Cisco AireOS to Cisco IOS XE Command Mapping Reference, Cisco IOS XE Release 3SE
Cisco AireOS to Cisco IOS XE Configuration Mode Commands
Downloads: This chapterpdf (PDF - 1.39MB) The complete bookPDF (PDF - 2.5MB) | Feedback

Cisco AireOS to Cisco IOS XE Configuration Mode Commands

Cisco AireOS to Cisco IOS XE Configuration Mode Commands

This guide provides information that helps you to know the equivalent Cisco IOS XE release commands for the Cisco AireOS commands. If you have upgraded the controller to Cisco IOS XE releases, you can easily locate the equivalent Cisco IOS XE release commands based on Configuration mode and Privilege executive mode commands. The sections that follow contain the commands in a tabular format, where the Cisco AireOS commands are on the left and the equivalent Cisco IOS XE release commands on the right.

802.11 Bands Parameter Commands

802.11 Bands Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for 802.11 bands:

Cisco AireOS Command Cisco IOS XE Release Command
config 802.11 {a |b} beaconperiod time_unit ap dot11 { 5ghz | 24ghz} beaconperiod time_unit
config 802.11 {a |b} fragmentation threshold ap dot11 { 5ghz | 24ghz} fragmentation threshold
config 802.11 {a |b} dtpc enable ap dot11 { 5ghz | 24ghz} dtpc
config 802.11 {a |b} disable network ap dot11 { 5ghz | 24ghz} shutdown

802.11n Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for 802.11n parameter:

Cisco AireOS Command Cisco IOS XE Release Command
config 802.11 { a | b } 11nSupport enable ap dot11 { 5ghz | 24ghz} dot11n
config 802.11 { a | b } 11nSupport disable no ap dot11 { 5ghz | 24ghz} dot11n
config 802.11 { a | b } 11nSupport a-mpdu tx priority valueenable ap dot11 { 5ghz | 24ghz} dot11n a-mpdu tx priority value
config 802.11 { a | b }11nSupport a-mpdu tx priority valuedisable no ap dot11 { 5ghz | 24ghz} dot11n a-mpdu tx priority value
config 802.11 { a | b } 11nSupport a-mpdu tx priority all enable ap dot11 { 5ghz | 24ghz} dot11n a-mpdu tx priority all
config 802.11 { a | b } 11nSupport a-mpdu tx priority all disable no ap dot11 { 5ghz | 24ghz} dot11n a-mpdu tx priority all
config 802.11 { a | b } 11nSupport guard-interval { any | long } [no] ap dot11 { 5ghz | 24ghz} dot11n guard-interval { any | long }
config 802.11 { a | b } 11nSupport mcs tx value enable ap dot11 { 5ghz | 24ghz} dot11n mcs tx rate
config 802.11 { a | b } 11nSupport rifs rx enable ap dot11 { 5ghz | 24ghz} dot11n rifs rx
config 802.11 { a | b } 11nSupport rifs rx disable no ap dot11 { 5ghz | 24ghz} dot11n rifs rx
config 802.11 { a | b } 11nSupport a-mpdu tx scheduler timeout rt timeout-value ap dot11 { 5ghz | 24ghz} a-mpdu tx scheduler timeout rt timeout-value
config 802.11 { a | b } 11nSupport a-mpdu tx scheduler timeout rt disable no ap dot11 { 5ghz | 24ghz} a-mpdu tx scheduler

802.11h Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for 802.11h parameter:

Cisco AireOS Command Cisco IOS XE Release Command
config 802.11h channelswitch enable ap dot11 5ghz channelswitch mode value
config 802.11h channelswitch disable no ap dot11 5ghz channelswitch mode value
config 802.11h powerconstraint value ap dot11 5ghz powerconstraint value

AAA Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for AAA:

Cisco AireOS Command Cisco IOS XE Release Command
config radius auth {add index ip_address port {ascii | hex} secret

config radius acct {add index ip_address port {ascii | hex} secret

radius server server_name

[radius-server] address {ipv4 | ipv6} ip_address { acct-port port | alias ipv4 _alias _address | auth-port port} key key

config radius auth keywrap add {ascii | hex} key-encryption-key message-authenticator-code-key index radius-server host ip_address auth-port port acct-port port key-wrap encryption-key {0 key | 7 key | key} message-auth-code-key {0 key | 7 key | key} {format {ascii | hex} key {0 key | 7 key | key} | key {0 key | 7 key | key}}

radius-server host ip_address key-wrap encryption-key {0 key | 7 key | key} message-auth-code-key {0 key | 7 key | key} {format {ascii | hex} key {0 key | 7 key | key} | key {0 key | 7 key | key}}

config radius callstationIdType {ap-group-name | ap-location | ap-macaddr-only | ap-macaddr-ssid | ap-name | ap-name-ssid | ipaddr | macaddr | vlan-id} wireless security dot1x radius call-station-id {ap-macaddress | ap-macaddress-ssid | ipaddress | macaddress}
config tacacs acct add {index address port {ascii | hex} secret}

config tacacs auth server-timeout server_index timeout

config tacacs acct server-timeout server_index timeout

tacacs server tacacs_server_name

[server-tacacs] address {ipv4 | ipv6} ip_address

[server-tacacs] key {0 key | 7 key | key}

[server-tacacs] timeout timeout

config wlan radius_server {auth | acct} enablewlan_id [wlan] accounting-list name

[wlan] security dot1x authentication-list method_list_name


Note


AAA is implemented in different ways in the Cisco AireOS and Cisco IOS XE release.

For detailed information about AAA in Cisco AireOS and Cisco IOS XE release, you can refer the following documents:

  • Cisco Wireless LAN Controller Configuration Guide
  • Security Configuration Guide, Cisco IOS XE Release 3SE (Cisco WLC 5700 Series)

ACL Commands

ACL Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for ACL:

Cisco AireOS Command Cisco IOS XE Release Command
config acl create acl_name ip access-list standard acl_name
config acl rule action rule_name rule_index {permit | deny} access-list acl_number {permit | deny} {any | host address | address}
config acl delete acl_name

no access-list access-list-number

config ipv6 acl create ipv6_acl_name ipv6 access-list ipv6_acl_name
config ipv6 acl rule action ipv6_acl_name index deny

ipv6 access-list ipv6_acl_name

[ipv6-acl] deny
config ipv6 acl rule action ipv6_acl_name index permit [ipv6-acl] permit
config ipv6 acl rule add ipv6_acl_name index [ipv6-acl] sequence number {deny | hardware | permit | remark}
config wlan acl wlan-id [acl name | none] [wlan] ip access-group acl-name
show acl

show access-lists

Access Points Commands

Access Points Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for Access Points:

