!
version 12.4
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname Wap1
!
enable secret 5 ***
!
aaa new-model
!
!
aaa group server radius rad_eap
server 172.16.9.250 auth-port 1812 acct-port 1813
!
aaa group server radius rad_mac
!
aaa group server radius rad_acct
!
aaa group server radius rad_admin
!
aaa group server tacacs+ tac_admin
!
aaa group server radius rad_pmip
!
aaa group server radius dummy
!
aaa group server radius OUR_INFRASTRUCTURE
server 172.16.9.250 auth-port 1812 acct-port 1813
!
aaa authentication login eap_methods group rad_eap
aaa authentication login mac_methods local
aaa authentication login method_OUR_INFRASTRUCTURE group OUR_INFRASTRUCTURE
aaa authorization exec default local
aaa accounting network acct_methods start-stop group rad_acct
!
aaa session-id common
!
!
!
dot11 ssid OUR
authentication open eap eap_methods
authentication network-eap eap_methods
guest-mode
!
power inline negotiation prestandard source
!
!
!
bridge irb
!
!
interface Dot11Radio0
no ip address
no ip route-cache
!
encryption key 1 size 128bit 7 *** transmit-key
encryption mode wep mandatory
!
ssid OUR
!
station-role root
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
bridge-group 1 spanning-disabled
!
interface Dot11Radio1
no ip address
no ip route-cache
shutdown
dfs band 3 block
channel dfs
station-role root
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
bridge-group 1 spanning-disabled
!
interface FastEthernet0
no ip address
no ip route-cache
duplex auto
speed auto
bridge-group 1
no bridge-group 1 source-learning
bridge-group 1 spanning-disabled
!
interface BVI1
ip address 172.16.9.241 255.255.248.0
no ip route-cache
!
ip default-gateway 172.16.8.2
ip http server
no ip http secure-server
ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
ip radius source-interface BVI1
radius-server local
nas 172.16.9.250 key 7 ***
user WAP1 nthash 7 ***
!
radius-server attribute 32 include-in-access-req format %h
radius-server host 172.16.9.250 auth-port 1812 acct-port 1813 key 7 ***
radius-server vsa send accounting
bridge 1 route ip
!
!
wlccp ap username WAP1 password 7 ***
wlccp authentication-server infrastructure method_OUR_INFRASTRUCTURE
wlccp wds priority 253 interface BVI1
!
line con 0
line vty 0 4
!
end
|