Transcription of ArubaOS 5.0 Command Line Interface - NVC
1 ArubaOS Command line Interface reference guide Copyright 2010 Aruba Networks, Inc. AirWave , Aruba Networks , Aruba Mobility Management System , Bluescanner, For Wireless That Works , Mobile Edge Architecture , People Move. Networks Must Follow , RFprotect , The All Wireless Workplace Is Now Open For Business, Green Island, and The Mobile Edge Company are trademarks of Aruba Networks, Inc. All rights reserved. Specifications in this manual are subject to change without notice. Originated in the USA. Any other trademarks appearing in this manual are the property of their respective companies. Open Source Code Certain Aruba products include Open Source software code developed by third parties, including software code subject to the GNU. General Public License (GPL), GNU Lesser General Public License (LGPL), or other Open Source Licenses. The Open Source code used can be found at this site: Legal Notice The use of Aruba Networks, Inc.
2 Switching platforms and software, by all individuals or corporations, to terminate other vendors' VPN. client devices constitutes complete acceptance of liability by that individual or corporation for this action and indemnifies, in full, Aruba Networks, Inc. from any and all legal actions that might be taken against it with respect to infringement of copyright on behalf of those vendors. Warranty This hardware product is protected by the standard Aruba warranty of one year parts/labor. For more information, refer to the ARUBACARE SERVICE AND SUPPORT TERMS AND CONDITIONS. Altering this device (such as painting it) voids the warranty. 1344 Crossman Avenue Sunnyvale, California 94089. Phone: Fax ArubaOS Command line Interface | reference guide 1510658-02 | April 2010. Introduction The ArubaOS Command line Interface (CLI) allows you to configure and manage Aruba controllers. The CLI is accessible from a local console connected to the serial port on the controllers or through a Telnet or Secure Shell (SSH) session from a remote management console or workstation.
3 Telnet access is disabled by default on Aruba controllers. To enable Telnet access, enter the telnet cli Command from a serial connection or an SSH session, or in the WebUI navigate to the Configuration >. NOTE Management > General page. What's New In ArubaOS The following commands have been added in the ArubaOS Command line Interface . Command Description ap authorization-profile This Command defines a temporary configuration profile for remote APs that are not yet authorized on the network. aaa password-policy mgmt Define a policy for creating management user passwords. acceleration Configure a RAP for the Application Acceleration module. This module improves application performance. cluster-member-ip This Command sets the controller as a control plane security cluster root, and specifies the IPsec key for a cluster member. cluster-root-ip This Command sets the controller as a control plane security cluster member, and defines the IPsec key for communication between the cluster member and the controller's cluster root.
4 Control-plane-security Configure the control plane security profile by identifying APs to receive security certificates. voice dialplan-profile Configure dialplan profiles for SIP calls. show acceleration Displays acceleration configuration and monitoring parameters. show cluster-config This Command sets the controller as a control plane security cluster root, and specifies the IPsec key for a cluster member. show cluster-switches Issue this Command on a master controller using control plane security in a multi-master environment to show other the other controllers to which it is connected. show tpm cert-info Displays the TPM and Factory Certificate information on MIPS controllers (M3, 3000, 600 Series), whitelist-db cpsec Configure the control plane security campus AP whitelist. whitelist-db cpsec-local- Remove local controllers from the control plane security local controller ctlr-list whitelist. whitelist-db cpsec-master- Remove a master controller from the control plane security master ctlr-list controller whitelist.
5 Ap wired-port-profile Configures the port specific parameters a wired port of an AP. ArubaOS Command line Interface | reference guide Introduction | 3. Command Description show via Displays VIA version and web session details. valid-network-oui-profile This Command allows you to add a new OUI to the controller. wlan client-wlan-profile This Command is used to configure client WLAN profiles for VIA client. Modified Commands The following commands were modified in ArubaOS Command Parameter Change aaa authentication via The following profile parameters were added: auth-profile z default z default-cap z default-rap rf dot11a-radio-profile This Command introduces the beacon-regulate parameter. When beacon-regulate enabled, this option introduces randomness in the beacon generation so that multiple APs on the same channel do not send beacons at the same time, which may cause collisions over the air. rf dot11a-radio-profile This Command introduces the beacon-regulate parameter.
