求MSR800-W无线配置模板。
尝试多次,手机连接无线,均提示密码错误,我也不知道哪里出问题了....请大侠帮忙,谢谢。
以下为配置信息
| # | 
| version 5.20, ESS 2512 | 
| # | 
| sysname Felix-H3C | 
| # | 
| domain default enable system | 
| # | 
| dar p2p signature-file flash:/p2p_default.mtd | 
| # | 
| port-security enable | 
| # | 
| web https-authorization mode auto | 
| # | 
| password-recovery enable | 
| # | 
| acl number 3000 name bohao | 
| rule 0 permit ip | 
| # | 
| vlan 1 | 
| # | 
| vlan 10 | 
| # | 
| domain system | 
| access-limit disable | 
| state active | 
| idle-cut disable | 
| self-service-url disable | 
| # | 
| dhcp server ip-pool tr069_vlan10_1 extended | 
| network mask 255.255.255.224 | 
| # | 
| dhcp server ip-pool vlan10 | 
| network 172.16.4.32 mask 255.255.255.224 | 
| gateway-list 172.16.4.33 | 
| dns-list 114.114.114.114 8.8.8.8 | 
| expired day 0 hour 2 | 
| # | 
| user-group system | 
| group-attribute allow-guest | 
| # | 
| local-user admin | 
| password cipher $c$3$mzKdoAGrTsV+4yVkBBYKV/MgVF06M1+nP8Jg3YrQzA== | 
| authorization-attribute level 3 | 
| service-type telnet terminal | 
| service-type web | 
| # | 
| wlan rrm | 
| dot11b mandatory-rate 1 2 | 
| dot11b supported-rate 5.5 11 | 
| dot11g mandatory-rate 1 2 5.5 11 | 
| dot11g supported-rate 6 9 12 18 24 36 48 54 | 
| # | 
| wlan service-template 1 crypto | 
| ssid CannotAccess | 
| cipher-suite wep104 | 
| wep default-key 1 wep104 pass-phrase cipher $c$3$HHNY6Gu5VNqxmxu0qVbgUvcrmTZns2 | 
| 0U6XwLYkRwv04= | 
| service-template enable | 
| # | 
| cwmp | 
| undo cwmp enable | 
| # | 
| interface Cellular0/0 | 
| async mode protocol | 
| link-protocol ppp | 
| # | 
| interface Dialer1 | 
| nat outbound 3000 | 
| link-protocol ppp | 
| ppp chap user ******* | 
| ppp chap password cipher $c$3$raw+DEXpiwcCfK2cWzvx4S8S7R4YZNRYFAg= | 
| ppp pap local-user ******* password cipher $c$3$oZqdzMzYbCkplem28VZEtY/vRp | 
| zXtTfUZo4= | 
| ppp ipcp dns admit-any | 
| ppp ipcp dns request | 
| mtu 1492 | 
| ip address ppp-negotiate | 
| tcp mss 1024 | 
| dialer user home | 
| dialer user username | 
| dialer-group 1 | 
| dialer bundle 1 | 
| # | 
| interface NULL0 | 
| # | 
| interface Vlan-interface1 | 
| # | 
| interface Vlan-interface10 | 
| ip address 172.16.4.33 255.255.255.224 | 
| undo dhcp select server global-pool | 
| dhcp server apply ip-pool tr069_vlan10_1 | 
| # | 
| interface GigabitEthernet0/0 | 
| port link-mode route | 
| pppoe-client dial-bundle-number 1 | 
| # | 
| interface GigabitEthernet0/1 | 
| port link-mode bridge | 
| port access vlan 10 | 
| # | 
| interface GigabitEthernet0/2 | 
| port link-mode bridge | 
| # | 
| interface GigabitEthernet0/3 | 
| port link-mode bridge | 
| # | 
| interface GigabitEthernet0/4 | 
| port link-mode bridge | 
| # | 
| interface WLAN-Ethernet0 | 
| # | 
| interface WLAN-Ethernet1 | 
| # | 
| interface WLAN-BSS32 | 
| port access vlan 10 | 
| # | 
| interface WLAN-Radio1/0 | 
| service-template 1 interface wlan-bss 32 | 
| # | 
| ip route-static 0.0.0.0 0.0.0.0 Dialer1 | 
| # | 
| dhcp server forbidden-ip 172.16.4.55 172.16.4.62 | 
| # | 
| dhcp enable | 
| # | 
| ip https enable | 
| # | 
| dialer-rule 1 ip permit | 
| # | 
| nms primary monitor-interface Dialer1 | 
| # | 
| load xml-configuration | 
| # | 
| load tr069-configuration | 
| # | 
| user-interface con 0 | 
| authentication-mode scheme | 
| user-interface tty 13 | 
| user-interface vty 0 4 | 
| authentication-mode scheme | 
| user privilege level 3 | 
| # | 
| return | 
(0)
最佳答案
wlan service-template 1 crypto
ssid CannotAccess
cipher-suite wep104
wep default-key 1 wep104
pass-phrase cipher $c$3$HHNY6Gu5VNqxmxu0qVbgUvcrmTZns2 0U6XwLYkRwv04=
service-template enable
这个加密模式太古老了,用CCMP+RSN的方式吧
(0)
没有附件呐,不加密的方式可以连接上吗?会不会是您加密方式有问题。
(0)
感谢达人回答,问题已经解决
不好意思,刚刚没刷出来,加密可参考如下配置: 配置无线加密服务模板 # 配置创建无线服务模板,ssid为test [H3C] wlan service-template 1 [H3C-wlan-st-1] ssid test # 配置AKM为PSK,配置PSK密钥,使用明文的字符串12345678作为共享密钥。 [H3C-wlan-st-1] akm mode psk [H3C-wlan-st-1] preshared-key pass-phrase simple 12345678 # 配置CCMP为加密套件,配置WPA2为安全信息元素。 [H3C-wlan-st-1] cipher-suite ccmp [H3C-wlan-st-1] security-ie rsn # 使能无线服务模板。 [H3C-wlan-st-1] service-template enable [H3C-wlan-st-1] quit
等我试一下,谢谢。如有问题,评论区发你
在模板下好像没有 akm这条命令呢.....
port-security port-mode psk 这个试一下
它是在security-ie这条命令下选择加密模式。然后设置密码好像只有wep开头的命令,没有直接Preshared开头的命令。我先试一下wep开头的命令设置一条密码试一下
那个加密方式比较老了、
达人,已经找到如何用wpa2加密,在bss下操作。但是配置好密码和相关密码套件(ccmp)之后,bss接口一下UP,一会儿又down....什么毛病?
终于,可以密码认证。但是不能获取到IP地址...也是醉了。所以bss接口,到底用access模式还是hybrid?如果用hybrid,是不是只能是vlan 1?
配置为access口,绑定您的业务vlan
感谢达人回答,问题已经解决
 
	 
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
感谢达人的回答,问题已经解决