Concept Guide
Table Of Contents
- About this Guide
- Instant CLI
- a-channel
- a-external-antenna
- aaa test-server
- aeroscout-rtls
- airgroup
- airgroupservice
- airwave-rtls
- ale-report-interval
- ale-server
- alg
- allow-new-aps
- allowed-ap
- ams-backup-ip
- ams-identity
- ams-ip
- ams-key
- apply
- arm
- attack
- auth-failure-blacklist-time
- auth-survivability cache-time-out
- blacklist-client
- blacklist-time
- calea
- cellular-uplink-profile
- clear airgroup state statistics
- clear
- clear-cert
- clock set
- clock summer-time
- clock timezone
- commit
- configure terminal
- console
- content-filtering
- convert-aos-ap
- copy
- deny-inter-user-bridging
- deny-local-routing
- device-id
- disable-prov-ssid
- disconnect-user
- dot11a-radio-disable
- dot11g-radio-disable
- download-cert
- dpi
- dpi-error-page-url
- dynamic-cpu-mgmt
- dynamic-radius-proxy
- enet-vlan
- enet0-bridging
- enet0-port-profile
- enet1-port-profile
- enet2-port-profile
- enet3-port-profile
- enet4-port-profile
- extended-ssid
- factory-ssid-enable
- firewall-external-enforcement
- g-channel
- g-external-antenna
- gre per-ap-tunnel
- gre primary
- gre type
- help
- hostname
- hotspot anqp-3gpp-profile
- hotspot anqp-domain-name-profile
- hotspot anqp-ip-addr-avail-profile
- hotspot anqp-nai-realm-profile
- hotspot anqp-nwk-auth-profile
- hotspot anqp-roam-cons-profile
- hotspot anqp-venue-name-profile
- hotspot h2qp-conn-cap-profile
- hotspot h2qp-oper-name-profile
- hotspot h2qp-oper-class-profile
- hotspot h2qp-wan-metrics-profile
- hotspot hs-profile
- iap-master
- ids
- ignore-image-check
- inactivity-ap-timeout
- inbound-firewall
- internal-domains
- ip-address
- ip dhcp
- ip dhcp pool
- l2tpv3 session
- l2tpv3 tunnel
- l3-mobility
- led-off
- logout
- managed-mode-profile
- managed-mode-sync-server
- mesh
- mgmt-accounting
- mgmt-auth-server
- mgmt-auth-server-load-balancing
- mgmt-auth-server-local-backup
- mgmt-user
- mtu
- name
- ntp-server
- opendns
- organization
- ping
- pppoe-uplink-profile
- proxy
- reload
- remove-blacklist-client
- restrict-corp-access
- restricted-mgmt-access
- rf dot11a-radio-profile
- rf dot11g-radio-profile
- rf-band
- rft
- routing-profile
- show 1xcert
- show about
- show access-rule
- show access-rule-all
- show acl
- show airgroup
- Description
- Syntax
- Usage Guidelines
- Example
- show airgroup blocked-queries
- show airgroup blocked-service-id
- show airgroup cache entries
- show airgroup cppm auth server non-coa-only
- show airgroup cppm auth server coa-capable
- show airgroup cppm server
- show airgroup cppm entries
- show airgroup debug statistics
- show airgroup internal-state statistics
- show airgroup servers
- show airgroup status
- show airgroup swarm-info
- show airgroup users
- Command History
- Command Information
- show airgroupservice
- show airgroupservice-ids
- show ale
- show alert global
- show alg
- show allowed-aps
- show all monitor
- show amp-audit
- show ap-alert
- show ap-env
- show aps
- show ap allowed-channels
- show ap allowed-max-EIRP
- show ap arm
- show ap association
- show ap bss-table
- show ap cacert
- show ap client-match-history
- show ap client-match-live
- show ap client-probe-report
- show ap client-match-refused
- show ap client-match-triggers
- show ap client-view
- show ap debug airwave
- show ap debug airwave-config-received
- show ap debug airwave-data-sent
- show ap debug airwave-events-pending
- show ap debug airwave-restore-status
- show ap debug airwave-signon-key
- show ap debug airwave-state
- show ap debug airwave-stats
- show ap debug am-config
- show ap debug auth-trace-buf
- show ap debug client-match
- show ap debug client-stats
- show ap debug client-table
- show ap debug client-frame-history
- show ap debug crash-info
- show ap debug dhcp-packets
- show ap debug dot1x-statistics
- show ap debug driver-config
- show ap debug mgmt-frames
- show ap debug persistent-clients
- show ap debug radio-stats
- show ap debug radius-statistics
- show ap debug rfc3576-radius-statistics
- show ap debug shaping-table
- show ap debug spanning-tree
- show ap debug stm-config
- show ap debug stm-role
- show ap debug system-status
- show ap debug tacacs-statistics
- show ap dot11k-beacon-report
- show ap dot11k-nbrs
- show ap flash-config
- show ap mesh counters
- show ap mesh link
- show ap mesh neighbors
- show ap monitor
- Description
- Syntax
- Examples
- show ap monitor active-laser-beams
- show ap monitor ap-list
- show ap monitor ap-wired-mac
- show ap monitor arp-cache
- show ap monitor containment-info
- show ap monitor enet-wired-mac
- show ap monitor ids-state
- show ap monitor pot-ap-list
- show ap monitor pot-sta-list
- show ap monitor routers
- show ap monitor scan-info
- show ap monitor state
- show ap monitor stats
- show ap monitor status
- Command History
- Command Information
- show ap pmkcache
- show ap virtual-beacon-report
- show app-services
- show arm-channels
- show arm config
- show arp
- show attack
- show auth-survivability
- show backup-config
- show blacklist-client
- show calea config
- show calea statistics
- show captive-portal
- show captive-portal-domains
- show cellular
- show cert all
- show clients
- show clock
- show configuration
- show config-status
- show console-settings
- show country-codes
- show cpcert
- show cpu
- show datapath
- show delta-config
- show derivation-rules
- show dhcp-allocation
