博客
关于我
强烈建议你试试无所不能的chatGPT,快点击我
WLC exclusionlist
阅读量:5127 次
发布时间:2019-06-13

本文共 2853 字,大约阅读时间需要 9 分钟。

Configuring Client Exclusion

Configuring Client Exclusion Policies (GUI)


Step 1   Choose Security > Wireless Protection Policies > Client Exclusion Policies to open the Client Exclusion Policies page.
Step 2   Select any of these check boxes if you want the controller to exclude clients for the condition specified. The default value for each exclusion policy is enabled.
  • Excessive 802.11 Association Failures—Clients are excluded on the sixth 802.11 association attempt, after five consecutive failures.
  • Excessive 802.11 Authentication Failures—Clients are excluded on the sixth 802.11 authentication attempt, after five consecutive failures.
  • Excessive 802.1X Authentication Failures—Clients are excluded on the fourth 802.1X authentication attempt, after three consecutive failures.

  • IP Theft or IP Reuse—Clients are excluded if the IP address is already assigned to another device.
  • Excessive Web Authentication Failures—Clients are excluded on the fourth web authentication attempt, after three consecutive failures.

Issue the below command to see the time left when the client is excluded. default time is set to 60 sec. 

show exclusionlist  (我们可以通过show wps summary去查看开启了哪些exclusion policy)

Information similar to the following appears:

(Cisco Controller) >show exclusionlist          Dynamically Disabled Clients----------------------------  MAC Address             Exclusion Reason        Time Remaining (in secs)  -----------             ----------------        ------------------------00:40:96:b4:82:55         802.1X Failure          	51 (Cisco Controller) >show wps summary       Auto-Immune   Auto-Immune.................................... Disabled   Auto-Immune by aWIPS Prevention................ Disabled Client Exclusion Policy   Excessive 802.11-association failures.......... Enabled   Excessive 802.11-authentication failures....... Enabled   Excessive 802.1x-authentication................ Enabled   IP-theft....................................... Enabled   Excessive Web authentication failure........... Enabled   Maximum 802.1x-AAA failure attempts............ 3 Signature Policy   Signature Processing........................... Enabled Management Frame Protection   Global Infrastructure MFP state................ DISABLED (*all infrastructure settings are overridden)   AP Impersonation detection..................... Disabled   Controller Time Source Valid................... False                                     WLAN       Client WLAN ID  WLAN Name                  Status     Protection -------  -------------------------  ---------  ---------- 1        Hello                      Disabled   Optional 详细的CLI链接配置:https://www.cisco.com/c/en/us/td/docs/wireless/controller/7-4/configuration/guides/consolidated/b_cg74_CONSOLIDATED/b_cg74_CONSOLIDATED_chapter_010110101.html

转载于:https://www.cnblogs.com/MomentsLee/p/10570151.html

你可能感兴趣的文章
Astah 使用 流程图、类图、时序图
查看>>
test
查看>>
lintcode-medium-Rotate Image
查看>>
.net发展-关注
查看>>
python 面向对象
查看>>
【leetcode】Search Insert Position
查看>>
C#页面之间跳转功能的小结
查看>>
MFC中使用ADO方式连接数据库
查看>>
关于Sqlite数据库的断电测试
查看>>
框架设计之ADO.NET Command的ExecuteScalar误用情景及底层解说
查看>>
CocoaPods的安装与使用.
查看>>
python学习笔记要点
查看>>
word20161129
查看>>
codeforces 869B The Eternal Immortality
查看>>
Pycharm5注册方式
查看>>
mysql 导出表结构和表数据 mysqldump用法
查看>>
查看电脑连过的WiFi密码
查看>>
day02编程语言,Python语言介绍,Python解释器安装,环境变量,Python代码执行,pip,应用程序使用文件的三步骤,变量,变量的三大组成,比较,pycharm...
查看>>
初学libcurl
查看>>
Tarjan学习笔记
查看>>