User's Manual

– 243
26 Rogue AP Detection Commands
A “rogue AP” is either an access point that is not authorized to participate in the
wireless network, or an access point that does not have the correct security
configuration. Rogue APs can potentially allow unauthorized users access to the
network. Alternatively, client stations may mistakenly associate to a rogue AP and
be prevented from accessing network resources. Rogue APs may also cause radio
interference and degrade the wireless LAN performance.
The access point can be configured to periodically scan all radio channels and find
other access points within range. A database of access points is maintained so that
any rogue APs can be identified.
rogue-ap enable This command enables the periodic detection of nearby access points.
Syntax
rogue-ap enable
Default Setting
Disabled
Command Mode
Interface Configuration (Wireless)
Table 22: Rogue AP Detection Commands
Command Function Mode Page
rogue-ap enable Enables the periodic detection of other nearby
access points
GC
243
rogue-ap disable Disables the periodic detection of other nearby
access points
GC
244
rogue-ap add friendly Configures a database of known AP MAC
addresses
GC
244
rogue-ap delete friendly Removes AP MAC addresses from the database GC
245
rogue-ap duration Sets the duration that all channels are scanned GC
245
rogue-ap interval Sets the time between each scan GC
246
rogue-ap instant-scan Forces an immediate scan of all radio channels GC
247
show rogue-ap Shows the current database of detected access
points
Exec
247