Fortinet black logo

CLI Reference

wireless-controller setting

VDOM wireless controller configuration.

  config wireless-controller setting
      Description: VDOM wireless controller configuration.
      set account-id {string}
      set country [NA|AL|...]
      set duplicate-ssid [enable|disable]
      set fapc-compatibility [enable|disable]
      set wfa-compatibility [enable|disable]
      set phishing-ssid-detect [enable|disable]
      set fake-ssid-action {option1}, {option2}, ...
      config offending-ssid
          Description: Configure offending SSID.
          edit <id>
              set ssid-pattern {string}
              set action {option1}, {option2}, ...
          next
      end
      set darrp-optimize {integer}
      set darrp-optimize-schedules <name1>, <name2>, ...
  end

config wireless-controller setting

Parameter Name Description Type Size
account-id FortiCloud customer account ID. string Maximum length: 63
country Country or region in which the FortiGate is located. The country determines the 802.11 bands and channels that are available.
NA: NO_COUNTRY_SET
AL: ALBANIA
DZ: ALGERIA
AO: ANGOLA
AR: ARGENTINA
AM: ARMENIA
AU: AUSTRALIA
AT: AUSTRIA
AZ: AZERBAIJAN
BH: BAHRAIN
BD: BANGLADESH
BB: BARBADOS
BY: BELARUS
BE: BELGIUM
BZ: BELIZE
BO: BOLIVIA
BA: BOSNIA AND HERZEGOVINA
BR: BRAZIL
BN: BRUNEI DARUSSALAM
BG: BULGARIA
KH: CAMBODIA
CF: CENTRAL AFRICA REPUBLIC
CL: CHILE
CN: CHINA
CO: COLOMBIA
CR: COSTA RICA
HR: CROATIA
CY: CYPRUS
CZ: CZECH REPUBLIC
DK: DENMARK
DO: DOMINICAN REPUBLIC
EC: ECUADOR
EG: EGYPT
SV: EL SALVADOR
EE: ESTONIA
FI: FINLAND
FR: FRANCE
GE: GEORGIA
DE: GERMANY
GR: GREECE
GL: GREENLAND
GD: GRENADA
GU: GUAM
GT: GUATEMALA
HT: HAITI
HN: HONDURAS
HK: HONG KONG
HU: HUNGARY
IS: ICELAND
IN: INDIA
ID: INDONESIA
IR: IRAN
IE: IRELAND
IL: ISRAEL
IT: ITALY
JM: JAMAICA
JO: JORDAN
KZ: KAZAKHSTAN
KE: KENYA
KP: NORTH KOREA
KR: KOREA REPUBLIC
KW: KUWAIT
LV: LATVIA
LB: LEBANON
LI: LIECHTENSTEIN
LT: LITHUANIA
LU: LUXEMBOURG
MO: MACAU SAR
MK: MACEDONIA, FYRO
MY: MALAYSIA
MT: MALTA
MX: MEXICO
MC: MONACO
MA: MOROCCO
MZ: MOZAMBIQUE
MM: MYANMAR
NP: NEPAL
NL: NETHERLANDS
AN: NETHERLANDS ANTILLES
AW: ARUBA
NZ: NEW ZEALAND
NO: NORWAY
OM: OMAN
PK: PAKISTAN
PA: PANAMA
PG: PAPUA NEW GUINEA
PY: PARAGUAY
