WLAN AC V200R010C00 Command Reference

display vap-profile

display vap-profile

Function

The display vap-profile command displays configuration and reference information about a VAP profile.

Format

display vap-profile { all | name profile-name }

Parameters

Parameter

Description

Value

all

Displays information about all VAP profiles.

-

name profile-name

Displays information about a specified VAP profile.

The VAP profile must exist.

Views

All views

Default Level

1: Monitoring level

Usage Guidelines

You can run the display vap-profile command to view configuration and reference information about a VAP profile.

Example

# Display information about all VAP profiles.

<AC6605> display vap-profile all
FMode   : Forward mode
STA U/D : Rate limit client up/down
VAP U/D : Rate limit VAP up/down
BR2G/5G : Beacon 2.4G/5G rate
------------------------------------------------------------------------------------------------------------
Name          FMode    Type      VLAN    AuthType  STA U/D(Kbps)  VAP U/D(Kbps)  BR2G/5G(Mbps)  Reference  SSID
------------------------------------------------------------------------------------------------------------
default       direct   service   VLAN 1  Open      -/-            -/-            1/6            0          HUAWEI-WLAN
vap-profile1  direct   service   VLAN 1  Open      -/-            -/-            1/6            0          HUAWEI-WLAN
------------------------------------------------------------------------------------------------------------
Total: 2
Table 7-56  Description of the display vap-profile all command output

Item

Description

Name

VAP profile name.

FMode

Data forwarding mode.

Type

VAP profile type.
  • service
  • management AP
  • service-backup ap-offline
  • service-backup auth-server-down
  • service-navi

VLAN

Service VLAN ID.

AuthType

User authentication mode.

STA U/D(Kbps)

Uplink/downlink rate limit of a single STA.

VAP U/D(Kbps)

Uplink/downlink rate limit of all STAs on a specified VAP.

BR2G/5G(Mbps)

Rate at which 2.4 GHz or 5 GHz Beacon frames are sent.

Reference

Number of times a VAP profile is referenced.

SSID

SSID profile referenced by a VAP profile.

# Display information about the VAP profile default.

<AC6605> display vap-profile name default
--------------------------------------------------------------------------------
Profile ID                                      : 0
Service mode                                    : enable
Type                                            : service
Forward mode                                    : direct-forward
mDNS centralized control                        : disable
DHCP centralized control                        : disable
Offline management                              : disable
Service VLAN ID                                 : 1
Service VLAN Pool                               : -
Permit VLAN ID                                  : 2 to 4
Auto off service switch                         : disable
Auto off starttime                              : -
Auto off endtime                                : -
Auto off time-range                             :  
STA access mode                                 : disable
STA blacklist profile                           :
STA whitelist profile                           :
VLAN mobility group                             : 1
Band steer                                      : enable
Sta network detect                              : enable
Learn client IPv4 address                       : enable
Learn client DHCP strict                        : disable
Learn client DHCP blacklist                     : disable
Learn client IPv4 conflict uncheck              : disable
Learn client IPv6 address                       : enable
Learn client DHCPv6 strict                      : disable
Learn client DHCPv6 blacklist                   : disable
Learn client IPv6 conflict uncheck              : disable
IP source check                                 : disable
ARP anti-attack check                           : disable
DHCP option82 insert                            : disable
DHCP option82 remote id format                  : insert AP-MAC
  MAC format                                    : default
DHCP option82 circuit id format                 : insert AP-MAC
  MAC format                                    : default
ND trust port                                   : disable
SFN roam                                        : disable
Anti attack flood                                                               
  ARP flood switch                              : enable                        
  ARP flood STA rate threshold                  : 4                             
  ARP flood blacklist                           : disable                       
  ND flood switch                               : enable                        
  ND flood STA rate threshold                   : 8                             
  ND flood blacklist                            : disable                       
  IGMP flood switch                             : enable                        
  IGMP flood STA rate threshold                 : 4                             
  IGMP flood blacklist                          : disable                       
  DHCP flood switch                             : enable                        
  DHCP flood STA rate threshold                 : 4                             
  DHCP flood blacklist                          : disable                       
  DHCPv6 flood switch                           : enable                        
  DHCPv6 flood STA rate threshold               : 4                             
  DHCPv6 flood blacklist                        : disable                       
  mDNS flood switch                             : enable                        
  mDNS flood STA rate threshold                 : 4                             
  mDNS flood blacklist                          : disable                       
  Other broadcast flood switch                  : enable                        
  Other broadcast flood STA rate threshold      : 10                            
  Other broadcast flood blacklist               : disable                       
  Other multicast flood switch                  : enable                        
  Other multicast flood STA rate threshold      : 10                            
  Other multicast flood blacklist               : disable  
SSID profile                                    : default
Security profile                                : default
Traffic profile                                 : default
Authentication profile                          :
SAC profile                                     :
Hotspot2.0 profile                              :
User profile                                    :
UCC profile                                     :
Home agent                                      : ap
Layer3 roam                                     : enable
Keep service                                    : enable
Keep service allow new access                   : enable
Keep service allow new access no auth           : enable
Defence profile                                 :
Service experience analysis                     : disable  
SIP snooping port                               : 5060
--------------------------------------------------------------------------------
Table 7-57  Description of the display vap-profile name command output

