 2
  service-template 2
  radio enable
#
wlan ap 50da-0001-b7e0 model WAP722E id 8
 serial-id 219801A0Q29161G00896
 radio 1
  service-template 2
  radio enable
 radio 2
  service-template 2
  radio enable
#
wlan ap 50da-0001-bd80 model WAP722E id 4
 serial-id 219801A0Q29161G00964
 radio 1
  service-template 2
  radio enable
 radio 2
  service-template 2
  radio enable
#
wlan ap 50da-0001-be20 model WAP722E id 3
 serial-id 219801A0Q29161G00959
 radio 1
  service-template 2
  radio enable
 radio 2
  service-template 2
  radio enable
#
wlan ap 50da-0001-bee0 model WAP722E id 9
 serial-id 219801A0Q29161G00953
 radio 1
  service-template 2
  radio enable
 radio 2
  service-template 2
  radio enable
#
wlan ap 50da0001bbc0 model WAP722E id 6
 serial-id auto
 radio 1
  service-template 2
  radio enable
 radio 2
  service-template 2
  radio enable
#
wlan ap autoap model WAP722E id 2
 radio 1
  service-template 2
  radio enable
 radio 2
  service-template 2
  radio enable
#
wlan ap wap712h model WAP712H id 1
 serial-id auto
 radio 1
  service-template 2
  radio enable
 radio 2
  service-template 2
  radio enable
#
wlan ips
 malformed-detect-policy default
 signature deauth_flood signature-id 1
 signature broadcast_deauth_flood signature-id 2
 signature disassoc_flood signature-id 3
 signature broadcast_disassoc_flood signature-id 4
 signature eapol_logoff_flood signature-id 5
 signature eap_success_flood signature-id 6
 signature eap_failure_flood signature-id 7
 signature pspoll_flood signature-id 8
 signature cts_flood signature-id 9
 signature rts_flood signature-id 10
 signature addba_req_flood signature-id 11
 signature-policy default
 countermeasure-policy default
 attack-detect-policy default
 virtual-security-domain default
  attack-detect-policy default
  malformed-detect-policy default
  signature-policy default
  countermeasure-policy default
#
 ip route-static 0.0.0.0 0.0.0.0 Vlan-interface1 168.13.0.1
#
 snmp-agent
 snmp-agent local-engineid 800063A203487ADAC1E0D9
 snmp-agent community read public
 snmp-agent community write private
 snmp-agent sys-info version all
#
 ntp-service refclock-master 2
#
 wlan ap-authentication acl 200
#
 load xml-configuration
#
user-interface con 0
user-interface tty 4
user-interface vty 0 4
 authentication-mode scheme
 user privilege level 3
#
return