Cisco Support Community
Community Member

Configuring APs from WLC

We recently went through an audit of our wireless environment. There were a handful of suggestions provided to us by the auditor in order to remediate some of the findings of vulnerabilities or holes in the AP configs. Unfortunately, we were provided the command-line fixes.

Since we have over 50 APs across our network, that would clearly be very time-consuming. Is there a way to send these commands either from the WLC or Prime Infrastructure?

Everyone's tags (1)
Hall of Fame Super Blue

It will be a waste of time to

It will be a waste of time to send the commands to the APs when you have WLC. This is because the APs won't be able to save the commands. All configurations need to be done on the WLC. Exactly what command(s) are you trying to do?
Community Member

Understood, Leo. I think I

Understood, Leo. I think I just need to determine where in the WLC I can adjust the settings that correspond to the commands. Since the APs can't save the commands, I'm really wondering why this audit gave us the command-line fix.

One example is the command service tcp-keepalives-in. I'm sure there's a setting in the WLC for this, so it's just a matter of finding it.


Hall of Fame Super Blue

Is your auditor kidding?

Is your auditor kidding?  That command will work if your AP is AUTONOMOUS.


Do you have an idea what sort of explanation the auditor provided why you need this command?

CreatePlease to create content