Cisco AireOS Command Cisco IOS XE Release Command
config auth-list ap-policy authorize-ap enable ap auth-list ap-policy authorize-ap
config auth-list ap-policy authorize-ap disable no ap auth-list ap-policy authorize-ap
config auth-list ap-policy authorize-lsc-ap disable no ap auth-list ap-policy authorize-lsc-ap
config auth-list ap-policy mic enable ap auth-list ap-policy mic
config auth-list ap-policy mic disable no ap auth-list ap-policy mic
config auth-list ap-policy ssc enable ap auth-list ap-policy ssc
config auth-list ap-policy ssc disable no ap auth-list ap-policy ssc
config ap bridging enable all ap bridging
config ap bridging disable all no ap bridging
config 802.11 {a | b} beaconperiod time ap dot11 {5ghz | 24ghz} beaconperiod time
config 802.11 {a | b} beamforming global enable ap dot11 {5ghz | 24ghz} beamforming
config 802.11 {a | b} beamforming global disable no ap dot11 {5ghz | 24ghz} beamforming
config 802.11 {a | b} world-mode enable ap dot11 {5ghz | 24ghz} world-mode
config 802.11 {a | b} world-mode disable no ap dot11 {5ghz | 24ghz} world-mode
config ap mgmtuser add username AP_username password AP_password secret secret all ap mgmtuser username username password password_type password
config ap tcp-adjust-mss enable all mss_size ap tcp-adjust-mss size mss_size
config advanced max-1x-sessions no_of_sessions ap dot1x max-sessions no_of_sessions
config ap 802.1Xuser add username username password passwordall ap dot1x username username password {0 | 8} password
config ap ethernet duplex {auto | half | full} speed {speed | auto} all ap ethernet duplex {auto | half | full} speed {speed | auto}
config ap group-name groupname ap group groupname
config wlan apgroup add groupname ap group groupname

[apgroup] wlan wlan_name

config ap led-state enable ap led
config ap link-encryption enable all ap link-encryption
config ap link-latency enable all ap link-latency
config ap link-latency reset all ap link-latency reset
config ap power injector enable all {Switch_port_MAC_address | installed | override} ap power injector {switch-mac-address Switch_port_MAC_address | installed | override}
config ap power pre-standard enable all ap power pre-standard
config ap reporting-period time ap reporting-period time
config ap rst-button enable all ap reset-button
config ap static-IP add domain all domain_name ap static-ip domain domain_name
config ap syslog host global syslog-host-ip-address ap syslog host syslog-host-ip-address
config ap tcp-mss-adjust enable all size ap tcp-adjust-mss size size
config ap tftp-downgrade tftp-server-ip filename ap tftp-downgrade tftp-server-ip filename

Application Visibility and Control Commands

The following table lists the mapping configuration mode commands used between the Cisco AireOS and Cisco IOS XE release for Application Visibility and Control (AVC) and NetFlow:

Cisco AireOS Command Cisco IOS XE Release Command
config flow {add | delete} monitor monitor_name {exporter exporter_name | record record_name} flow exporter exporter _name

flow monitor monitor_name

flow record record _name

config wlan flow wlan_id monitor monitor_name {enable | disable} [wlan] ip flow monitor monitor_name {input | output}

Note


AVC is implemented in different ways in the Cisco AireOS and Cisco IOS XE release.

For detailed information about AVC in Cisco AireOS and Cisco IOS XE release, you can refer the following documents:

  • Cisco Wireless LAN Controller Configuration Guide
  • System Management Configuration Guide, Cisco IOS XE Release 3SE (Cisco WLC 5700 Series)

Band Select Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for band select:

Cisco AireOS Command Cisco IOS XE Release Command
config band-select client-rssi rssi wireless client band-select client-rssi rssi
config band-select cycle-count cycle_count wireless client band-select cycle-count count
config band-select cycle-threshold threshold wireless client band-select cycle-threshold threshold
config band-select expire dual-band timeout wireless client band-select expire dual-band timeout
config band-select expire suppression timeout wireless client band-select expire suppression timeout

CDP Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for CDP:

Cisco AireOS Command Cisco IOS XE Release Command
config cdp advertise-v2 {enable | disable} no cdp advertise-v2
config cdp disable no cdp run
config cdp enable cdp run
config cdp holdtime interval cdp holdtime interval
config cdp timer interval cdp timer interval
config ap cdp interface{ethernet interface_no | slot slot_no} enable ap cdp interface{ethernet interface_no | radioradio_interface_no}

CleanAir Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for CleanAir:

Cisco AireOS Command Cisco IOS XE Release Command
config 802.11 {a | b} cleanair enable network ap dot11 {24ghz | 5ghz} cleanair
config 802.11 {a | b} cleanair alarm air-quality enable ap dot11 {24ghz | 5ghz} cleanair alarm air-quality
config 802.11 {a | b} cleanair alarm air-quality threshold value ap dot11 {24ghz | 5ghz} cleanair alarm air-quality threshold value
config 802.11 {a | b} cleanair alarm device ap dot11 {24ghz | 5ghz } cleanair alarm device
config 802.11 b cleanair alarm device {bt-discovery |bt-link | canopy | cont-tx | dect-like | fh | inv | jammer |mw-oven | nonstd | superag | tdd-tx | video | wimax-fixed | wimax-mobile | xbox | zigbee} enable ap dot11 24ghz cleanair alarm device {bt-discovery | bt-link | canopy | cont-tx | dect-like | fh | inv | jammer | mw-oven | nonstd | superag | tdd-tx | video | wimax-fixed | wimax-mobile | xbox | zigbee}
config 802.11 a cleanair alarm device {canopy | cont-tx | dect-like | inv | jammer | nonstd | radar | superag | tdd-tx | video | wimax-fixed | wimax-mobile} enable ap dot11 5ghz cleanair alarm device {canopy | cont-tx | dect-like | inv | jammer | nonstd | radar | superag | tdd-tx | video | wimax-fixed | wimax-mobile}
config 802.11 b cleanair device {bt-discovery | bt-link | canopy | cont-tx | dect-like | fh | inv | jammer | mw-oven | nonstd | report | superag | tdd-tx | video | wimax-fixed | wimax-mobile | xbox | zigbee} enable ap dot11 24ghz cleanair device {bt-discovery | bt-link | canopy | cont-tx | dect-like | fh | inv | jammer | mw-oven | nonstd | report | superag | tdd-tx | video | wimax-fixed | wimax-mobile | xbox | zigbee}
config 802.11 a cleanair device {canopy | cont-tx | dect-like | inv | jammer | nonstd | radar | report | superag | tdd-tx | video | wimax-fixed | wimax-mobile} enable ap dot11 5ghz cleanair device {canopy | cont-tx | dect-like | inv | jammer | nonstd | radar | report | superag | tdd-tx | video | wimax-fixed | wimax-mobile}
config advanced 802.11 { a | b } channel cleanair-event enable ap dot11 {24ghz | 5ghz} rrm channel cleanair-event
config advanced 802.11 { a | b } channel cleanair-event sensitivity {low | high | medium} ap dot11 {24ghz | 5ghz} rrm channel cleanair-event sensitivity {low | high | medium}

