Specifications
11-42 Access Point Commands
set dap security
Setssecurityrequirements formanagementsessionsbetweenaRoamAboutswitchandits
Distributedaccesspoints.
Syntax
set dap security {require | optional | none}
Parameters
Defaults
Thedefaultsettingisoptional.
Mode
Enabled.
Usage
ThisparameterappliestoallDistributedAPsmanagedbytheswitch.Ifyouchangethesettingto
required,theswitchrequiresDistributedAPstohaveencryptionkeys.Theswitchalsorequires
theirfingerprintstobeverifiedinMSS.WhenAPsecurityisrequired,anAPcanestablisha
managementsession
withtheRoamAboutswitchonlyifitsfingerprinthasbeenverifiedbyyouin
MSS.
Achangetoaccesspointsecuritysupportdoesnotaffectmanagementsessionsthatarealready
established.Toapplythenewsettingtoanaccesspoint,restarttheaccesspoint.
Example
ThefollowingcommandconfiguresaRoamAbouttorequireDistributedaccesspointstohave
encryptionkeys:
RBT-8100# set dap security require
Related Commands
• setdapfingerprintonpage 11‐26
Note: The maximum transmission unit (MTU) for encrypted access point management traffic is 1498
bytes, whereas the MTU for unencrypted management traffic is 1474 bytes. Make sure the devices
in the intermediate network between the RoamAbout switch and Distributed access point can
support the higher MTU.
require RequiresallDistributedAPstohaveencryptionkeysthathavebeen
verifiedintheCLIbyanadministrator.IfanAPdoe snothavean
encryptionkeyorthekeyhasnotbeenverified,theRoamAboutswitch
doesnotestablishamanagementsessionwiththeAP.
optional AllowsAPstobe
managedbytheswitcheveniftheydonothave
encryptionkeysortheirkeyshavenotbeenverifiedby anadministrator.
EncryptionisusedforAPsthatsupportit.
none Encryptionisnotused,eveniftheAPsupportsit.