Release Notes

Parameter Description Range Default
tls-guest-access
Enables guest access for EAP-
TLS users with valid
certificates.
disabled
tls-guest-role <role>
User role assigned to EAP-TLS
guest.
NOTE: This parameter requires
the PEFNG license.
guest
unicast-keyrotation
Enables unicast key rotation. disabled
use-session-key
Use RADIUS session key as the
unicast WEP key.
disabled
use-static-key
Use static key as the
unicast/multicast WEP key.
disabled
validate-pmkid
This parameter instructs the
controller to check the pairwise
master key (PMK) ID sent by
the client. When this option is
enabled, the client must send a
PMKID in the associate or
reassociate frame to indicate
that it supports OKC or PMK
caching; otherwise, full 802.1X
authentication takes place.
(This feature is optional, since
most clients that support OKC
and PMK caching do not send
the PMKID in their association
request.)
disabled
voice-aware
Enables rekey and
reauthentication for VoWLAN
clients.
NOTE: The Next Generation
Policy Enforced Firewall license
must be installed.
enabled
wep-key-retries <number>
Number of times WPA/WPA2
key messages are retried.
1-5 3
wep-key-size
Dynamic WEP key size, either
40 or 128 bits.
40 or 128 128 bits
wpa-fast-handover
Enables WPA-fast-handover.
This is only applicable for
phones that support WPA and
fast handover.
disabled
wpa-key-retries
Set the number of times
WPA/WPA2 Key Messages are
retried. The supported range is
1-10 retries, and the default
value is 3.
1-10 3
xSec-mtu <mtu>
Sets the size of the MTU for
xSec.
1024-
1500
1300
bytes
Dell Networking W-Series ArubaOS 6.4.x | Reference Guide aaa authentication dot1x | 33