Skip to content

Overview

Rate Limit

For the Wifi REST API the following will be true:

  • Limits are applied to each tenant.
  • A maximum of 200 calls can be made per second.
  • Each second 100 calls will be returned to be used.
Download OpenAPI description
Languages
Servers
Asian region

https://api.asia.ruckus.cloud/

European region

https://api.eu.ruckus.cloud/

North American region

https://api.ruckus.cloud/

VLAN Pool Profile

Manage VLAN pool profiles.

Operations

LBS Server Profile

Manage location based service server profiles.

Operations

AP Compatibility

Query AP Feature compatibility report, including incompatible feature of AP model and firmware version.

Operations

Client Isolation Profile

Manage client isolation profiles.

Client isolation features, when enabled, prevent clients residing on a common VLAN from exchanging packets with each other. Client isolation is enforced by APs working at layer 2 (bridging). If client isolation is needed between VLANs/IP subnets, routers must also be configured to prevent packet exchange at layer 3. A client isolation profile provides the capability for administrators to configure exceptions to this isolation behavior. For example, an administrator may want to allow clients on a public network to access a printer in a common area of their venue. If so, the MAC and IP addresses of the printer (or any excepted device) can be configured on the client isolation profile.

Client isolation can be used in conjunction with walled gardens for public networks. Walled gardens provide limited access to services prior to client authentication whereas client isolation profiles provide connectivity options post authentication.

Client isolation does not work when clients are assigned static IP addresses. For this reason, Ruckus recommends using DHCP lease reservations in lieu of static IP addresses when using this feature. Administrators may also want to consider use of the force DHCP option, available during wireless network configuration.

Complications to client isolation can arise when the VLAN's default gateway employs VRRP or HSRP for high availability or when Multicast DNS Proxy is configured on the same WLAN as the profile. If either of these situations applies in your network, please contact Ruckus customer support for assistance.

Operations

Wi-Fi Portal Service Profile

Portal service profile.

Operations

Application Library

Manage the current tenant's application library and settings.

Operations

SAML Identity Provider Profile

Manage SAML identity provider profiles.

Operations

Wi-Fi Calling Service Profile

Manage Wi-Fi calling service profiles.

Operations

AP

Manage APs including pinging, trace-routing, resetting, rebooting, floor-plan positioning and LAN-Ports settings.

Operations

L3ACL Policy

Manage layer-3 ACL policy profiles.

Operations

RADIUS Profile

Manage RADIUS server profiles.

Operations

Syslog Server Profile

Manage Syslog server profiles.

Operations

Wi-Fi Network

Managing the relationships for Wi-Fi network activation within venue associations.

Operations

Application Policy

Manage application policy profiles.

Operations

AP Group

Manage AP-Groups.

Operations

Client

Manage client connections.

Operations

DHCP Configuration Service Profile

Manage DHCP configuration service profiles.

Operations

MAC Registration Pool

Manage MAC registration pool profiles.

Operations

Hotspot 2.0 Operator

Manage Hotspot 2.0 Operators.

Operations

Rogue AP Detection Policy

Manage rogue AP detection policies.

Rogue APs are Wi-Fi APs which are in radio range of your Wi-Fi network, but are unknown to the Ruckus cloud. For example, these may be APs in installed your venues without explicit authorization from your administrators, whether added by a well-meaning employee or by a malicious attacker; as such, they could be on the same LAN as your authorized APs. They could also be APs installed in nearby venues (for example, if your venue is part of a multi-tenant facility). Rogue classification polices help to automatically classify these unknown APs by setting up rules which trigger a rogue AP report when specific-rogue detection criteria are met.

Operations

AP Venue

Manage Wi-Fi venue configuration, including radio settings, mesh, LEDs, LAN-ports, and syslog.

Operations

Tunnel Service Profile

Manage tunnel service profiles.

Operations

L2ACL Policy

Manage layer-2 ACL policy profiles.

Operations

Ethernet Port Profile

Manage ethernet port profiles.

Operations

Get Ethernet Port Profile

Request

Get the ethernet port profile details.

