Reference Guide

Table Of Contents
Dell PowerConnect ArubaOS 6.0 Command Line Interface | Reference Guide show ap blacklist-clients | 536
show ap blacklist-clients
show ap blacklist-clients
Description
Show a list of clients that have been denied access.
Usage Guidelines
Use the stm CLI command to add or remove users from a blacklist. Additionally, the dot1x authentication, VPN
authentication and MAC authentication profiles allow you to automatically blacklist a client if machine
authentication fails.
Examples
The output of this command shows that the controller has a single user-defined blacklisted client.
The output of this command includes the following information:
Column Description
STA MAC address of the blacklisted client.
reason The reason that the user was blacklisted.
z user-defined: User was blacklisted due to blacklist criteria were defined by the network
administrator
z mitm-attack: Blacklisted for a man in the middle (MITM) attack; impersonating a valid
enterprise AP.
z ping-flood: Blacklisted for a ping flood attack.
z session-flood: Blacklisted for a session flood attack.
z syn-flood: Blacklisted for a syn flood attack.
z session-blacklist: User session was blacklisted
z IP spoofing: Blacklisted for sending messages using the IP address of a trusted client.
z ESI-blacklist: An external virus detection or intrusion detection application or appliance
blacklisted the client.
z CP-flood: Blacklisting for flooding with fake AP beacons.
z UNKNOWN: Blacklist reason unknown.
block-time (sec) Amount of time the client has been blocked, in seconds.
remaining time(sec) Amount of time remaining before the client will be allowed access to the network again.
(host)# show ap blacklist-clients
Blacklisted Clients
-------------------
STA reason block-time(sec) remaining time(sec)
--- ------ --------------- -------------------
00:1E:37:CB:D4:52 user-defined 2480 Permanent