DHCP Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for DHCP:

Cisco AireOS Command Cisco IOS XE Release Command
config dhcp enable name service dhcp
config dhcp create-scope name

config dhcp enable scope

ip dhcp pool pool_name
config dhcp delete-scope name no ip dhcp pool pool_name
config dhcp clear-lease ip-address ip_address clear ip dhcp binding
config dhcp clear-lease all clear ip dhcp binding

config dhcp address-pool scope start end

ip dhcp pool pool_name

[dhcp] network subnet subnet-mask
config dhcp default-router scope router_address_1 [router_address_2] [router_address_3]

ip dhcp pool pool_name

[dhcp] default-router ip_address
config dhcp dns-servers scope server_address_1 [server_address_2] [server_address_3] [dhcp] dns-server ip_address
config dhcp domain scope domain [dhcp] domain-name name
config dhcp lease scope seconds [dhcp] lease days hours minutes
config dhcp network scope network_ip_address netmask [dhcp] network network_ip_address netmask
config dhcp opt-82 {remote-id | format {binary | ascii}} [dhcp] option 82 {ascii | hex | instance | ip}
config dhcp netbios-name-servers scope_name wins1 [dhcp] netbios-name-server wins1
config interface dhcp interface type interface name primary dhcp_server_ip_address [interface] ip helper-address dhcp_server_ip_address
config dhcp opt82 remote-id [wlan] ip dhcp opt82-format add-ssid
config dhcp opt82 remote-id ap-ethmac [wlan] ip dhcp opt82-format ethmac
config wlan dhcp_server wlan-id dhcp_server_ip_address [wlan] ip dhcp server ip-address
config wlan dhcp_server wlan-id dhcp_server_ip_address required [wlan] ip dhcp required

Guest-LAN Mapping Commands

Guest-LAN Commands

The following table lists the mapping commands used between the Cisco Unified release and Cisco IOS XE release for Guest-LAN:

Cisco AirOS Release Command Cisco IOS XE Release Command
config guest-lan create guest-lan-id guest-lan-name [config] guest-lan guest-lan-name guest-lan-id
config guest-lan mobility anchor add guest-lan-id ip_address [guest-lan] mobility anchor ip_address
config guest-lan interface guest-lan-id interface-name [guest-lan] client vlan
config guest-lan aaa-override enable guest-lan-id [guest-lan] aaa-override
config guest-lan aaa-override disable guest-lan-id [no] aaa-override
config guest-lan acl guest-lan-id acl_name [guest-lan] acl acl_name
config guest-lan max-associated-clients max-clients guest-lan-id [guest-lan] client association limit max-clients
config guest-lan ipv6 acl guest-lan-id acl_name [guest-lan] ipv6 acl acl_name
config guest-lan session-timeout guest-lan-id timeout [guest-lan] session-timeout timeout
config guest-lan qos guest-lan-id {bronze | silver | gold | platinum} [guest-lan] qos {APF_VAP_QOS_BRONZE | APF_VAP_QOS_GOLD | APF_VAP_QOS_INVALID | APF_VAP_QOS_PLATINUM | APF_VAP_QOS_SILVER | APF_VAP_QOS_URANIUM}

IPv6 Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for IPv6 access control list (ACL) over WLAN:

Cisco AireOS Command Cisco IOS XE Release Command
config ipv6 acl create ipv6_acl_name ipv6 access-list ipv6_acl_name
config ipv6 neighbor-binding ra-throttle interval-option {ignore | passthrough | throttle} ipv6 neighbor tracking retry-interval time
config ipv6 acl rule action ipv6_acl_name index deny

ipv6 access-list ipv6_acl_name

[ipv6-acl] deny
config ipv6 acl rule action ipv6_acl_name index permit [ipv6-acl] permit
config ipv6 acl rule add ipv6_acl_name index [ipv6-acl] sequence number {deny | hardware | permit | remark}
config ipv6 neighbor-binding timers {down-lifetime down_lifetime | reachable-lifetime reachable_lifetime | stale-lifetime stale_lifetime} [ipv6-acl] ipv6 neighbor binding {down-lifetime down_lifetime | reachable-lifetime reachable_lifetime | stale-lifetime stale_lifetime}

Licensing Commands

RTU Licensing Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for Right to Use (RTU) licensing:


Note


RTU licensing is not supported on Cisco 5500 Series Controllers. RTU is supported only on Cisco Flex 7500 Series and 8500 Series controllers. This feature allows you to enable an AP license count on the controller without using any external tools after accepting an End User License Agreement (EULA).
Cisco AireOS Command Cisco IOS XE Release Command
license {activate | deactivate} ap-count eval acceptEULA license right-to-use {activate | deactivate}apcount evaluation acceptEULA
license add ap-count count license right-to-use {activate | deactivate} apcount count_adder_license
show license in-use show license right-to-use detail
show license summary show license right-to-use summary

Local Auth Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for Local auth:

Cisco AireOS Command Cisco IOS XE Release Command
config local-auth eap-profile add profile_name eap profile profile_name
config local-auth eap-profile method add EAP-profile-method profile_name

eap profile profile_name

[eap-profile] method {fast | gtc | leap | md5 | mschapv2 | peap | tls}

config local-auth eap-profile method fast {client-cert | local-cert} enable profile_name

eap method fast profile profile_name

[eap-profile] method fast profile profile

[eap-method-profile] client-cert-required

[eap-method-profile] local-cert-required

config local-auth eap-profile method fast anon-prov enable [eap-method-profile] allow-anon-prov
config local-auth method fast authority-id id_hex id_info_ascii [eap-method-profile] authority-id {identity id | information info}
config local-auth method fast pac-ttl ttl [eap-method-profile] pac-ttl ttl
config local-auth method fast server-key key [eap-method-profile] key key
config local-auth user-credentials local ldap aaa authentication dot1x authentication_list group ldap local

Location Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for location:

Cisco AireOS Command Cisco IOS XE Release Command
config location algorithm rssi-average location algorithm rssi-average
config location algorithm simple location algorithm simple
config location expiry calibrating-client seconds location expiry calibrating-client seconds
config location expiry client seconds location expiry client seconds
config location expiry rogue-aps seconds location expiry rogue-aps seconds
config location expiry tags seconds location expiry tags seconds
config location notify-threshold client db location notify-threshold client db
config location notify-threshold rogue-aps db location notify-threshold rogue-aps db
config location notify-threshold tags db location notify-threshold tags db
config location plm calibrating enable {multiband | uniband } location plm calibrating {multiband | uniband }
config location plm calibrating disable {multiband | uniband } no location plm calibrating
config location plm client enable burst-interval location plm client burst-interval
config location plm client disable burst-interval no location plm client burst-interval
config rfid status enable location rfid status
config rfid status disable no location rfid status
config rfid timeout seconds location rfid timeout seconds
config rfid vendor_name enable location rfid vendor-name name
config rfid vendor_name disable no location rfid vendor-name name
config location rssi-half-life calibrating-client seconds location rssi-half-life calibrating-client seconds
config location rssi-half-life client seconds location rssi-half-life client seconds
config location rssi-half-life rogue-aps seconds location rssi-half-life rogue-aps seconds
config location rssi-half-life tags seconds location rssi-half-life tags seconds

Logging Commands

Logging Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for logging:

Cisco AireOS Command Cisco IOS XE Release Command
config logging buffered {0-7 | alerts | critical | debugging | emergencies | errors | informational | notifications | warnings} logging buffered {0-7 | alerts | critical | debugging | emergencies | errors | informational | notifications | warnings}
config logging console {0-7 | alerts | critical | debugging | emergencies | errors | informational | notifications | warnings} logging console {0-7 | alerts | critical | debugging | emergencies | errors | informational | notifications | warnings}
config logging exception 512-2147483647 logging exception 512-2147483647
config logging fileinfo enable logging facility syslog
config logging syslog facility { auth-private | authorization | cron | daemon | ftp | kern | local0 | local1 | local2 | local3 | local4 | local5 | local6 | local7 | lpr | mail | news | sys11| sys12 | sys13 | sys14 | sys9 | syslog | user | uucp} logging facility { auth | cron | daemon | kern | local0 | local1 | local2 | local3 | local4 | local5 | local6 | local7 | lpr | mail | news | sys11| sys12 | sys13 | sys14 | sys9 | syslog | user | uucp}
config logging syslog host host_ip_address [delete] logging host host_ip_address

MAC Filter Commands

MAC filter is known as MAC authentication bypass (MAB) in the Cisco IOS XE release.

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for MAC filter:

Cisco AireOS Command Cisco IOS XE Release Command
config wlan mac-filtering enable wlan_id [wlan] mac-filtering mac-filter-name
config wlan mac-filtering disable wlan_id [wlan] no mac-filtering mac-filter-name
config macfilter radius-compat {cisco | free | other} [sg-radius] subscriber mac-filtering security-mode {mac | shared-secret | none}
config macfilter mac-delimiter {colon | hyphen | none} [sg-radius] mac-delimiter {colon | hyphen | single-hyphen | none}

Multicast DNS Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for Multicast DNS (mDNS):

Cisco AireOS Command Cisco IOS XE Release Command
config mdns snooping enable service-routing mdns-sd
config mdns service create service_name service_string origin {Wireless | Wired | All} lss enable query enable service-list mdns-sd service-list_name query
config mdns query interval interval_value

service-routing mdns-sd

[mdns] service-policy-query service_list_query_name service_list_query_interval
config interface mdns-profile {all | interface_name} profile_name

service-routing mdns-sd

[mdns] service-policy service_policy_name {IN | OUT}


Note


mDNS is implemented in different ways in the Cisco AireOS and Cisco IOS XE release.

For detailed information about mDNS in Cisco AireOS and Cisco IOS XE releases, you can refer the following documents:

  • Cisco Wireless LAN Controller Configuration Guide
  • Multicast Configuration Guide, Cisco IOS XE Release 3SE (Cisco WLC 5700 Series)

Mobility Commands

Mobility Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for mobility:

Cisco AireOS Command Cisco IOS XE Release Command
config mobility switchPeerGroup create peer-group-name wireless mobility controller peer-group switch-peer-group-name
config mobility switchPeerGroup delete peer-group-name no wireless mobility controller peer-group switch-peer-group-name
config mobility switchPeerGroup member add peer-group-member-ip-addr peer-group-name [public_IP_address_member] wireless mobility controller peer-group switch-peer-group-name member ip ip-address [public-ip public-ip-address]
config mobility switchPeerGroup multicast-mode peer-group-name multicast mode wireless mobility controller peer-group switch-peer-group-name multicast
config mobility switchPeerGroup multicast-address peer-group-name peer-group-multicast-ip-addr wireless mobility controller peer-group switch-peer-group-name multicast ip peer-group-multicast-ip-addr
config mobility switchPeerGroup bridge-domain-id peer-group-name bridge_domain_id wireless mobility controller peer-group switch-peer-group-name bridge-domain-id bridge domain id
config mobility group member add mac-address ip-address [group name] wireless mobility group member ip ip-address [public-ip public-ip-address] [group group-name]
config mobility dscp value wireless mobility dscp value
config mobility group keepalive {count number | interval interval} wireless mobility group keepalive {count number | interval interval}
config mobility group domain domain_name wireless mobility group name name
config mobility group multicast-address group_name ip_address wireless mobility group multicast-address group_name ip ip_address
config mobility oracle enable wireless mobility oracle
config mobility oracle disable no wireless mobility oracle
config mobility ip mo-ip-address wireless mobility oracle ip mo-ip-address

NETWORK Commands

NETWORK Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for NETWORK:

