Reference Guide

Parameter
* Global overrides identically-named user profile
** After sign off, user profile returns to global value
Description
[wpa2pskpwdEnc={passphrase encrypted for WPA2-PSK}]
[encryption={TKIP|CCMP}]
[fasteap={EAP-MSCHAPV2, EAP-GTC}]
[fastidentity={Identity for EAP_FAST}]
[fastmschapun={username for EAP-FAST/EAP-MSCHAPV2}]
[fastpmschappwd={password for EAP-FAST/EAP-MSCHAPV2}]
[fastmschappwdEnc={password encrypted for EAP-FAST/EAP-
MSCHAPV2}]
[fastmschapdm={domain for EAP-FAST/EAP-MSCHAPV2}]
[fastmschaphidedm={yes,no}]
[fastsinglesignon={yes, no}]
[fastgtcun={username for EAP-FAST/EAP-GTC}]
[fastgtcpwd={password for EAP-FAST/EAP-GTC}]
[fastgtcpwdEnc={password for encrypted for EAP-FAST/EAP-
GTC}]
[wiredreset={yes, no}]
Continued from the previous table...
#wtos_95
Device=Wireless Mode=Infrastructure
SSID=wtos_95IEEE8021X=yes network=wireless profile=wtos_95
access=WPA2-ENT eap=yes eaptype=EAP-PEAP peapeap=EAP-
MSCHAPV2
Example: IEEE8021X=yes network=wireless access=wpa-ent
eap=yes eaptype=eap-tls tlsclntcert=user.cer
tlsclntprikey=user.pfx tlsclntprikeypwd=12345678
OR
IEEE8021X=yes network=wireless access=wpa-ent eap=yes
eaptype=eap-tls tlsclntcert=user.cer tlsclntprikey=user.pfx
tlsclntprikeypwd=12345678 leapun=user1 password=1234
peapmschapun=user1 peapmschappwd=12345
peapmschapdm=wyse.com
IEEE8021X=yes network=wired eap=yes eaptype=eap-tls
tlsclntcert=user.cer tlsclntprikey=user.pfx
tlsclntprikeypwd=12345678
By default, peapidentity is same as peapmschapun.If
peapmschaphidedm is set to yes, the domain will use saved peap
MSCHAP domain name and the prompts dialog will not include the
domain field when you perform ieee8021x authentication.
The following example describes wildcard server validation:
IEEE8021X=yes network=WIRED access=WPA2-ENT
servervalidate=yes eap=yes eaptype=EAP-PEAP servercheck=yes
servername=w2k8-ACS-64.sqawirelsess.com
peapmschapdm=EAP-MSCHAPV2 peapgtcun=sqawirless2
peapmschappwd=123!@#qwe
The username of ieee8021x (fastmschapun, peapmschapun,
peapgtcun, leapun) can be configured as system variables like
$mac, $sn etc. By default, fastidentity is same as fastmschapun.
If fastmschaphidedm is set to yes, the domain uses saved
EAP_FAST MSCHAP domain name, and the prompts dialog does
not include the domain field when you perform ieee8021x
authentication.
The following example describes wildcard server
validation:IEEE8021X=yes network=WIRED access=WPA2-ENT
servervalidate=yes eap=yes eaptype=EAP-FAST servercheck=yes
servername=w2k8-ACS-64.sqawirelsess.com
Parameters for wnos INI, {username} INI, and $MAC INI files
71