Chapter 5 Interfaces
ZyWALL (ZLD) CLI Reference Guide
70
ssid ssid Sets the (Service Set IDentity). This identifies the Service Set
with which a wireless station is associated. Wireless stations
associating to the ZyWALL must have the same SSID.
ssid: Use up to 32 printable 7-bit ASCII characters as a
name for the wireless LAN.
station-limit <1..255> Sets the highest number of wireless clients that are allowed to
connect to the wireless interface at the same time.
security mode {none | wep | wpa |
wpa2}
Sets what type of security the wireless interface uses.
none: applies no security.
wep: WEP security (extremely weak).
wpa: WPA security.
wpa2:WPA2 security (strongest option).
security wep <64 | 128> default-key
<1..4>
Sets WEP encryption to use a 64 or 128 bit key and selects
the default key.
security wep mode <open | share> Sets the WEP encryption to use open or shared key
authentication.
security wpa <tkip | aes> eap
internal profile-name tls-cert
certificate name
Configures WPA enterprise security using TKIP or AES and
an existing AAA authentication method object (profile-
name). Select the certificate the ZyWALL uses to authenticate
itself to the wireless clients. The wireless clients must use
TTLS authentication protocol and PAP inside the TTLS
secure tunnel.
security wpa <tkip | aes> eap
external
Configures WPA enterprise security using TKIP or AES and
an external server. Use the security external command
to specify the server’s address.
security wpa <tkip | aes> psk key
psk-key
Configures WPA security using TKIP or AES and a Pre-
Shared Key (PSK).
psk-key: Use 8 to 63 case-sensitive alphanumeric
characters.
security wpa2 <tkip | aes> eap
internal profile-name tls-cert
certificate name
Configures WPA2 enterprise security using TKIP or AES and
an existing AAA authentication method object (profile-
name). Select the certificate the ZyWALL uses to authenticate
itself to the wireless clients. The wireless clients must use
TTLS authentication protocol and PAP inside the TTLS
secure tunnel.
security wpa2 <tkip | aes> eap
external
Configures WPA2 enterprise security using TKIP or AES and
an external server. Use the security external command
to specify the server’s address.
security wpa2 <tkip | aes> psk key
psk-key
Configures WPA2 security using TKIP or AES and a Pre-
Shared Key (PSK).
psk-key: Use 8 to 63 case-sensitive alphanumeric
characters.
security dot1x acct ip port
<1..65535>
Sets the IP address and port number of an external
accounting server.
security dot1x auth ip port
<1..65535>
Sets the IP address and port number of an external
authentication (RADIUS) server.
security dot1x activate Enables IEEE 802.1x accounting and authentication.
security external acct ip port
<1..65535>
Sets the IP address and port number of an external
accounting server.
Table 33 WLAN Interface Commands (continued)
COMMAND DESCRIPTION