- show dhcpc-opts
- show dhcps config
- show dhcp subnets
- show distributed-dhcp-branch-counts
- show domain-names
- show dpi
- show dpi-error-page-url
- show dpi-stats
- show election
- show external-captive-portal
- show facebook
- show fault
- show ids
- show ids-detection config
- show ids-protection config
- show image
- show inbound-firewall-rules
- show interface counters
- show ip dhcp database
- show ip igmp
- show ip interface brief
- show ip route
- show lacp status
- show l2tpv3 config
- show l2tpv3 global
- show l2tpv3 session
- show l2tpv3 system
- show l2tpv3 tunnel
- show l3-mobility
- show ldap-servers
- show log ap-debug
- show log apifmgr
- show log convert
- show log debug
- show log driver
- show log kernel
- show log l3-mobility
- show log network
- show log pppd
- show log rapper
- show log sapd
- show log security
- show log system
- show log upgrade
- show log user
- show log user-debug
- show log vpn-tunnel
- show log wireless
- show memory
- show mgmt-user
- show network
- show network-summary
- show opendns
- show port status
- show pppoe
- show process
- show proxy config
- show radio config
- show radius-servers support
- show radius status
- show radseccert
- show running-config
- show snmp-configuration
- show snmp trap-queue
- show spectrum-alert
- show stats
- show subscription-aps
- show summary
- show swarm
- show supported-cert-formats
- show syslog-level
- show tacacs-servers
- show tech-support
- show tspec-calls
- show uncommitted-config
- show upgrade info
- show uplink
- show uplink-vlan
- show usb status
- show users
- show valid-channels
- show version
- show vpn
- show walled-garden
- show wifi-uplink
- show wired-port
- show wired-port-settings
- show wispr config
- show xml-api-server
- snmp-server
- subscription-ap
- subscription-ap-enable
- swarm-mode
- syslocation
- syslog-level
- syslog-server
- telnet
- telnet-server
- terminal-access
- tftp-dump-server
- traceroute
- upgrade-image
- uplink
- uplink-vlan
- usb-port-disable
- user
- version
- virtual-controller-country
- virtual-controller-dnsip
- virtual-controller-ip
- virtual-controller-key
- virtual-controller-vlan
- vpn backup
- vpn fast-failover
- vpn gre-outside
- vpn hold-time
- vpn ikepsk
- vpn monitor-pkt-lost-cnt
- vpn monitor-pkt-send-freq
- vpn preemption
- vpn primary
- vpn reconnect-time-on-failover
- vpn reconnect-user-on-failover
- web-server
- wifi0-mode
- wifi1-mode
- wired-port-profile
- wlan access-rule
- wlan auth-server
- wlan captive-portal
- wlan external-captive-portal
- wlan ldap-server
- wlan ssid-profile
- wlan sta-profile
- wlan tacacs-server
- wlan walled-garden
- wlan wispr-profile
- write
- xml-api-server
- zonename
- Terminology

l When no uplink is enforced and preemption is not enabled, and if the current uplink fails, the W-IAP tries to
find an available uplink based on the priority configured.
Uplink Preemption
When no uplink is enforced and preemption is enabled, and if the current uplink fails, the W-IAP tries to find an
available uplink based on in the priority configured. If current uplink is active, the W-IAP periodically tries to use
a higher priority uplink and switches to the higher priority uplink even if the current uplink is active.
Uplink Priority
When uplink priority is configured, the W-IAP tries to get a higher priority link every ten minutes even if the
current uplink is up. This does not affect the current uplink connection. If the higher uplink is usable, the W-IAP
switches over to that uplink. Preemption is enabled by default.
Uplink Switchover
The default priority for uplink switchover is Ethernet and then 3G/4G. The W-IAP has the ability to switch to the
lower priority uplink if the current uplink is down.
Uplink Switching based on VPN Status
Instant supports switching uplinks based on the VPN status when deploying mixed uplinks (Eth0, 3G/4G,Wi-Fi).
When VPN is used with multiple backhaul options, the W-IAP switches to an uplink connection based on the
VPN connection status instead of only using Eth0, the physical backhaul link.
The following configuration conditions apply to uplink switching:
l If the current uplink is Eth0 and the VPN connection is down, the W-IAP will retry to connect to VPN. This
retry time depends on the configuration of primary/backup and fast-failover for VPN. If all the possibilities
fail, then the W-IAP waits for a vpn-failover-timeout and then a different u plink (3G,Wi-Fi) is selected.
l If the current uplink is 3G or Wi-Fi, and Eth0 has a physical link, the W-IAP periodically suspends user traffic
to try and connect to the VPN on the Eth0. If the W-IAP succeeds, then the W-IAP switches to Eth0. If the W-
IAP does not succeed, then the W-IAP restores the VPN connection to the current uplink.
Switching Uplinks Based on Internet Availability
When the uplink switchover based on Internet availability is enabled, the W-IAP continuously sends ICMP
packets to some well-known Internet servers. If the request is timed out due to a bad uplink connection or
uplink interface failure, and the public Internet is not reachable from the current uplink, the W-IAP switches to a
different connection.
Example
The following example configures uplink priority:
(Instant AP)(uplink)# uplink-priority ethernet port 0 1
(Instant AP)(uplink)# end
(Instant AP)# commit apply
Dell Networking W-Series Instant 6.4.3.1-4.2.0.0 | CLI Reference Guide uplink | 559