PE: PERU
PH: PHILIPPINES
PL: POLAND
PT: PORTUGAL
PR: PUERTO RICO
QA: QATAR
RO: ROMANIA
RU: RUSSIA
RW: RWANDA
SA: SAUDI ARABIA
RS: REPUBLIC OF SERBIA
ME: MONTENEGRO
SG: SINGAPORE
SK: SLOVAKIA
SI: SLOVENIA
ZA: SOUTH AFRICA
ES: SPAIN
LK: SRI LANKA
SE: SWEDEN
SD: SUDAN
CH: SWITZERLAND
SY: SYRIAN ARAB REPUBLIC
TW: TAIWAN
TZ: TANZANIA
TH: THAILAND
TT: TRINIDAD AND TOBAGO
TN: TUNISIA
TR: TURKEY
AE: UNITED ARAB EMIRATES
UA: UKRAINE
GB: UNITED KINGDOM
US: UNITED STATES2
PS: UNITED STATES (PUBLIC SAFETY)
UY: URUGUAY
UZ: UZBEKISTAN
VE: VENEZUELA
VN: VIET NAM
YE: YEMEN
ZB: ZAMBIA
ZW: ZIMBABWE
JP: JAPAN14
CA: CANADA2
option -
duplicate-ssid Enable/disable allowing Virtual Access Points (VAPs) to use the same SSID name in the same VDOM.
enable: Allow VAPs to use the same SSID name in the same VDOM.
disable: Do not allow VAPs to use the same SSID name in the same VDOM.
option -
fapc-compatibility Enable/disable FAP-C series compatibility.
enable: Enable FAP-C series compatibility.
disable: Disable FAP-C series compatibility.
option -
wfa-compatibility Enable/disable WFA compatibility.
enable: Enable Wi-Fi Alliance Certification compatibility.
disable: Disable Wi-Fi Alliance Certification compatibility.
option -
phishing-ssid-detect Enable/disable phishing SSID detection.
enable: Enable phishing SSID detection.
disable: Disable phishing SSID detection.
option -
fake-ssid-action Actions taken for detected fake SSID.
log: Write logs for detected fake SSID.
suppress: Suppress detected fake SSID.
option -
darrp-optimize Time for running Dynamic Automatic Radio Resource Provisioning (DARRP) optimizations (0 - 86400 sec, default = 86400, 0 = disable). integer Minimum value: 0 Maximum value: 86400
darrp-optimize-schedules <name> Firewall schedules for DARRP running time. DARRP will run periodically based on darrp-optimize within the schedules. Separate multiple schedule names with a space.
Schedule name.
string Maximum length: 35
Parameter Name Description Type Size
ssid-pattern Define offending SSID pattern (case insensitive), eg: word, word, word, wo*rd. string Maximum length: 33
action Actions taken for detected offending SSID.
log: Generate logs for detected offending SSID.
suppress: Suppress detected offending SSID.
option -

