Specifications

ROLE-POLICY 19 - 5
19.1.2 no
role-policy
Negates a command or resets settings to their default. When used in the config role policy mode, the no command
removes the default role assigned to a wireless client. It also disables existing user roles from being assigned to new
users.
Supported in the following platforms:
Access Points — AP300, AP621, AP622, AP650, AP6511, AP6521, AP6532, AP71XX, AP81XX
Wireless Controllers — RFS4000, RFS6000, RFS7000, NX9000, NX9500
Syntax
no [default-role|user-role]
no default-role use [ip-access-list|mac-access-list]
no default-role use ip-access-list [in|out] <IP-ACCESS-LIST> precedence <1-100>
no default-role use mac-access-list [in|out] <MAC-ACCESS-LIST> precedence <1-100>
no user-role <ROLE>
Parameters
• no default-role use ip-access-list [in|out] <IP-ACCESS-LIST> precedence <1-100>
• no default-role use mac-access-list [in|out] <MAC-ACCESS-LIST> precedence <1-100>
no default-role use Removes the default role assigned to a wireless client
Use – Disables the use of an IP or MAC access list
ip-access-list [in|out] Disables the use of an IP access list
in – Removes the rule applied to incoming packets
out – Removes the rule applied to outgoing packets
<IP-ACCESS-LIST> Specifies the IP access list to remove
<IP-ACCESS-LIST> – Sets the IP access list name
precedence
<1-100>
After specifying the IP access list, specify the ACL precedence value applied.
precedence – Based on the packets received, the lower precedence value is evaluated
first.
<1-100> – Specify the precedence value from 1 - 100.
no default-role use Removes the default role assigned to a wireless client
Use – Disables the use of an IP or MAC access list
mac-access-list [in|out] Disables the use of a MAC access list
in – Removes the rule applied to incoming packets
out – Removes the rule applied to outgoing packets