Specifications

Security Options 95
Chapter 5
FIGURE 5-25 SSID Role Mapping
Available configuration options are:
Condition – Specifies how the value should be matched.
Val ue Specifies the SSID that should be matched.
Role Name – Specifies the role that will be applied when the SSID is matched.
Equivalent CLI configuration for the example above is:
aaa derivation-rules user
set role condition essid equals "Guest-SSID" set-
value "guest"
NOTEWhen using the CLI to enter ESSID values, the name string may include
space characters only if the string is placed within quotes. When spaces are
not used, quotes are not required. For example, the following ESSIDs are
valid
CompanyESSID#1
"Company ESSID #1"
When using the Web Interface, spaces may be used without adding quotes
Encryption Type Role Mapping
Encryption Type Role Mapping allows a role to be assigned based entirely on
the L2 encryption type used by the client. This is typically used for guest
access to completely bypass authentication. Because authentication is