VDOM wireless controller configuration.

  config wireless-controller setting
      Description: VDOM wireless controller configuration.
      set account-id {string}
      set country [NA|AL|...]
      set duplicate-ssid [enable|disable]
      set fapc-compatibility [enable|disable]
      set wfa-compatibility [enable|disable]
      set phishing-ssid-detect [enable|disable]
      set fake-ssid-action {option1}, {option2}, ...
      config offending-ssid
          Description: Configure offending SSID.
          edit <id>
              set ssid-pattern {string}
              set action {option1}, {option2}, ...
          next
      end
      set darrp-optimize {integer}
      set darrp-optimize-schedules <name1>, <name2>, ...
  end

config wireless-controller setting

Parameter Name Description Type Size
account-id FortiCloud customer account ID. string Maximum length: 63
country Country or region in which the FortiGate is located. The country determines the 802.11 bands and channels that are available.
NA: NO_COUNTRY_SET
AL: ALBANIA
DZ: ALGERIA
AO: ANGOLA
AR: ARGENTINA
AM: ARMENIA
AU: AUSTRALIA
AT: AUSTRIA
AZ: AZERBAIJAN
BH: BAHRAIN
BD: BANGLADESH
BB: BARBADOS
BY: BELARUS
BE: BELGIUM
BZ: BELIZE
BO: BOLIVIA
BA: BOSNIA AND HERZEGOVINA
BR: BRAZIL
BN: BRUNEI DARUSSALAM
BG: BULGARIA
KH: CAMBODIA
CF: CENTRAL AFRICA REPUBLIC
CL: CHILE
CN: CHINA
CO: COLOMBIA
CR: COSTA RICA
HR: CROATIA
CY: CYPRUS
CZ: CZECH REPUBLIC
DK: DENMARK
DO: DOMINICAN REPUBLIC
EC: ECUADOR
EG: EGYPT
SV: EL SALVADOR
EE: ESTONIA
FI: FINLAND
FR: FRANCE
GE: GEORGIA
DE: GERMANY
GR: GREECE
GL: GREENLAND
GD: GRENADA
GU: GUAM
GT: GUATEMALA
HT: HAITI
HN: HONDURAS
HK: HONG KONG
HU: HUNGARY
IS: ICELAND
IN: INDIA
ID: INDONESIA
IR: IRAN
IE: IRELAND
IL: ISRAEL
IT: ITALY
JM: JAMAICA
JO: JORDAN
KZ: KAZAKHSTAN
KE: KENYA
KP: NORTH KOREA
KR: KOREA REPUBLIC
KW: KUWAIT
LV: LATVIA
LB: LEBANON
LI: LIECHTENSTEIN
LT: LITHUANIA
LU: LUXEMBOURG
MO: MACAU SAR
MK: MACEDONIA, FYRO
MY: MALAYSIA
MT: MALTA
MX: MEXICO
MC: MONACO
MA: MOROCCO
MZ: MOZAMBIQUE
MM: MYANMAR
NP: NEPAL
NL: NETHERLANDS
AN: NETHERLANDS ANTILLES
AW: ARUBA
NZ: NEW ZEALAND
NO: NORWAY
OM: OMAN
PK: PAKISTAN
PA: PANAMA
PG: PAPUA NEW GUINEA
PY: PARAGUAY
PE: PERU
PH: PHILIPPINES
PL: POLAND
PT: PORTUGAL
PR: PUERTO RICO
QA: QATAR
RO: ROMANIA
RU: RUSSIA
RW: RWANDA
SA: SAUDI ARABIA
RS: REPUBLIC OF SERBIA
ME: MONTENEGRO
SG: SINGAPORE
SK: SLOVAKIA
SI: SLOVENIA
ZA: SOUTH AFRICA
ES: SPAIN
LK: SRI LANKA
SE: SWEDEN
SD: SUDAN
CH: SWITZERLAND
SY: SYRIAN ARAB REPUBLIC
TW: TAIWAN
TZ: TANZANIA
TH: THAILAND
TT: TRINIDAD AND TOBAGO
TN: TUNISIA
TR: TURKEY
AE: UNITED ARAB EMIRATES
UA: UKRAINE
GB: UNITED KINGDOM
US: UNITED STATES2
PS: UNITED STATES (PUBLIC SAFETY)
UY: URUGUAY
UZ: UZBEKISTAN
VE: VENEZUELA
VN: VIET NAM
YE: YEMEN
ZB: ZAMBIA
ZW: ZIMBABWE
JP: JAPAN14
CA: CANADA2
option -
duplicate-ssid Enable/disable allowing Virtual Access Points (VAPs) to use the same SSID name in the same VDOM.
enable: Allow VAPs to use the same SSID name in the same VDOM.
disable: Do not allow VAPs to use the same SSID name in the same VDOM.
option -
fapc-compatibility Enable/disable FAP-C series compatibility.
enable: Enable FAP-C series compatibility.
disable: Disable FAP-C series compatibility.
option -
wfa-compatibility Enable/disable WFA compatibility.
enable: Enable Wi-Fi Alliance Certification compatibility.
disable: Disable Wi-Fi Alliance Certification compatibility.
option -
phishing-ssid-detect Enable/disable phishing SSID detection.
enable: Enable phishing SSID detection.
disable: Disable phishing SSID detection.
option -
fake-ssid-action Actions taken for detected fake SSID.
log: Write logs for detected fake SSID.
suppress: Suppress detected fake SSID.
option -
darrp-optimize Time for running Dynamic Automatic Radio Resource Provisioning (DARRP) optimizations (0 - 86400 sec, default = 86400, 0 = disable). integer Minimum value: 0 Maximum value: 86400
darrp-optimize-schedules <name> Firewall schedules for DARRP running time. DARRP will run periodically based on darrp-optimize within the schedules. Separate multiple schedule names with a space.
Schedule name.
string Maximum length: 35
Parameter Name Description Type Size
ssid-pattern Define offending SSID pattern (case insensitive), eg: word, word, word, wo*rd. string Maximum length: 33
action Actions taken for detected offending SSID.
log: Generate logs for detected offending SSID.
suppress: Suppress detected offending SSID.
option -