Path
ethernetPortProfileIdstringrequired

Ethernet port profile ID

No request payload

Responses

OK

Body
authTypestring
Default "ApLanPortAuthTypeEnum.DISABLED"
Enum"DISABLED""SUPPLICANT""PORT_BASED_AUTHENTICATOR""MAC_BASED_AUTHENTICATOR""OPEN"
bypassMacAddressAuthenticationboolean
Default false
dynamicVlanEnabledboolean
Default false
enableAccountingProxyboolean
Default false
enableAuthProxyboolean
Default false
idstringread-only
isDefaultbooleanread-only
Default false
namestring[ 2 .. 32 ] characters
supplicantAuthenticationOptionsobject(SupplicantAuthenticationOptions)

Supplicant Authentication Options.

typestringrequired
Enum"ACCESS""SELECTIVE_TRUNK""TRUNK"
unauthenticatedGuestVlaninteger(int32)[ 1 .. 4094 ]
untagIdinteger(int32)[ 1 .. 4094 ]
vlanMembersstring^(?:[1-9]|[1-8][0-9]|9[0-9]|[1-8][0-9]{2}|9[0...
Response
{ "authType": "DISABLED", "bypassMacAddressAuthentication": false, "dynamicVlanEnabled": false, "enableAccountingProxy": false, "enableAuthProxy": false, "id": "string", "isDefault": false, "name": "string", "supplicantAuthenticationOptions": { "password": "string", "type": "DISABLED", "username": "string" }, "type": "ACCESS", "unauthenticatedGuestVlan": 1, "untagId": 1, "vlanMembers": "string" }

Update Ethernet Port Profile

Request

Update an ethernet port profile.

Path
ethernetPortProfileIdstringrequired

Ethernet port profile ID

Bodyrequired
authTypestring
Default "ApLanPortAuthTypeEnum.DISABLED"
Enum"DISABLED""SUPPLICANT""PORT_BASED_AUTHENTICATOR""MAC_BASED_AUTHENTICATOR""OPEN"
bypassMacAddressAuthenticationboolean
Default false
dynamicVlanEnabledboolean
Default false
enableAccountingProxyboolean
Default false
enableAuthProxyboolean
Default false
namestring[ 2 .. 32 ] characters
supplicantAuthenticationOptionsobject(SupplicantAuthenticationOptions)

Supplicant Authentication Options.

typestringrequired
Enum"ACCESS""SELECTIVE_TRUNK""TRUNK"
unauthenticatedGuestVlaninteger(int32)[ 1 .. 4094 ]
untagIdinteger(int32)[ 1 .. 4094 ]
vlanMembersstring^(?:[1-9]|[1-8][0-9]|9[0-9]|[1-8][0-9]{2}|9[0...
{ "authType": "DISABLED", "bypassMacAddressAuthentication": false, "dynamicVlanEnabled": false, "enableAccountingProxy": false, "enableAuthProxy": false, "name": "string", "supplicantAuthenticationOptions": { "password": "string", "type": "DISABLED", "username": "string" }, "type": "ACCESS", "unauthenticatedGuestVlan": 1, "untagId": 1, "vlanMembers": "string" }

Responses

Accepted

Body
requestIdstring
Response
{ "requestId": "string" }

Deactivate RADIUS Server Profile On Ethernet Port Profile

Request

Deactivate RADIUS server profile on ethernet port profile for 802.1X authentication. Should be called after creating a 802.1X ethernet port profile.

Path
ethernetPortProfileIdstringrequired

Ethernet port profile ID.

radiusServerProfileIdstringrequired

RADIUS Server Profile ID.

No request payload

Responses

Accepted

Body
requestIdstring
Response
{ "requestId": "string" }

SNMP Agent Profile

Manage SNMP agent profiles.

Operations

Device Policy

Manage device policies.

Operations

Hotspot 2.0 Identity Provider

Manage Hotspot 2.0 Identity Providers.

Operations

MDNS Proxy Service Profile

Manage Multicast DNS proxy service profiles.

Operations

SoftGRE Profile

Manage SoftGRE profiles.

Operations

Access Control Profile

Manage access control profiles.

Operations

Certificate Template Activation

Manage certificate templates.

Operations

DPSK Service

Manage DPSK services.

Operations