6 When beacon-regulate beacon- enabled, this option introduces randomness in the beacon generation so regulate that multiple APs on the same channel do not send beacons at the same time, which may cause collisions over the air. rf optimization-profile The following parameters were deprecated: z coverage-hole-detection hole-detection-interval z hole-good-rssi-threshold z hole-good-sta-ageout z hole-idle-sta-ageout z hole-poor-rssi-threshold show memory debug Display detailed memory information to debug memory errors the [verbose] controller. This Command should only be used under the supervision of Aruba Technical Support. show rf dot11a-radio- The output of this Command now includes the Beacon Regulate profile parameter. When enabled, this option introduces randomness in the beacon generation so that multiple APs on the same channel do not send beacons at the same time, which may cause collisions over the air. show rf dot11g-radio- The output of this Command now includes the Beacon Regulate profile parameter.
7 When enabled, this option introduces randomness in the beacon generation so that multiple APs on the same channel do not send beacons at the same time, which may cause collisions over the air. stm The following parameters were deprecated: z start_trace z stop_trace wlan virtual-ap forward- The forward mode parameter in the wlan virtual-ap Command includes mode {tunnel|bridge|split- the new decrypt-tunnel forwarding mode option. tunnel|decrypt-tunnel}. 4 | Introduction ArubaOS Command line Interface | reference guide Deprecated Commands The following commands were deprecated in ArubaOS Command Revision History show ap debug mgmt-frames This Command was introduced in ArubaOS and deprecated in (deprecated) ArubaOS About this guide This guide describes the ArubaOS Command syntax. The commands in this guide are listed alphabetically. The following information is provided for each Command : z Command Syntax The complete syntax of the Command .
8 Z Description A brief description of the Command . z Syntax A description of the Command parameters, including license requirements for specific parameters if needed. The applicable ranges and default values, if any, are also included. z Usage Guidelines Information to help you use the Command , including: prerequisites, prohibitions, and related commands. z Example An example of how to use the Command . z Command History The version of ArubaOS in which the Command was first introduced. Modifications and changes to the Command are also noted z Command Information This table describes any licensing requirements, Command modes and platforms for which this Command is applicable. For more information about available licenses, see the Software Licenses chapter in the ArubaOS User guide . Connecting to the Controller This section describes how to connect to the controller to use the CLI. Serial Port Connection The serial port is located on the front panel of the controller.
9 Connect a terminal or PC/workstation running a terminal emulation program to the serial port on the controller to use the CLI. Configure your terminal or terminal emulation program to use the following communication settings. Baud Rate Data Bits Parity Stop Bits Flow Control 9600 8 None 1 None Telnet or SSH Connection Telnet or SSH access requires that you configure an IP address and a default gateway on the controller and connect the controller to your network. This is typically performed when you run the Initial Setup on the controller, as described in the Aruba Quick Start guide . In certain deployments, you can also configure a loopback address for the controller; see the Deploying a Basic Aruba User-Centric System . chapter in the ArubaOS User guide for more information. ArubaOS Command line Interface | reference guide Introduction | 5. Configuration changes on Master Controllers Some commands can only be issued when connected to a master controller.
10 If you make a configuration change on a master controller, all connected local controllers will subsequently update their configurations as well. You can manually synchronize all of the controllers at any time by saving the configuration on the master controller. CLI Access When you connect to the controller using the CLI, the system displays its host name followed by the login prompt. Log in using the admin user account and the password you entered during the Initial Setup on the controller (the password displays as asterisks). For example: (host). User: admin Password: **. When you are logged in, the user mode CLI prompt displays. For example: (host) >. User mode provides only limited access for basic operational testing such as running ping and traceroute. Certain management functions are available in enable (also called privileged ) mode. To move from user mode to enable mode requires you to enter an additional password that you entered during the Initial Setup (the password displays as asterisks).