Fortinet black logo

FortiWiFi and FortiAP Configuration Guide

Advanced WiFi Settings options

Advanced WiFi Settings options

More options are exposed on WiFi Settings page, including Duplicate SSID, DARRP related settings, Phishing SSID detection setting, and SNMP settings.

These fields correspond to the following WiFi CLI settings under config wireless-controller setting:

Duplicate SSID

Enable/disable allowing VAPs to use the same SSID name in the same VDOM.
set duplicate-ssid [enable|disable]

DARRP optimization interval (seconds)

Time for running Distributed Automatic Radio Resource Provisioning.
set darrp-optimize {integer}

DARRP optimization schedule

Firewall schedules for DARRP running time. DARRP will run periodically based on darrp-optimize within the schedules. Separate multiple schedule names with a space.
set darrp-optimize-schedules <name1>, <name2>, …

Phishing SSID detection setting

Enable/disable phishing SSID detection. For more information, see Suppressing phishing SSID
set phishing-ssid-detect [enable|disable]

These fields correspond to the following SNMP CLI settings under config wireless-controller snmp:

Engine ID

AC SNMP engineID string.
set engine-id {string}

Contact information

Contact Information.
set contact-info {string}

CPU usage threshold

CPU usage when trap is sent.
set trap-high-cpu-threshold {integer}

Memory usage threshold

Memory usage when trap is sent.
set trap-high-mem-threshold {integer}

User list > New/Edit SNMP User

SNMP User Configuration.
config user

Name

SNMP user name.
  edit <name>

Current SNMP user

Enable/Disable SNMP user.
    set status [enable|disable]

Queries

Enable/disable SNMP queries for this user.
    set queries [enable|disable]

Traps

Enable/disable traps for this SNMP user.
    set trap-status [enable|disable]

Authentication

Security level for message authentication and encryption:

  • No privacy: Message with authentication but no privacy (encryption).
  • Privacy: Message with authentication and privacy (encryption).
    set security-level [no-auth-no-priv|auth-no-priv|...]

Authentication protocol

Select an authentication procol.

Shown when Authentication is enabled

    set auth-proto [md5|sha]

Authentication password

Password for authentication protocol.

Shown when Authentication is enabled

    set auth-pwd {password}

Privacy

Privacy (encryption) protocol.

Shown when Authentication is enabled

    set priv-proto [aes|des|...]

Privacy password

Password for privacy (encryption) protocol.

Shown when Authentication is enabled

    set priv-pwd {password}

Notify host IP

Configure SNMP User Notify Hosts.
    set notify-hosts {ipv4-address}

Community list > New/Edit SNMP Community

SNMP Community Configuration
config community

ID

Community ID.
  edit <id>

Name

Community name.
    set name {string}

Current SNMP community

Enable/disable this SNMP community.
    set status [enable|disable]

V1 queries

Enable/disable SNMP v1 queries.
    set query-v1-status [enable|disable]

V2c queries

Enable/disable SNMP v2c queries.
    set query-v2c-status [enable|disable]

V1 traps

Enable/disable SNMP v1 traps.
    set trap-v1-status [enable|disable]

V2c traps

Enable/disable SNMP v2c traps.
    set trap-v2c-status [enable|disable]

Host list > New/Edit Host List

Configure IPv4 SNMP managers (hosts).
    config hosts

ID

Host entry ID.
      edit <id>

IP

IPv4 address of the SNMP manager (host).
        set ip {user}

Advanced WiFi Settings options

More options are exposed on WiFi Settings page, including Duplicate SSID, DARRP related settings, Phishing SSID detection setting, and SNMP settings.

These fields correspond to the following WiFi CLI settings under config wireless-controller setting:

Duplicate SSID

Enable/disable allowing VAPs to use the same SSID name in the same VDOM.
set duplicate-ssid [enable|disable]

DARRP optimization interval (seconds)

Time for running Distributed Automatic Radio Resource Provisioning.
set darrp-optimize {integer}

DARRP optimization schedule

Firewall schedules for DARRP running time. DARRP will run periodically based on darrp-optimize within the schedules. Separate multiple schedule names with a space.
set darrp-optimize-schedules <name1>, <name2>, …

Phishing SSID detection setting

Enable/disable phishing SSID detection. For more information, see Suppressing phishing SSID
set phishing-ssid-detect [enable|disable]

These fields correspond to the following SNMP CLI settings under config wireless-controller snmp:

Engine ID

AC SNMP engineID string.
set engine-id {string}

Contact information

Contact Information.
set contact-info {string}

CPU usage threshold

CPU usage when trap is sent.
set trap-high-cpu-threshold {integer}

Memory usage threshold

Memory usage when trap is sent.
set trap-high-mem-threshold {integer}

User list > New/Edit SNMP User

SNMP User Configuration.
config user

Name

SNMP user name.
  edit <name>

Current SNMP user

Enable/Disable SNMP user.
    set status [enable|disable]

Queries

Enable/disable SNMP queries for this user.
    set queries [enable|disable]

Traps

Enable/disable traps for this SNMP user.
    set trap-status [enable|disable]

Authentication

Security level for message authentication and encryption:

  • No privacy: Message with authentication but no privacy (encryption).
  • Privacy: Message with authentication and privacy (encryption).
    set security-level [no-auth-no-priv|auth-no-priv|...]

Authentication protocol

Select an authentication procol.

Shown when Authentication is enabled

    set auth-proto [md5|sha]

Authentication password

Password for authentication protocol.

Shown when Authentication is enabled

    set auth-pwd {password}

Privacy

Privacy (encryption) protocol.

Shown when Authentication is enabled

    set priv-proto [aes|des|...]

Privacy password

Password for privacy (encryption) protocol.

Shown when Authentication is enabled

    set priv-pwd {password}

Notify host IP

Configure SNMP User Notify Hosts.
    set notify-hosts {ipv4-address}

Community list > New/Edit SNMP Community

SNMP Community Configuration
config community

ID

Community ID.
  edit <id>

Name

Community name.
    set name {string}

Current SNMP community

Enable/disable this SNMP community.
    set status [enable|disable]

V1 queries

Enable/disable SNMP v1 queries.
    set query-v1-status [enable|disable]

V2c queries

Enable/disable SNMP v2c queries.
    set query-v2c-status [enable|disable]

V1 traps

Enable/disable SNMP v1 traps.
    set trap-v1-status [enable|disable]

V2c traps

Enable/disable SNMP v2c traps.
    set trap-v2c-status [enable|disable]

Host list > New/Edit Host List

Configure IPv4 SNMP managers (hosts).
    config hosts

ID

Host entry ID.
      edit <id>

IP

IPv4 address of the SNMP manager (host).
        set ip {user}