Item

Description

Profile ID VAP profile ID.
Service mode

Status of the VAP service.

To configure the parameter, run the service-mode disable command.

Type
VAP type.
  • service: indicates the service type.
  • ap-management: indicates the management AP type.
  • ap-offline: indicates the AP-offline backup service type.
  • auth-server-down: indicates the authentication-server-down backup service type.
  • service-navi: indicates the Navi AC type.

To configure the parameter, run the type (VAP profile view) command.

To configure the parameter service-navi, run the type service-navi command.

Navi AC ID

ID of a Navi AC.

To configure the parameter, run the navi-ac ac-id command.

This parameter is displayed only when Type is service-navi.

Navi WLAN ID

WLAN ID of a Navi VAP, which is used to set up a CAPWAP tunnel between a Navi AC and a local AC.

To configure the parameter, run the navi-ac ac-id command.

This parameter is displayed only when Type is service-navi.

Forward mode
Data forwarding mode.
  • direct-forward: Indicates direct forwarding.
  • tunnel: Indicates tunnel forwarding.
  • SoftGRE: Indicates soft GRE tunnel forwarding.

To configure the parameter, run the forward-mode command.

mDNS centralized control

Whether to enable tunnel forwarding of mDNS packets.

To configure the parameter, run the mdns centralized-control enable command.

DHCP centralized control

Whether to enable tunnel forwarding of DHCP packets.

To configure the parameter, run the dhcp centralized-control enable command.

Offline management

Whether to enable management VAP and antenna alignment VAP for offline APs.

To configure the parameter, run the temporary-management enable (VAP profile view) command.

Service VLAN ID

Service VLAN ID.

To configure the parameter, run the service-vlan (VAP profile view) command.

Service VLAN Pool

VLAN pool to which a service VLAN belongs.

To configure the parameter, run the service-vlan (VAP profile view) command.

Permit VLAN ID

VLAN from which packets are allowed to pass through after when the authorization VLAN verification function is enabled.

To configure the parameter, run the permit-vlan vlan-id command.

Auto off service switch

Status of the scheduled VAP auto-off function.

To configure the parameter, run the auto-off service command.

Auto off starttime

Start time for scheduled VAP auto-off.

To configure the parameter, run the auto-off service command.

Auto off endtime

End time for scheduled VAP auto-off.

To configure the parameter, run the auto-off service command.

Auto off time-range

Time range for scheduled VAP auto-off.

To configure the parameter, run the auto-off service command.

STA access mode

STA access control mode.

To configure the parameter, run the sta-access-mode command.

STA blacklist profile

STA blacklist profile.

To configure the parameter, run the sta-access-mode command.

STA whitelist profile

STA whitelist profile.

To configure the parameter, run the sta-access-mode command.

Home agent

Home agent.

To configure the parameter, run the home-agent command.

VLAN mobility group

Roaming domain ID.

To configure the parameter, run the vlan-mobility-group command.

Layer3 roam

Status of inter-VLAN roaming on an AC.

To configure the parameter, run the layer3-roam disable command.

Keep service

Whether service holding upon CAPWAP link disconnection is enabled.

To configure the parameter, run the keep-service enable (VAP profile view) command.

Keep service allow new access

Whether new STAs are allowed to go online when APs are offline.

To configure the parameter, run the keep-service enable (VAP profile view) command.

Keep service allow new access no auth

Whether offline APs allow Portal or MAC address authentication STAs to go online without authentication.