Cisco AireOS Command Cisco IOS XE Release Command
config advanced backup-controller {primary | secondary } controller-name controller-ip-addr ap capwap backup {primary | secondary } controller-name controller-ip-addr
config advanced timers ap-discovery-timeout seconds ap capwap timers discovery-timeout seconds
config advanced timers ap-heartbeat-timeout seconds ap capwap timers heartbeat-timeout seconds
config advanced timers ap-primary-discovery-timeout seconds ap capwap timers primary-discovery-timeout seconds
config advanced timers primed-join-timeout seconds ap capwap timers primed-join-timeout seconds
config advanced timers ap-fast-heartbeat-timeout seconds ap capwap timers fast-heartbeat-timeout local seconds
config network arptimeout arp timeout
config network ap-fallback enable ap capwap fallback
config network ap-priority enable ap capwap priority
config network broadcast enable wireless broadcast
config network ip-mac-binding enable [wlan] ip verify source mac-check
config network master-base disable no ap capwap master
config network master-base enable ap capwap master
config network mgmt-via-wireless disable no wireless mgmt-via-wireless
config network mgmt-via-wireless enable wireless mgmt-via-wireless
config network multicast igmp query interval interval ip igmp snooping last-member-query-interval interval
config network multicast igmp snooping disable no ip igmp snooping
config network multicast igmp snooping enable ip igmp snooping
config network multicast igmp timeout value ip igmp snooping querier timer expiry
config network secureweb cipher-option high disable ip http secure-ciphersuite
config network secureweb disable no ip http secure-server
config network secureweb enable ip http secure-server
config network ssh disable no ip ssh version {1 | 2}
config network ssh enable ip ssh version {1 | 2}
config network webmode disable no ip http server
config network webmode enable ip http server

NMSP Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for Network Mobility Services Protocol (NMSP):

Cisco AireOS Command Cisco IOS XE Release Command
config nmsp notification interval rssi clients interval nmsp notification interval rssi clients interval
config nmsp notification interval rssi rfid interval nmsp notification interval rssi rfid interval
config nmsp notification interval rssi rogues ap interval nmsp notification interval rssi rogues ap interval
config nmsp notification interval rssi rogues client interval nmsp notification interval rssi rogues client interval

Paging Commands

Paging Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for paging:

Cisco AireOS Command Cisco IOS XE Release Command
config paging disable terminal lenght 0
config paging enable terminal lenght value

PASSWD Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for PASSWD:

Cisco AireOS Command Cisco IOS XE Release Command
config passwd-cleartext disable passwd encryption off
config passwd-cleartext enable passwd encryption on

Port Commands

Port Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for port:

Cisco AireOS Command Cisco IOS XE Release Command
config port admin-mode [port | all] disable interface { Auto-Template | Capwap | GigabitEthernet | GroupVI | InternalInterface | Loopback | Port-channel | TenGigabitEthernet | Tunnel | Vlan} interface number

[if] shutdown

config port admin-mode [port | all] enable [if] no shutdown
config port linktrap [port | all] disable [if] no snmp trap link-status permit duplicates
config port linktrap [port | all] enable [if] snmp trap link-status permit duplicates

QoS Commands

The following table lists the mapping command used between the Cisco AireOS and Cisco IOS XE release for Quality of Service (QoS):

Cisco AireOS Command Cisco IOS XE Release Command
config wlan qos wlan_id {bronze | silver | gold | platinum}

[wlan] service-policy output {bronze | silver | gold | platinum}

[wlan] service-policy input {bronze-up | silver-up | gold-up | platinum-up}

config guest-lan qos guest-lan-id {bronze | silver | gold | platinum} [guest-lan] qos {APF_VAP_QOS_BRONZE | APF_VAP_QOS_GOLD | APF_VAP_QOS_INVALID | APF_VAP_QOS_PLATINUM | APF_VAP_QOS_SILVER | APF_VAP_QOS_URANIUM}

Note


QoS is implemented in different ways in the Cisco AireOS and Cisco IOS XE release.

For detailed information about QoS in Cisco AireOS and Cisco IOS XE release, you can refer the following documents:

  • Cisco Wireless LAN Controller Configuration Guide
  • QoS Configuration Guide, Cisco IOS XE Release 3SE (Cisco WLC 5700 Series)

Radio Resource Management Commands

Radio Resource Management Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for Radio Resource Management (RRM):

Cisco AirOS Command Cisco IOS XE Release Command
config advanced 802.11 { a | b } ccx location-meas global enable interval_seconds ap dot11 {24ghz | 5ghz} rrm ccx location-measurement interval
config advanced 802.11 { a | b } ccx location-meas global disable no ap dot11 {24ghz | 5ghz} rrm ccx location-measurement
config advanced 802.11 { a | b } channel dca { anchor-time value | interval value | min-metric value | sensitivity { high | low | medium}} ap dot11 {24ghz | 5ghz} rrm channel dca {anchor-time value | global { auto | once } |interval value | min-metric rssi-value | sensitivity { high | low | medium}}
config advanced 802.11 { a | b } channel device enable ap dot11 {24ghz | 5ghz} rrm channel device
config advanced 802.11 { a | b } channel global { auto | once } ap dot11 {24ghz | 5ghz} rrm channel dca { global { auto | once }
config advanced 802.11a channel dca chan-width-11n { 20 | 40 } ap dot11 5ghz rrm channel dca chan-width-11n width
config advanced 802.11 { a | b } channel add channel_number ap dot11 {24ghz | 5ghz} rrm channel dca number
config advanced 802.11 { a | b } channel delete channel_number no ap dot11 {24ghz | 5ghz} rrm channel dca number
config advanced 802.11 { a | b } channel { device | foreign | load | noise } enable ap dot11 {24ghz | 5ghz} rrm channel { device | foreign | load | noise }
config advanced 802.11 { a | b } channel { device | foreign | load | noise } disable no ap dot11 {24ghz | 5ghz} rrm channel { device | foreign | load | noise }
config advanced 802.11 { a | b } coverage { data | voice } { fail-rate percent | packet-count packets | rssi-threshold rssi } ap dot11 {24ghz | 5ghz} rrm coverage { data | voice } { fail-percentage percentage | packet-count count | rssi-threshold threshold }
config advanced 802.11 { a | b } coverage exception global precent ap dot11 {24ghz | 5ghz} rrm coverage exception global exception level
config advanced 802.11 { a | b } coverage level global clients ap dot11 {24ghz | 5ghz} rrm coverage level global clients
config advanced 802.11 { a | b } group-member add controller_name controller_ip_address ap dot11 {24ghz | 5ghz} rrm group-member group_name ip_address
config advanced 802.11 { a | b } group-member remove controller_name controller_ip_address no ap dot11 {24ghz | 5ghz} rrm group-member group_name ip_address
config advanced 802.11 { a | b } logging { channel | coverage | foreign | load | noise | performance | txpower } on ap dot11 {24ghz | 5ghz} rrm logging { channel | coverage | foreign | load | noise | performance | txpower }
config advanced 802.11 { a | b } logging { channel | coverage | foreign | load | noise | performance | txpower } off no ap dot11 {24ghz | 5ghz} rrm logging { channel | coverage | foreign | load | noise | performance | txpower }
config advanced 802.11 { a | b } monitor channel-list { all | country | dca } ap dot11 {24ghz | 5ghz} rrm monitor channel-list { all | country | dca }
config advanced 802.11 { a | b } monitor { coverage interval | load interval | noise interval | signal interval } ap dot11 {24ghz | 5ghz} rrm monitor { coverage interval | load interval | noise interval | signal interval }
config advanced 802.11 { a | b } profile { clients | foreign | noise } { global } value ap dot11 {24ghz | 5ghz} rrm profile { clients cli_threshold_value | foreign int_threshold_value | noise for_noise_threshold_value }
config advanced 802.11 { a | b } profile { throughput | utilization } { global } value ap dot11 {24ghz | 5ghz} rrm profile { throughput throughput_threshold_value | utilization rf_util_threshold_value }
config advanced 802.11 { a | b } txPower global { power-level | auto | max power-level | min power-level | once } ap dot11 {24ghz | 5ghz} rrm txPower { power-level | auto | max power-level | min power-level | once }

