Download Dell PowerConnect W Clearpass 100 Software User guide
Transcript
l 3GPP Profile l IP Address availability Profile l Domain Name Profile l Operator Friendly Name Profile l Connection Capability Profile l Operating Class Profile l WAN-Metrics Profile Configuring an NAI Realm Profile You configure an NAI Realm profile to define the NAI realm information that can be send as an ANQP IE in a GAS query response. To configure a NAI profile, enter the following commands at the command prompt: (Instant (Instant (Instant (Instant (Instant (Instant (Instant (Instant (Instant (Instant (Instant Access Access Access Access Access Access Access Access Access Access Access Point)(config)# hotspot anqp-nai-realm-profile <name> Point)(nai-realm <name>)# nai-realm-name <name> Point)(nai-realm <name>)# nai-realm-encoding <UTF8-encode> Point)(nai-realm <name>)# nai-realm-eap-method <eap-method> Point)(nai-realm <name>)# nai-realm-auth-id-1 <authentication-ID> Point)(nai-realm <name>)# nai-realm-auth-id-2 <authentication-ID> Point)(nai-realm <name>)# nai-realm-auth-value-1 <authentication-value> Point)(nai-realm <name>)# nai-home-realm Point)(nai-realm <name>)# enable Point)(nai-realm <name>)# end Point)# commit apply You can specify any of the following EAP methods for the nai-realm-eap-method <eap-method> command: l crypto-card—To use crypto card authentication l eap-aka—To use EAP for UMTS Authentication and Key Agreement l eap-sim—To use EAP for GSM Subscriber Identity Modules l eap-tls —To use EAP-Transport Layer Security (EAP-TLS) l eap-ttls—To use EAP-Tunneled Transport Layer Security (EAP-TTLS) l generic-token-card—To use EAP Generic Token Card (EAP-GTC) l identity—To use EAP Identity type l notification—To use the hotspot realm uses EAP Notification messages for authentication. l one-time-password—To use authentication with a single-use password l peap—To use protected Extensible Authentication Protocol (PEAP) l peap-mschapv2—To use PEAP with Microsoft Challenge Handshake Authentication Protocol (PEAP-MSCHAP) version 2. You can specify any of the following authentication methods as an authentication ID for the nai-realm-auth-id-1 <authentication-ID> command: l credential-type—To use credential-based authentication l expanded-eap — To use EAP authentication method. l expanded-inner-eap—To use the expanded inner EAP authentication method. l inner-auth-eap —To use inner EAP authentication type. l non-eap-inner-auth—To use non-EAP inner authentication type l tunneled-eap-credential-type—To use the tunneled EAP credential typeS AOS-W Instant 6.2.1.0-3.3| User Guide Hotspot Profiles | 255