Hey all. Home lab questions. Instant cluster of AP-315s. Firmware is 8.11.1.2 . Trying to deploy SSID with WPA3 Personal that does NOT allow transition mode.Below is the network configuration. I try to disable opmode-transitionOver the Dining Room (config) # wlan ssid-profile Secure
Over the Dining Room (SSID Profile "Secure") # opmode-transition-disableBut it still shows Enabled in the config. Anyone know what I'm missing here?Over the Dining Room# show network SecureName :Secure
ESSID :Secure
Status :Enabled
Mode :wpa3-sae-aes
Opmode-transition :Enabled
Band :5.0
Type :employee
Zone :
Termination :Disabled
Passphrase :1eefa18b710d58607243aeb773511aac6af597835ac2c726
Passphrase Size :8
WEP Key :
WEP Key Index :1
Coding :Default
dot11r :Disabled
dot11k :Enabled
dot11v :Disabled
MPSK :Disabled
MPSK-local :Disabled
High Throughput :Enabled
Very High Throughput :Enabled
High Efficiency :Disabled
HE TXBF :Enabled
HE MU-OFDMA :Enabled
HE MU-MIMO :Enabled
HE UL MU-MIMO :Disabled
HE Guard Interval :800ns,1600ns,3200ns
A-beacon-rate :Default
G-beacon-rate :Default
Enable Agile Multiband (MBO) :Disabled
Advertize Cellular Data Capability attribute of MBO :Disabled
Fine Timing Measurement (802.11mc) Responder Mode :Disabled
Dot11k Profile :default
VLAN :1000
VLAN Type :NULL
Server Load Balancing :Disabled
MAC Authentication :Disabled
Prio Use Local Cache Auth :Disabled
MAC Authentication Delimiter :
MAC Authentication Upper Case :Disabled
Auth Packets MAC Delimiter :
Auth Packets MAC Upper Case :Disabled
Use IP for Calling-Station-ID :Disabled
Called-Station-ID Type :macaddr
Called-Station-ID Include SSID :Disabled
Called-Station-ID Include SSID Delimiter :
L2 Auth Failthrough :Disabled
Captive Portal :disable
Captive Portal Proxy :
ECP Profile :default
Exclude Uplink :none
Hide SSID :Disabled
Enforce DHCP :Disabled
Openflow Enable :Disabled
Content Filtering :Disabled
Auth Survivability :Disabled
Auth Survivability time-out :24
RADIUS Accounting :Disabled
Interim Accounting Interval :0
Radius Reauth Interval :0
Download Roles from CPPM :Disabled
DTIM Interval :1
Inactivity Timeout :1000
explicit ageout client :Disabled
Dot1x WPA Key period :1500
Dot1x WPA key retries :3
Dot1x timer id-req period :5
Advertise AP Name :Disabled
Legacy Mode Bands :24ghz,5ghz
G Minimum Transmit Rate :12
G Maximum Transmit Rate :54
A Minimum Transmit Rate :12
A Maximum Transmit Rate :54
Multicast Rate Optimization :Disabled
LEAP Use Session Key :Disabled
Broadcast-filter :arp
Max Authentication Failures :0
Denylisting :Disabled
WISPr :Disabled
Accounting mode :Authentication
Work without usable uplink :Enabled
Deny inter user bridging :Disabled
Deny intra vlan traffic :Disabled
Percentage of Airtime: :Unlimited
Overall Limit: :Unlimited
Per-user Limit: :Unlimited
Access Control Type: :Unrestricted
Dynamic Multicast Optimization :Disabled
DMO Channel Utilization Threshold :90
Video Multicast Rate :default
Local Probe Request Threshold :0
Auth Request Threshold :0
Max Clients Threshold :64
Background WMM DSCP :
Best Effort WMM DSCP :
Video WMM DSCP :
Voice WMM DSCP :
Background WMM Share :0
Best Effort WMM Share :0
Video WMM Share :0
Voice WMM Share :0
tspec :Disabled
tspec-bandwidth :2000
strict-svp :Disabled
Certificate Installed: :No
Internal Radius Users :0
Internal Guest Users :1
Internal User Open Slots :511
Primary Auth Server :
Secondary Auth Server :
L2 Switch Mode :Disabled
Max IPv4 Users :N/A
allowed 5ghz radio :all
RF Band 6GHz :Disabled
Disable 6GHz on Mesh :Disabled
Delete PMKcache :Disabled
Advertise Location :Disabled
Role Derivation Rules
---------------------
Attribute Operation Operand Role Name Index
--------- --------- ------- --------- -----
Vlan Derivation Rules
---------------------
Attribute Operation Operand Vlan
--------- --------- ------- ----
RADIUS Servers
--------------
Name IP Address Port Key Timeout Retry Count NAS IP Address NAS Identifier RFC3576 RFC5997
---- ---------- ---- --- ------- ----------- -------------- -------------- ------- -------
LDAP Servers
------------
Name IP Address Port Timeout Retry Count Admin-DN Admin Password Base-DN
---- ---------- ---- ------- ----------- -------- -------------- -------
Accounting Servers
------------------
Name IP Address Port Key Timeout Retry Count NAS IP Address NAS Identifier RFC3576 RFC5997
---- ---------- ---- --- ------- ----------- -------------- -------------- ------- -------
ACL Vlan :0
ACL Captive Portal:disable
ACL ECP Profile :default
CALEA :disable
Redirect Blocked HTTPS Traffic :disable
DPI error page URL:
Bandwidth Limit :downstream disable upstream disable
Access Rules
------------
Dest IP Dest Mask Eth Type Dest Match Protocol (id:sport:eport) Application Action Log TOS 802.1P Denylist App Throttle (Up:Down) Mirror DisScan ClassifyMedia TimeRange CustomApp
------- --------- -------- ---------- ------------------------- ----------- ------ --- --- ------ -------- ---------------------- ------ ------- ------------- --------- ---------
any any IPv4/6 match any permit ClassifyMedia
:Captive Portal Configuration
Background Color:13421772
Banner Color :16750848
Decoded Texts :
Banner Text :Welcome to Guest Network
Use Policy :Please read terms and conditions before using Guest Network
Terms of Use :This network is not secure, and use is at your own risk
Internal Captive Portal Redirect URL:
Captive Portal Mode:Acknowledged
Custom Logo :
:External Captive Portal Configuration
Server:localhost
Port :80
URL :/
Authentication Text:Authenticated
External Captive Portal Redirect URL:
Server Fail Through:No
Auto Allow List :Disable (edited)