D-Link dws-1008 Switch User Manual


 
D-Link DWS-1008 CLI Manual 425
Field Description
ssid-name
Service set identifier (SSID) managed by this service profile.
ssid-type
SSID type:
• crypto—Wireless traffic for the SSID is encrypted.
• clear—Wireless traffic for the SSID is unencrypted.
Beacon
Indicates whether the radio sends beacons, to advertise the SSID:
• no
• yes
Proxy ARP
Indicates whether proxy ARP is enabled. When this feature is enabled, MSS
answers ARP requests on behalf of wireless clients.
DHCP restrict
Indicates whether DHCP Restrict is enabled. When this feature is enabled,
MSS allows only DHCP traffic for a new client until the client has successfully
completed authentication and authorization.
No broadcast
Indicates whether broadcast restriction is enabled. When this feature is enabled,
MSS sends ARP requests and DHCP Offers and Acks as unicasts to their target
clients instead of forwarding them as broadcasts.
Short retry limit
Number of times a radio serving the service-profile’s SSID can send a short
unicast frame without receiving an acknowledgment.
Long retry limit
Number of times a radio serving the service-profile’s SSID can send a long
unicast frame without receiving an acknowledgment. A long unicast frame is a
frame that is equal to or longer than the RTS threshold.
Auth fallthru
Secondary (fallthru) encryption type when a user tries to authenticate but the
DWL-1008 switch managing the radio does not have an authentication rule with
a userglob that matches the username.
last-resort—Automatically authenticates the user and allows access to the
SSID requested by the user, without requiring a username and password.
• none—Denies authentication and prohibits the user from accessing the SSID.
• web-portal—Redirects the user to a web page for login to the SSID.
Sygate On-Demand
(SODA)
Whether SODA functionality is enabled for the service profile. When SODA
functionality is enabled, connecting clients download SODA agent files, which
perform security checks on the client.
Enforce SODA checks
Whether a client is allowed access to the network after it has downloaded and
run the SODA agent security checks. When SODA functionality is enabled,
and the DWS-1008 is configured to enforce SODA checks, then a connecting
client must download the SODA agent files and pass the checks in order to gain
access to the network.
SODA remediation ACL
The name of the ACL to be applied to the client if it fails the SODA agent checks.
If no remediation ACL is specified, then a client is disconnected from the network
if it fails the SODA agent checks.
Custom success
web-page
The name of the user-specified page that the client loads upon successful
completion of the SODA agent checks. If no page is specified, then the success
page is generated dynamically.
Custom failure web-page
The name of the user-specified page that the client loads if it fails SODA agent
checks. If no page is specified, then the failure page is generated dynamically.
The following table describes the fields in the display: