===== General Information ===== * serial port is 9600 baud * to turn something off, put a ''no'' in front of the configuration * to see current configuration ''show configuration'' * you can cut/past multiple commands/settings as once * see current virtual lans: ''show vlan'' * fastethernet abbreviation is ''fa'' * change hostname: ''hostname '' * ''ssh''ing in: ''ssh -c 3des-cbc -oKexAlgorithms=+diffie-hellman-group1-sha1 @'' * set the channel only with physical Radio0 and not the "virtual" radios. All the SSIDs will always be on the same channel * vlans appear to be intended to be used only with Cisco switchports and perhaps when they are in trunk mode * it appears [[https://sites.google.com/site/chaseerry/cisco-routing/dhcp-relay-agent---one-dhcp-server-for-many-vlans|you can get around this]] by having the access point forward DHCPDISCOVER broadcast packets directly to our DHCP server using the ''ip helper-address'' command. router#conf t router(config)#int fa0.2 router(config-subif)#ip helper-address address_of_server router(config-subif)#end * 8266 with Arduino Wi-Fi library seem happiest with ''encryption mode ciphers aes-ccm'' ==== Multiple SSIDs example ==== config t dot11 ssid LAB2 authentication open authentication key-management wpa ! authentication key-management wpa version 2 wpa-psk ascii testing123 vlan 2 mbssid guest-mode exit int dot11radio0 mbssid !channel 2412 !channel 2437 channel 2462 encryption vlan 2 mode ciphers aes-ccm tkip ! encryption vlan 2 mode ciphers aes-ccm ssid LAB2 no shut exit interface dot11Radio 0.2 encapsulation dot1Q 2 native exit int fa0.2 encapsulation dot1Q 2 native exit exit ! -------------------- config t dot11 ssid LAB3 authentication open authentication key-management wpa ! authentication key-management wpa version 2 wpa-psk ascii testing123 vlan 3 mbssid guest-mode exit int dot11radio0 mbssid ! encryption vlan 3 mode ciphers aes-ccm tkip encryption vlan 3 mode ciphers aes-ccm ssid LAB3 no shut exit interface dot11Radio 0.3 encapsulation dot1Q 3 bridge-group 1 exit int fa0.3 encapsulation dot1Q 3 exit exit ! -------------------- config t dot11 ssid LAB4 authentication open authentication key-management wpa ! authentication key-management wpa version 2 wpa-psk ascii testing123 vlan 4 mbssid guest-mode exit int dot11radio0 mbssid ! encryption vlan 4 mode ciphers aes-ccm tkip encryption vlan 4 mode ciphers aes-ccm ssid LAB4 no shut exit interface dot11Radio 0.4 encapsulation dot1Q 4 bridge-group 1 exit int fa0.4 encapsulation dot1Q 4 exit exit copy run start note: see comment about vlans and switchports above. That configuration for the fastethernet **may** be required ==== References ==== * https://sites.google.com/site/chaseerry/cisco-wireless/1131ag---configuring-multiple-ssids (best reference) * https://docs.google.com/document/d/1NgABdg-aOfQ045B2q-Q9nhHWE-Hz20dadCirKcmSM_0/edit# (original configuration of the access points) * https://content.cisco.com/chapter.sjs?uri=/searchable/chapter/www.cisco.com/content/en/us/td/docs/wireless/access_point/12-3_7_JA/configuration/guide/i1237sc/s37ssid.html.xml#wp1050468 * https://groups.google.com/g/cisco2010/c/WqPtZlenuJU * https://community.cisco.com/t5/wireless/wireless-ap-not-assigning-ip-address-to-new-clients/m-p/4140883#M215311 * https://learningnetwork.cisco.com/s/question/0D53i00000KstA2/privilege-level-when-username-command-is-configured