Configure gtk rekey based on packet, Configuring security ie – H3C Technologies H3C WA2600 Series WLAN Access Points User Manual
Page 21
5-6
To do…
Use the command…
Remarks
Enter system view
system-view
—
Enter WLAN service template view
wlan service-template
service-template-number crypto
—
Enable GTK rekey
gtk-rekey enable
Required
By default, GTK rekey is enabled.
Configure the GTK rekey interval
gtk-rekey method time-based
time
Required
By default, the interval is 86400
seconds.
Configure the device the start GTK
rekey when a client goes offline
gtk-rekey client-offline enable
Optional
By default, GTK rekey is not
started when a client goes offline.
Configure GTK rekey based on packet
Follow these steps to configure GTK rekey based on packet:
To do…
Use the command…
Remarks
Enter system view
system-view
—
Enter WLAN service template view
wlan service-template
service-template-number crypto
—
Enable GTK rekey
gtk-rekey enable
Required
By default, GTK rekey is enabled.
Configure GTK rekey based on
packet
gtk-rekey method packet-based
[ packet ]
Required
The default packet number is
10000000.
Start GTK rekey when a client goes
offline
gtk-rekey client-offline enable
Optional
By default, GTK rekey is not
started when a client goes offline.
z
By default, time-based GTK rekey is adopted, and the rekey interval is 86400 seconds.
z
Configuring a new GTK rekey method overwrites the previous one. For example, if time-based
GTK rekey is configured after packet-based GTK rekey is configured, time-based GTK rekey takes
effect.
Configuring Security IE
The security IE configuration includes WPA and RSN configuration. For WPA and RSN configuration,
open system authentication is required.