To configure the parameter, run the keep-service enable (VAP profile view) command.

Band steer

Status of the band steering function.

To configure the parameter, run the band-steer disable command.

Sta network detect

Whether to forcibly disconnect STAs without traffic.

To configure the parameter, run the sta-network-detect disable command.

Learn client IPv4 address

Status of STA IPv4 address learning.

To configure the parameter, run the learn-client-address disable (VAP profile view) command.

Learn client DHCP strict

Status of strict STA IP address learning through DHCP.

To configure the parameter, run the learn-client-address dhcp-strict command.

Learn client DHCP blacklist

Whether to add STAs with bogus IP addresses to a dynamic blacklist.

To configure the parameter, run the learn-client-address dhcp-strict command.

Learn client IPv4 conflict-uncheck

Status of STA IPv4 address conflict check.

To configure this parameter, run the learn-client-address conflict-uncheck command.

Learn client IPv6 address

Status of STA IPv6 address learning.

To configure the parameter, run the learn-client-address disable (VAP profile view) command.

Learn client DHCPv6 strict

Status of strict STA IPv6 address learning through DHCPv6.

To configure the parameter, run the learn-client-address dhcpv6-strict command.

Learn client DHCPv6 blacklist

Whether to add STAs with bogus IPv6 addresses to a dynamic blacklist.

To configure the parameter, run the learn-client-address dhcpv6-strict command.

Learn client IPv6 conflict-uncheck

Status of STA IPv6 address conflict check.

To configure this parameter, run the learn-client-address conflict-uncheck command.

IP source check

Status of IP source guard.

To configure the parameter, run the ip source check user-bind enable command.

ARP anti-attack check

Status of dynamic ARP probing.

To configure the parameter, run the arp anti-attack check user-bind enable command.

DHCP option82 insert

Whether to enable an AP to insert the Option 82 field in DHCP packets sent from a STA.

To configure the parameter, run the dhcp option82 insert enable command.

DHCP option82 remote id format

Format of the remote-ID in the Option 82 field inserted in DHCP packets sent from a STA.

To configure the parameter, run the dhcp option82 format (vap profile view) command.

DHCP option82 circuit id format

Format of the circuit-ID in the Option 82 field inserted in DHCP packets sent from a STA.

To configure the parameter, run the dhcp option82 format (vap profile view) command.

MAC format

Format of the AP MAC address in the Option 82 field.

To configure the parameter, run the dhcp option82 format (vap profile view) command.

ND trust port

Status of the ND trusted interface function.

To configure the parameter, run the nd trust port command.

SFN roam

Whether agile distributed SFN roaming is enabled.

To configure the parameter, run the sfn-roam enable command.

Anti attack flood Flood detection and prevention.
ARP flood switch Whether ARP flood detection is enabled.
  • enable
  • disable

To configure the parameter, run the anti-attack flood disable command.

ARP flood STA rate threshold Rate threshold for ARP flood detection.

To configure the parameter, run the anti-attack flood sta-rate-threshold command.

ARP flood blacklist Whether the flood blacklist function is enabled.
  • enable
  • disable

To configure the parameter, run the anti-attack flood blacklist enable command.

ND flood switch Whether ND flood detection is enabled.
  • enable
  • disable

To configure the parameter, run the anti-attack flood disable command.

ND flood STA rate threshold Rate threshold for ND flood detection.

To configure the parameter, run the anti-attack flood sta-rate-threshold command.

ND flood blacklist Whether the ND flood blacklist function is enabled.
  • enable
  • disable

To configure the parameter, run the anti-attack flood blacklist enable command.

IGMP flood switch Whether IGMP flood detection is enabled.
  • enable
  • disable

To configure the parameter, run the anti-attack flood disable command.

IGMP flood STA rate threshold Rate threshold for IGMP flood detection.

To configure the parameter, run the anti-attack flood sta-rate-threshold command.

IGMP flood blacklist Whether the IGMP flood blacklist function is enabled.
  • enable
  • disable

To configure the parameter, run the anti-attack flood blacklist enable command.

DHCP flood switch Whether DHCP flood detection is enabled.
  • enable
  • disable

To configure the parameter, run the anti-attack flood disable command.

DHCP flood STA rate threshold Rate threshold for DHCP flood detection.