Security Commands

Security Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for security solutions:

Cisco AireOS Command Cisco IOS XE Release Command
config advanced eap eapol-key-retries retries wireless security dot1x eapol-key retries retries
config advanced eap eapol-key-timeout milliseconds wireless security dot1x eapol-key timeout milliseconds
config advanced eap bcast-key-interval seconds wireless security dot1x group-key interval seconds
config advanced eap identity-request-retries retries wireless security dot1x identity-request retries retries
config advanced eap identity-request-timeout second wireless security dot1x identity-request timeout seconds
config radius callStationIdType {ap-macaddress | ap-macaddress-ssid | ipaddress | macaddress} wireless security dot1x radius call-station-id {ap-macaddress | ap-macaddress-ssid | ipaddress | macaddress}
config advanced eap request-retries retries wireless security dot1x request retries retries
config advanced eap request-timeout seconds wireless security dot1x request timeout seconds
config advanced eap key-index key-index wireless security dot1x wep key index {0 | 3}
config switchconfig strong-pwd wireless security strong-password

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for wps:

Cisco AireOS Command Cisco IOS XE Release Command
config wps ap-authentication enable wireless wps ap-authentication
config wps ap-authentication disable no wireless wps ap-authentication
config wps ap-authentication threshold threshold wireless wps ap-authentication threshold value
config wps auto-immune enable wireless wps auto-immune
config wps auto-immune disable no wireless wps auto-immune
config wps cid-sensor add index wireless wps cids-sensor index
config wps cid-sensor delete index nowireless wps cids-sensor index
config wps cid-sensor add index ip-addr username password wireless wps cids-sensor index ip-address ip-addr username username password password-type password
config wps client-exclusion all enable wireless wps client-exclusion all
config wps client-exclusion all disable no wireless wps client-exclusion all
config wps client-exclusion 802.11-assoc enable wireless wps client-exclusion dot11-assoc
config wps client-exclusion 802.11-assoc disable no wireless wps client-exclusion dot11-assoc
config wps client-exclusion 802.11-auth enable wireless wps client-exclusion dot11-auth
config wps client-exclusion 802.11-auth disable no wireless wps client-exclusion dot11-auth
config wps client-exclusion 802.1x-auth enable wireless wps client-exclusion dot1x-auth
config wps client-exclusion 802.1x-auth disable no wireless wps client-exclusion dot1x-auth
config wps client-exclusion ip-theft enable wireless wps client-exclusion ip-theft
config wps client-exclusion ip-theft disable no wireless wps client-exclusion ip-theft
config wps client-exclusion web-auth enable wireless wps client-exclusion web-auth
config wps client-exclusion web-auth disable no wireless wps client-exclusion web-auth
config wps mfp infrastructure enable wireless wps mfp infrastructure
config wps mfp infrastructure disable no wireless wps mfp infrastructure

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for rogue detection:

Cisco AireOS Command Cisco IOS XE Release Command
config rogue adhoc enable wireless wps rogue adhoc
config rogue adhoc disable no wireless wps rogue adhoc
config rogue adhoc auto-contain wireless wps rogue adhoc auto-contain
config rogue adhoc alert all no wireless wps rogue adhoc auto-contain
config rogue ap rldp enable alarm-only wireless wps rogue ap rldp alarm-only
config rogue ap rldp enable alarm-only monitor-ap-only wireless wps rogue ap rldp alarm-only monitor-ap-only
config rogue ap rldp enable auto-contain wireless wps rogue ap rldp auto-contain
config rogue ap rldp enable auto-contain monitor-ap-only wireless wps rogue ap rldp auto-contain monitor-ap-only
config rogue ap rldp retries wireless wps rogue ap rldp retries count
config rogue ap rldp schedule enable wireless wps rogue ap rldp schedule
config rogue ap rldp schedule disable no wireless wps rogue ap rldp schedule
config rogue ap rldp schedule add wireless wps rogue ap rldp schedule day day start start-time end end-time
config rogue ap ssid auto-contain wireless wps rogue ap ssid auto-contain
config rogue ap ssid alarm no wireless wps rogue ap ssid auto-contain
config rogue ap timeout seconds wireless wps rogue ap timeout seconds
config rogue ap valid-client auto-contain wireless wps rogue ap valid-client auto-contain
config rogue ap valid-client alarm no wireless wps rogue ap valid-client auto-contain
config rogue auto-contain level level wireless wps rogue auto-contain level level
config rogue auto-contain level level monitor-ap-only wireless wps rogue auto-contain level level monitor-ap-only
config rogue client aaa enable wireless wps rogue client aaa
config rogue client aaa disable no wireless wps rogue client aaa
config rogue detection min-rssi rssi wireless wps rogue detection min-rssi rssi
config rogue detection monitor-ap report-interval interval wireless wps rogue detection report-interval interval
config rogue detection monitor-ap transient-rogue-interval time wireless wps rogue detection min-transient-time transtime
config rogue rule add ap priority priority classify {friendly | malicious} rule-name wireless wps rogue rule rule-name
config rogue rule delete all no wireless wps rogue rule
config rogue rule priority priority rule-name wireless wps rogue rule rule-name priority priority
config rogue rule enable all wireless wps rogue rule shutdown
config rogue rule disable all no wireless wps rogue rule shutdown
config rogue detection transient-rogue-interval time wireless wps rogue detection min-transient-time time

SNMP Commands

SNMP Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for SNMP:

Cisco AireOS Command Cisco IOS XE Release Command
config snmp community accessmode ro name snmp-server community {ro name | rw name | word}
config snmp community accessmode rw name snmp-server community rw name
config snmp community create name snmp-server community word
config snmp community delete name [no] snmp-server community word

