Hub/Switch Reference Guide

318 AP Commands
NN47250-100 (Version 02.51)
See Also
set service-profile auth-psk on page 309
set service-profile psk-phrase on page 322
set service-profile wpa-ie on page 342
show service-profile on page 380
set service-profile auth-fallthru
Specifies the authentication type for users who do not match an 802.1X or MAC authentication rule for an SSID
managed by the service profile. When a user tries to associate with an SSID, WSS Software checks the authentication
rules for that SSID for a userwildcard that matches the username. If the SSID does not have an authentication rule that
matches the username, authentication for the user falls through to the fallthru type.
The fallthru type is a service profile parameter, and applies to all radios within the radio profiles that are mapped to the
service profile.
Syntax
set service-profile name auth-fallthru {last-resort | none | web-portal}
Defaults
The default fallthru authentication type is none.
If a username does not match a userwildcard in an authentication rule for the SSID requested by the user, the WSS that is
managing the radio the user is connected to redirects the user to a web page located on the WSS. The user must type a
valid username and password on the web page to access the SSID.
Access
Enabled.
History
Usage
The last-resort fallthru authentication type allows any user to access any SSID managed by the
service profile. This method does not require the user to provide a username or password. Use the last-resort
method only if none of the SSIDs managed by the service profile require secure access.
last-resort Automatically authenticates the user and allows access to the SSID
requested by the user, without requiring a username and password.
none Denies authentication and prohibits the user from accessing the SSID.
Note: The fallthru authentication type none is different from the
authentication method none you can specify for administrative access.
The fallthru authentication type none denies access to a network user. In
contrast, the authentication method none allows access to the WSS by an
administrator. (See “set authentication admin” on page 182 and “set
authentication console” on page 183.)
web-portal Serves the user a web page from the WSS’s nonvolatile storage for secure
login to the network.
Version 4.0 Option for Web-based AAA fallthru authentication type changed
from web-auth to web-portal.
Default changed to none.