This command returns an error message for wired devices. The error message indicates that auto location
configuration for a wired device is unfeasible. The ap-fqln and ap-name use the same syntax as ap-group.
Configuring Service Level-based Auto-association
(host) (config) #airgroupservice airplay
(host) (config-airgroupservice) #autoassociate
(host) (config-airgroupservice) #autoassociate apfqln
(host) (config-airgroupservice) #autoassociate apgroup
(host) (config-airgroupservice) #autoassociate apname
Best Practices and Limitations
Apple iTunes Wi-Fi Synchronization and File Sharing
When the switch receives mDNS response for a service, the switch caches such records and does not propagate
to other users. But for services like iTunes Wi-Fi synchronization and File Sharing to work seamlessly, such
mDNS responses must be propagated to other users on the switch even if they do not query for it.
To ensure that applications such as iTunes Wi-Fi synchronization and File Sharing work seamlessly, AOS-W
selectively forwards these mDNS responses to AirGroup users, based on the user-name CPPM policy of the
AirGroup server. Hence, for a customer to use these services, it is necessary to configure user-name based
CPPM policies for the AirGroup devices.
Firewall Configuration
The following firewall configuration settings are recommended:
Disable Inter-User Firewall Settings
Some firewall settings can prevent the untrusted clients from communicating with each other. When these
settings are enabled, an untrusted client such as an iPad may not be able to send its image to an Apple TV on
the same switch.
Use the following commands to disable the virtual AP global firewall options and allow Bonjour services to use
AirGroup.
n no firewall deny-inter-user-bridging
n no firewall deny-inter-user-traffic
n no ipv6 firewall deny-inter-user-bridging
Valid User ACL Configuration
The ValidUser Access Control list (ACL) must allow mDNS packets with the source IP as a link local address. Do
not use a ValidUser ACL if the user VLAN interfaces of the AirGroup switch are not configured with an IP
address.
Allow GRE and UDP 5353
mDNS discovery uses the predefined port UDP 5353. If there is a firewall between the AirGroup switch and
WLAN switch, ensure that your firewall policies allow GRE and UDP 5353. DLNA uses the predefined port UDP
1900.
AOS-W 6.5.3.x | User Guide AirGroup | 1006