Time Commands

Time Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for time:

Cisco AireOS Command Cisco IOS XE Release Command
config time manual mm:dd:yy hh:mm:ss clock set mm:dd:yy hh:mm:ss
config time ntp auth disable server-index [no] ntp authenticate
config time ntp auth enable server-index key-index ntp authenticate
config time ntp interval interval ntp clock-period
config time ntp key-auth add key-index md5 aascii key ntp authentication-key key-index md5 key auth-key-encryption-type
config time ntp key-auth add key-index md5 hex key ntp authentication-key key-index md5 key auth-key-encryption-type
config time ntp key-auth delete key-index [no] ntp authentication-key key-index
config time ntp server index ip_address ntp server ip_address
config time timezone delta delta_hrs delta_mins clock timezone timezone delta_hrs delta_mins
config time timezone location location_index clock timezone timezone

TRAPFLAGS Commands

TRAPFLAGS Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for TRAPFLAGS:

Cisco AireOS Command Cisco IOS XE Release Command
config trapflags ap authFailure [enable | disable] [no] trapflags client dot11 authfail

VLAN Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for VLAN:

Cisco AireOS Command Cisco IOS XE Release Command
config interface vlan interface_name vlan_identifier

vlan vlan_identifier

[vlan] name name

interface vlan vlan_identifier

Voice, Video and VideoStream Commands

Voice commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for voice:

Cisco AireOS Command Cisco IOS XE Release Command
config 802.11 {a | b} cac voice acm enable ap dot11{5ghz | 24ghz} cac voice acm
config 802.11 {a | b} cac voice load-based enable ap dot11{5ghz | 24ghz} cac voice load-based
config 802.11 {a | b} cac voice max-bandwidth bandwidth ap dot11 {5ghz | 24ghz} cac voice max-bandwidth bandwidth
config 802.11 {a | b} cac voice roam-bandwidth bandwidth ap dot11 {5ghz | 24ghz} cac voice roam-bandwidth bandwidth
config 802.11 {a | b} cac voice sip enable ap dot11 {5ghz | 24ghz} cac voice sip
config 802.11 {a | b} cac voice sip bandwidth bandwidth sample-interval number_msecs ap dot11 {5ghz | 24ghz} cac voice sip bandwidthbandwidth sample-interval number_msecs
config 802.11 {a | b} cac voice stream-size value max-streams value ap dot11 {5ghz | 24ghz} cac voice stream-size value max-streams value
config 802.11 {a | b} cac voice tspec-inactivity-timeout enable ap dot11{5ghz | 24ghz} cac voice tspec-inactivity-timeout

Video commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for video:

Cisco AireOS Command Cisco IOS XE Release Command
config 802.11 {a | b} cac video acm {enable | disable} ap dot11 {5ghz | 24ghz} cac video acm
config 802.11 {a | b} cac video cac-methodload-based {enable | disable} ap dot11 {5ghz | 24ghz} cac video load-based
config 802.11 {a | b} cac video max-bandwidth bandwidth ap dot11 {5ghz | 24ghz} cac video max-bandwidth bandwidth
config 802.11 {a | b} cac video roam-bandwidth bandwidth ap dot11 {5ghz | 24ghz} cac video roam-bandwidth bandwidth
config advanced sip-preferred-call-no call_index call-no wireless sip preferred-call-no callIndex call-no
config advanced sip-preferred-call-no call_index none wireless sip preferred-call-no callIndex

VideoStream Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for VideoStream:

Cisco AireOS Command Cisco IOS XE Release Command
config 802.11 {a | b} cac media-stream multicast-direct enable ap dot11 {5ghz | 24ghz} media-stream multicast-direct
config 802.11 {a | b} cac media-stream multicast-direct disable no ap dot11 {5ghz | 24ghz} media-stream multicast-direct
config 802.11 {a | b} cac media-stream multicast-direct max_retry_percent retrypercentage ap dot11 {5ghz | 24ghz} cac media-stream multicast-direct max_retry_percent retrypercentage
config 802.11 {a | b} cac media-stream multicast-direct min-client-rate rate ap dot11 {5ghz | 24ghz} cac media-stream multicast-direct min-client-rate dot11rate
config 802.11 {a | b} media-stream multicast-direct radio-maximum value ap dot11 {5ghz | 24ghz} media-stream multicast-direct radio-maximum value
config 802.11 {a | b} media-stream multicast-direct client-maximum value ap dot11 {5ghz | 24ghz} media-stream multicast-direct client-maximum value
config 802.11 {a | b} media-stream multicast-direct admission-besteffort ap dot11 {5ghz | 24ghz} media-stream multicast-direct admission-besteffort
config wlan media-stream multicast-direct wlan_id enable [ wlan ] media-stream multicast-direct
config wlan media-stream multicast-direct wlan_id disable [ wlan ] no media-stream multicast-direct
config media-stream message wireless media-stream message
config media-stream multicast-direct enable wireless media-stream multicast-direct
config media-stream multicast-direct disable no wireless media-stream multicast-direct
config media-stream add multicast-direct stream-name media_stream_name start_IP end_IP wireless media-stream multicast-directstream-name media_stream_name start_IP end_IP
config media-stream delete media_stream_name no wireless media-stream media_stream_name

EDCA Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for Enhanced distributed channel access (EDCA)parameters:

Cisco AireOS Command Cisco IOS XE Release Command
config advanced 802.11 {a | b} edca-parameters {custom-voice | optimized-video-voice | optimized-voice | svp-voice | wmm-default} ap dot11{5ghz | 24ghz} edca-parameters {custom-voice | optimized-video-voice | optimized-voice | svp-voice | wmm-default}

WebAuth Commands

Both the Cisco AireOS and Cisco IOS XE releases support WebAuth, however, it is implemented in different ways. Local WebAuth, custom WebAuth and external WebAuth are supported on both platforms. Web passthrough in Cisco AireOS release is known as web consent in Cisco IOS XE release.