To configure the parameter, run the anti-attack flood sta-rate-threshold command.

DHCP flood blacklist Whether the DHCP flood blacklist function is enabled.
  • enable
  • disable

To configure the parameter, run the anti-attack flood blacklist enable command.

DHCPv6 flood switch Whether DHCPv6 flood detection is enabled.
  • enable
  • disable

To configure the parameter, run the anti-attack flood disable command.

DHCPv6 flood STA rate threshold Rate threshold for DHCPv6 flood detection.

To configure the parameter, run the anti-attack flood sta-rate-threshold command.

DHCPv6 flood blacklist Whether the DHCPv6 flood blacklist function is enabled.
  • enable
  • disable

To configure the parameter, run the anti-attack flood blacklist enable command.

mDNS flood switch Whether mDNS flood detection is enabled.
  • enable
  • disable

To configure the parameter, run the anti-attack flood disable command.

mDNS flood STA rate threshold Rate threshold for mDNS flood detection.

To configure the parameter, run the anti-attack flood sta-rate-threshold command.

mDNS flood blacklist Whether the mDNS flood blacklist function is enabled.
  • enable
  • disable

To configure the parameter, run the anti-attack flood blacklist enable command.

Other broadcast flood switch Whether the flood detection function is enabled for broadcast packets other than ARP, DHCP, DHCPv6, and ND packets.
  • enable
  • disable

To configure the parameter, run the anti-attack flood disable command.

Other broadcast flood STA rate threshold Rate threshold for broadcast packets other than ARP, DHCP, DHCPv6, and ND packets.

To configure the parameter, run the anti-attack flood sta-rate-threshold command.

Other broadcast flood blacklist Whether the flood blacklist function is enabled for broadcast packets other than ARP, DHCP, DHCPv6, and ND packets.
  • enable
  • disable

To configure the parameter, run the anti-attack flood blacklist enable command.

Other multicast flood switch Whether the flood detection function is enabled for multicast packets other than IGMP and mDNS packets.
  • enable
  • disable

To configure the parameter, run the anti-attack flood disable command.

Other multicast flood STA rate threshold Rate threshold for multicast packets other than IGMP and mDNS packets.

To configure the parameter, run the anti-attack flood sta-rate-threshold command.

Other multicast flood blacklist Whether the flood blacklist function is enabled for multicast packets other than IGMP and mDNS packets.
  • enable
  • disable

To configure the parameter, run the anti-attack flood blacklist enable command.

SSID profile

Name of the SSID profile referenced by a VAP profile.

To configure the parameter, run the ssid-profile (VAP profile view) command.

Security profile

Name of the security profile referenced by a VAP profile.

To configure the parameter, run the security-profile (VAP profile view) command.

Traffic profile

Name of the traffic profile referenced by a VAP profile.

To configure the parameter, run the traffic-profile (VAP profile view) command.

Authentication profile

Name of the authentication profile referenced by a VAP profile.

To configure the parameter, run the authentication-profile (VAP profile view) command.

SAC profile

Name of the SAC profile referenced by a VAP profile.

To configure the parameter, run the sac-profile (VAP profile view) command.

Hotspot2.0 profile

Name of the hotspot2 profile referenced by a VAP profile.

To configure the parameter, run the hotspot2-profile (VAP profile view) command.

UCC profile

Name of the UCC profile referenced by a VAP profile.

To configure the parameter, run the ucc-profile (VAP profile view) command.

User profile

Name of the user profile referenced by a VAP profile.

To configure the parameter, run the user-profile (VAP profile view) command.

SoftGRE profile

Name of the soft GRE profile referenced by a VAP profile.

To configure the parameter, run the forward-mode softgre profile-name command.

Defence profile

Name of the attack defense profile referenced by the AP profile.

To configure the parameter, run the defence-profile (VAP profile view) profile-name command.

Highway Whether the highway WLAN coverage function is enabled.

To configure the parameter, run the highway enable command.

This item is supported only by ACs supporting highway WLAN coverage.

Service experience analysis

Whether the SEA function is enabled.

To configure the parameter, run the service-experience-analysis enable command.

SIP snooping port

SIP listening port number.

To configure the parameter, run the service-experience-analysis sip-snooping port command.

Translation
Favorite
Download
Update Date:2021-02-27
Document ID:EDOC1100064351
Views:9047249
Downloads:1500
Average rating:4.0Points