wifi
cmr/wifi
Package: cmr
Type: Directory
A WiFi network definition replicated to the selected devices. The arguments extend the standard RouterOS /interface/wifi configuration parameters.
| Flag | Name | Description |
|---|---|---|
| X | disabled | WiFi network is disabled. |
| Argument | Type | Description |
|---|---|---|
| labels ( unset ) | object | Select the devices the WiFi network is replicated to using labels. Supports + and - signs as AND and AND NOT operators, respectively; if no sign is provided, the OR operator is used. |
| vlan-id ( unset ) | num | VLAN ID applied to the network: none (default) or 1-4095. |
| mlo ( unset ) | bool | Enable MLO (Multi-Link Operation). |
| ssid ( unset ) | string | Network SSID. |
| mode ( unset ) | enum (ap | station | station-bridge | station-pseudobridge | meshpoint | invalid) | Network operating mode. |
| hide-ssid ( unset ) | bool | Hide the SSID in beacon frames. |
| beacon-interval ( unset ) | time | Beacon interval. |
| dtim-period ( unset ) | num | DTIM period. |
| multicast-enhance ( unset ) | enum (disabled | enabled) { disabled:0, enabled:1 } | Multicast enhancement: disabled or enabled. |
| qos-classifier ( unset ) | enum (priority | dscp-high-3-bits) { priority:0, dscp-high-3-bits:1 } | QoS classifier: priority or dscp-high-3-bits. |
| station-roaming ( unset ) | bool | Enable station roaming. |
| max-clients ( unset ) | num | Maximum number of connected clients. |
| hw-protection-mode ( unset ) | enum (none | rts-cts | cts-to-self) | Hardware protection mode: none, rts-cts, cts-to-self. |
| security.encryption ( unset ) | ubit (tkip, ccmp, gcmp, ccmp-256, gcmp-256) | Allowed encryption ciphers. |
| security.group-encryption ( unset ) | enum (tkip | ccmp | gcmp | ccmp-256 | gcmp-256) | Group encryption cipher. |
| security.group-key-update ( unset ) | time | Group key update interval. |
| security.passphrase ( unset ) | string | Network passphrase. |
| security.multi-passphrase-group ( unset ) | enum | Multi-passphrase group. |
| security.disable-pmkid ( unset ) | bool | Disable PMKID. |
| security.management-protection ( unset ) | enum (disabled | allowed | required) | Management frame protection: disabled, allowed, required. |
| security.beacon-protection ( unset ) | enum (disabled | enabled) | Beacon protection: disabled or enabled. |
| security.management-encryption ( unset ) | enum (cmac | gmac | cmac-256 | gmac-256) | Management frame encryption cipher. |
| security.wps ( unset ) | enum (disable | push-button) | WPS mode: disable or push-button. |
| security.dh-groups ( unset ) | ubit (19, 20, 21) | SAE Diffie-Hellman groups. |
| security.sae-anti-clogging-threshold ( unset ) | num | SAE anti-clogging threshold. |
| security.sae-max-failure-rate ( unset ) | num | SAE maximum failure rate. |
| security.sae-pwe ( unset ) | enum (hunting-and-pecking | hash-to-element | both) | SAE PWE derivation: hunting-and-pecking, hash-to-element, both. |
| security.owe-transition-interface ( unset ) | iface_enum { auto } | OWE transition interface. |
| security.eap-methods ( unset ) | multi { array-id, method: enum (tls | ttls | peap) { tls:13, ttls:21, peap:25 } } | Allowed EAP methods. |
| security.eap-certificate-mode ( unset ) | enum (verify-certificate | dont-verify-certificate | no-certificates | verify-certificate-with-crl) | EAP certificate verification mode. |
| security.eap-tls-certificate ( unset ) | enum | EAP-TLS certificate. |
| security.eap-username ( unset ) | string | EAP username. |
| security.eap-anonymous-identity ( unset ) | string | EAP anonymous identity. |
| security.eap-password ( unset ) | string | EAP password. |
| security.eap-accounting ( unset ) | bool | Enable EAP accounting. |
| security.ft ( unset ) | bool | Enable Fast Transition (802.11r). |
| security.ft-mobility-domain ( unset ) | num | FT mobility domain. |
| security.ft-over-ds ( unset ) | bool | FT over the distribution system. |
| security.ft-reassociation-deadline ( unset ) | time | FT reassociation deadline. |
| security.ft-nas-identifier ( unset ) | string | FT NAS identifier. |
| security.ft-r0-key-lifetime ( unset ) | time | FT R0 key lifetime. |
| security.ft-preserve-vlanid ( unset ) | bool | FT preserve VLAN ID. |
| security.connect-group ( unset ) | string | Connect group. |
| security.connect-priority ( unset ) | super { connect-accept-priority: num , [connect-hold-priority] /num } | Connect priority. |
| security.authentication-types ( unset ) | ubit (wpa-psk, wpa2-psk, wpa2-psk-sha2, wpa-eap, wpa2-eap, wpa3-psk, wpa3-psk-gd, owe, wpa3-eap, wpa3-eap-192, dpp) | Supported authentication types. |