For detailed information about WebAuth in Cisco AireOS and Cisco IOS XE releases, you can refer the following documents:

  • Cisco Wireless LAN Controller Configuration Guide
  • Security Configuration Guide, Cisco IOS XE Release 3SE (Cisco WLC 5700 Series)

WLAN Commands

The following table lists the mapping commands used between the Cisco AireOS and Cisco IOS XE release for WLAN:

Cisco AireOS Command Cisco IOS XE Release Command
config wlan create wlan-namewlan-id [ssid] wlan wlan-name wlan-id [ssid]
config wlan disable all wlan shutdown
config wlan enable all no wlan shutdown
config wlan aaa-override enable [wlan-id] [wlan] aaa-override
config wlan aaa-override disable [wlan-id] [wlan] no aaa-override
config wlan acl wlan-id [acl name | none] [wlan] ip access-group acl-name
config wlan broadcast-ssid enable wlan-id [wlan] broadcast-ssid
config wlan broadcast-ssid disable wlan-id [wlan] no broadcast-ssid
config wlan call-snoop disable wlan-id [wlan] call-snoop
config wlan call-snoop enable wlan-id [wlan] no call-snoop
config wlan ccx aironet-ie enable wlan-id [wlan] ccx aironet-iesupport
config wlan channel-scan defer-priority priority enable wlan-id [wlan] channel-scan defer-priority priority
config wlan channel-scan defer-priority priority disable wlan-id [wlan] no channel-scan defer-priority priority
config wlan channel-scan defer-time time wlan-id [wlan] channel-scan defer-time time
config wlan chd wlan-id enable [wlan] chd
config wlan chd wlan-id disable [wlan] no chd
config wlan max-associated-clients max_no._of_clients wlan-id [wlan] client association limit max-clients
config wlan interface wlan-id interface-name [wlan] client vlan interface-name
config wlan diag-channel enable wlan-id [wlan] diag-channel
config wlan diag-channel disable wlan-id [wlan] no diag-channel
config wlan dtim { 802.11a | 802.11b} value wlan-id [wlan] dtim dot11 { 24ghz | 5ghz} dtim-period
config wlan exclusionlist wlan-id enabled [wlan] exclusionlist
config wlan exclusionlist wlan-id disabled [wlan] no exclusionlist
config wlan exclusionlist wlan-id seconds [wlan] exclusionlist seconds
config wlan security web-passthrough acl wlan-id acl-name [wlan] ip access-group web acl-name
config dhcp opt82 remote-id apmac:ssid [wlan] ip dhcp opt82-format add-ssid
config dhcp opt82 remote-id ap-ethmac [wlan] ip dhcp opt82-format ethmac
config wlan dhcp_server wlan-id dhcp_server_ip_address [wlan] ip dhcp server ip-address
config wlan dhcp_server wlan-id dhcp_server_ip_address required [wlan] ip dhcp required
config wlan load-balance allow enable wlan-id [wlan] load-balance
config wlan load-balance allow disable wlan-id [wlan] no load-balance
config wlan band-select allow enable [wlan] band-select
config wlan band-select allow disable [wlan] no band-select
config wlan local-auth enable profile wlan-id [wlan] local-auth profile
config wlan local-auth disable wlan-id [wlan] no local-auth
config wlan mac-filtering enable wlan-id [wlan] mac-filtering mac-filter-name
config wlan mac-filtering disable wlan-id [wlan] no mac-filtering mac-filter-name
config wlan media-stream multicast-direct wlan-id enable [wlan] media-stream multicast-direct
config wlan media-stream multicast-direct wlan-id disable [wlan] no media-stream multicast-direct
config wlan mfp client enable wlan-id [wlan] mfp client
config wlan mfp client disable wlan-id [wlan] no mfp client
config wlan mfp client enable wlan-id required [wlan] mfp client required
config wlan mfp client disable wlan-id [wlan] no mfp client required
config wlan mfp infrastructure-protection enable wlan-id [wlan] mfp infrastructure-protection
config wlan mfp infrastructure-protection disable wlan-id [wlan] no mfp infrastructure-protection
config wlan mobility anchor add wlan-id ip-address [wlan] mobility anchor ip-address
config wlan mobility anchor delete wlan-id ip-address [wlan] no mobility anchor ip-address
config wlan nac enable wlan-id [wlan] nac
config wlan nac disable wlan-id [wlan] no nac
config wlan peer-blocking drop wlan-id [wlan] peer-blocking drop
config wlan peer-blocking disable wlan-id [wlan] no peer-blocking
config wlan peer-blocking forward-upstream wlan-id [wlan] peer-blocking forward-upstream
config wlan radio wlan-id all [wlan] radio all
config wlan radio wlan-id 802.11a [wlan] radio dot11a
config wlan radio wlan-id 802.11ag [wlan] radio dot11ag
config wlan radio wlan-id 802.11bg [wlan] radio dot11bg
config wlan radio wlan-id 802.11g [wlan] radio dot11g
config wlan security pmf {optional | required | association-comeback association-comeback_timeout | saquery-retrytimeout saquery-retrytimeout } wlan-id [wlan] security pmf {optional | mandatory | association-comeback association-comeback_timeout | saquery-retrytimeout saquery-retrytimeout }
config wlan security pmf disable wlan-id [wlan] no security pmf {optional | mandatory | association-comeback association-comeback_timeout | saquery-retrytimeout saquery-retrytimeout }
config wlan security ft enable wlan-id [wlan] security wpa
config wlan security ft enable wlan-id [wlan] security wpa
config wlan security wpa akm ft {802.1x | psk} enable wlan-id [wlan] security wpa akm ft {dot1x | psk}
config wlan security wpa akm ft disable wlan-id [wlan] no security wpa akm ft {dot1x | psk}
config wlan security static-wep-key authentication {open | shared-key} enable wlan-id [wlan] security static-wep-key authentication {open | sharedkey}
config wlan security static-wep-key encryption wlan-id {40 | 104} {hex | ascii} key key-index enable [wlan] security static-wep-key encryption wlan-id {40 | 104} {hex | ascii} wep-key wep-key -index
config wlan security wpa enablewlan-id [wlan] security wpa
config wlan security wpa {wpa1 | wpa2} {aes | tkip} enable wlan-id [wlan] security wpa {wpa1 ciphers | wpa2 ciphers} {aes | tkip}
config wlan security 802.1X enable wlan-id [wlan] security 802.1X { aes | tkip}
config wlan multicast interface wlan-id enable interface_name [wlan] ip multicast vlanvlan-id
config wlan timeout wlan-id time [wlan] session-timeout time
config wlan max-radio-clients max_radio_clients wlan-id [wlan] client association limit radio max-client-connections
config wlan assisted-roaming {neighbor-list | dual-list | prediction} enablewlan-id [wlan] assisted-roaming {neighbor-list | dual-list | prediction}
config assisted-roaming {denial-maximumcount | floor-bias RSSI | prediction-minimum number_of_APs} wireless assisted-roaming {denial-maximum count | floor-bias RSSI | prediction-minimum number_of_APs}
config wlan wifidirect {allow | not- allow} wlan-id [wlan] wifidirect policy {deny | permit}
config wlan wifidirect disable wlan-id no wifidirect policy