! management http port 80 no management radius-auth no management telnet management ssh management cambium-remote url https://172.16.116.1 management user admin password $crypt$1$8faloXj9/UjE0FT9OGpBUy3CbwhzziFZ management https port 443 management http management https management ssh idle-timeout 300 management cambium-remote management cambium-remote validate-server-cert led no poe-out system hw_reset country-code BR sfe-offload wpa2-handshake-retry 4 4 wpa2-handshake-timeout 100 500 1000 wpa2-handshake-log-level 4 placement outdoor ! wireless radio 1 no shutdown frequency-band 2.4GHz channel 1 channel-width 20 channel-list all-channels allowed-wlan-modes default rates min-unicast default rates non-unicast default rates management default power auto no airtime-fairness beacon-interval 100 off-channel-scan type active off-channel-scan dwell-time 50 off-channel-scan interval 6 auto-rf dynamic-channel channel-hold-time 120 auto-rf dynamic-channel interval 0 auto-rf dynamic-channel samples 3 auto-rf dynamic-channel snr-weightage 60 auto-rf dynamic-channel channel-load-weightage 40 auto-rf dynamic-channel congestion-channel-switch off auto-rf dynamic-channel congestion-threshold 70 auto-rf dynamic-channel per-channel-switch off auto-rf dynamic-channel acceptance-per-threshold 30 auto-rf dynamic-power mode by-channel auto-rf dynamic-power cellsize-overlap-threshold 50 mesh-xtnded-dev-list wmm-parameters downstream txoplimit vi 3008 wmm-parameters downstream txoplimit vo 1504 wmm-parameters upstream txoplimit vi 3008 wmm-parameters upstream txoplimit vo 1504 no multicast-to-unicast mesh-client-bgscan channel-list all-channels ! wireless radio 2 no shutdown frequency-band 5GHz channel auto channel-width 20 channel-list prefer-non-dfs allowed-wlan-modes default rates min-unicast default rates non-unicast default rates management default power auto no airtime-fairness beacon-interval 100 off-channel-scan type active off-channel-scan dwell-time 50 off-channel-scan interval 6 auto-rf dynamic-channel channel-hold-time 120 auto-rf dynamic-channel interval 0 auto-rf dynamic-channel samples 3 auto-rf dynamic-channel snr-weightage 60 auto-rf dynamic-channel channel-load-weightage 40 auto-rf dynamic-channel congestion-channel-switch off auto-rf dynamic-channel congestion-threshold 70 auto-rf dynamic-channel per-channel-switch off auto-rf dynamic-channel acceptance-per-threshold 30 auto-rf dynamic-power mode by-channel auto-rf dynamic-power cellsize-overlap-threshold 50 mesh-xtnded-dev-list wmm-parameters downstream txoplimit vi 3008 wmm-parameters downstream txoplimit vo 1504 wmm-parameters upstream txoplimit vi 3008 wmm-parameters upstream txoplimit vo 1504 no multicast-to-unicast mesh-client-bgscan channel-list all-channels ! wireless wlan 1 ssid AUTOMACAO no shutdown vlan 120 vlan-pool radius-based security wpa2-psk protected-mgmt-frames state optional protected-mgmt-frames sa-query-retry-time 100 protected-mgmt-frames association-comeback 1 passphrase $crypt$1$3U9QYL26CylzEKP6EM8AV7X/j4PiJWSa band all dtim-interval 1 wpa-group-rekey-interval 3600 max-associated-client 127 proxy-arp proxy-arp-for-static-ip dynamic-auth client-cache cnMaestro nas-identifier WLAN-BSSID network-policy-id 0 monitor-host up-interval 60 monitor-host down-interval 30 monitor-host attempts 2 monitor-host 172.16.116.1 mac-authentication policy radius no mac-authentication radius upper-case mac-authentication radius password radius-server authentication host 1 172.16.50.220 radius-server authentication secret 1 $crypt$1$dyRKtblUn4wOI2W53Z9tqMN8ZaQhut3fZAK5AdOTLrMHZzvB3UYnXw== radius-server authentication host 2 172.16.50.224 radius-server authentication secret 2 $crypt$1$V1vjBHTyWGyh3uQi8ZOo5oxhBgUxtf8znldjs0HAqlz0n+OJ7kn3lA== radius-server mode failover radius-server through-controller radius-server called-sta-id AP-MAC:SSID radius-server rad-attr service-type 1 radius-server accounting host 1 172.16.50.220 radius-server accounting secret 1 $crypt$1$dWJVuSF5YtqTzIOpzj/ldZJF11cVaxCljCTwC3SDj2NLyIq+EsQsoA== radius-server accounting host 2 172.16.50.224 radius-server accounting secret 2 $crypt$1$WF07FGBXa2xuIfCtwPEDcCxrkbT4KyiZ/layND0OTP6f3f+WtOfs5g== radius-server accounting interim-update-interval 1800 radius-server accounting mode start-interim-stop radius-server accounting acct-on radius-server accounting sync-records passpoint interworking access-network-type private no guest-access ! ! ! interface portchannel 1 switchport mode access switchport access vlan 1 ! interface eth 1 switchport mode trunk switchport trunk native vlan 116 switchport trunk native tagged switchport trunk allowed vlan 1,116,120,11,20,7 ! interface vlan 1 ip address zeroconf management-access all ip dhcp request-option-all ipv6 request-option-all ipv6 address autoconfig ip address dhcp ! interface vlan 7 management-access all ipv6 address autoconfig ip address dhcp ! interface vlan 11 management-access all ipv6 address autoconfig ip address dhcp ! interface vlan 20 management-access all ipv6 address autoconfig ip address dhcp ! interface vlan 116 management-access all ipv6 address autoconfig ip address 172.16.116.39 255.255.255.0 ! interface vlan 120 management-access all ipv6 address autoconfig ip address dhcp ! ntp server 172.16.50.2 ntp server 172.16.50.12 pppoe server shutdown tcp-mss-clamp management-access ! ip name-server 172.16.50.11 ip name-server 172.116.50.1 ip route default 172.16.116.254 ipv6 name-server timezone "America/Sao Paulo" hostname PT-5 snmp-server no wifiperf ! ip gw-source-precedence static 1 ip gw-source-precedence dhcpc 2 ip gw-source-precedence pppoe 3 ipv6 gw-source-precedence static 1 ipv6 gw-source-precedence auto-config/dhcpc 2 lldp lldp tx-interval 30 power policy sufficient logging syslog 7 !