Professional Documents
Culture Documents
com
Trang 1
II./ Topo mng n gin nht v mng c Wireless Lan Controller (WLC):
Sau y , ti xin gii thiu v Topo mng n gin nht v mng c WLC, m qua m i ngi c th trin khai thm cho ph hp vi yu cu ca mnh . V d nh ta c th gn thm Switch gia Router v LAP di y p ng nhu cu 2.2 trn , ..
V phn gn thm Module cho thit b to thnh 2 trong 1 ny c rt nhiu phng n . V d nh ta c th gn thm module WLC vo Switch 6500 _khi Switch ny s m nhn nhiu vic : nh tuyn cho Vlan thng v Wlan hay gn vo Router 2811 tr ln , nh thit b dng trong Topo Lab ny!!!
Trang 2
Trang 3
Khi dng cu lnh :show ip interface brief trong mode priviledge ca Router 2811, ta s thy interdace dng giao tip ca WLCModule l :interface Wlan-controller 1/0 hiu thm v a ch qun tr (IP manager + IP Ap-manager ) ta c th tham kho trong gio trnh v Wireless ca BCMSN. y l 2 interface mc nh (static) cn phi c cho WLC. Nhim v ch yu 2 interface y l :
1. IP manager :dng qun tr ton b WLC , cn phi c cu hnh WLC bng giao din Web. bi Lab ny l 192.168.1.24
Trang 4
Ngoi nhng ch thch lin quan n Topo mng, ti xin b sung thm v cc kin thc ca :
1) DHCP
Trang 5
2) NAT DHCP (Dynamic Host Control Protocol ) : Mt giao thc dng cp pht ng a ch Ip cho mt host. NAT : (Network Address Translate): Dng chuyn i a ch mng ni b thnh da ch bn ngoi , nh m mc ch gip cho mng ni b c th truyn thng c vi Internet hay th gii bn ngoi ca mng.
Trang 6
2.) Sau khi router khi ng tr li ta cu hnh a ch Ip cho interface wlancontroller1/0 bng cu lnh :
(config-if)#ip address 192.168.1.1 255.255.255.0 (config-if)#no shut
Trang 7
Trang 8
ip dhcp pool lap # Pool a ch ng gn cho cng fa0 ca LAP network 192.168.4.0 255.255.255.0 default-router 192.168.4.1 # a ch cng fa0/0
option 43 hex f104.c0a8.0119 # Tham kho thm ch thch cui bi option 60 ascii "Cisco AP c1130"# Tham kho thm ch thch cui bi
! ip dhcp pool vlan2 network 192.168.2.0 255.255.255.0 default-router 192.168.2.1 dns-server 203.162.4.190 ! ip dhcp pool vlan3 network 192.168.3.0 255.255.255.0 default-router 192.168.3.1 dns-server 203.162.4.190 interface wlan-controller1/0.2 # To Sub interface WLC1/0 encapsulation dot1Q 2 # chun ng gi ip address 192.168.2.1 255.255.255.0 # Ip add = Ip add ca default-router tng ng
ip nat inside
# ip route 0.0.0.0 0.0.0.0 10.215.219.254# Cu lnh thng hay qun khi NAT , n dng to default route n ADSL router cho ton mng , ta c th i Internet. Nu m thiu cu lnh ny , ta ch c th PING n n m khng th ra Internet!!!
Bc cui cng : Ta cu hnh NAT nh hng dn trn !!!!# Xem phn b sung bn trn Tm lc nhng ci quan trng trong cu hnh Router m ta thng hay qun :
1) a ch intface i n i ra ngoi mng (Fa0/1) nn cho Server DHCP cp a ch ng cho n trnh trng hp trng a ch. 2) option 43 hex f104.c0a8.0119# c0a8.0119 phi l a ch IP AP-Manager 3) l cu lnh Ip nat inside # Mi ngi thng qun khng t n vo cc II./ Hai cch cuWLC hnh cho Wireless Lan Controller Module : Subinterface 4) Cui cng l ip route 0.0.0.0 0.0.0.0 <default-gateway router ADSL hay intface router k cn> Trang 9
Nhc im: S khng hiu r bn cht ca vn bng giao din Command Line c .
Nhng c th cu hnh cho nhng trng hp tng t mt cch nhanh chng bng giao din Web. Theo ti , chng ta nn tham kho v cu hnh theo giao din Command line trc :
Default gateway phi l ip address ca Subinterface Wlan-Controller tng ng trn Router . Bc 3 :To Wlan 2, 3 tng ng vi SSID vlan2 v vlan3
(Cisco Controller)config >wlan create 2 vlan2 # 2 l Wlan ID, vlan2 l SSID (Cisco Controller)config >wlan create 3 vlan3
Bc 5 : Cu hnh dynamic interface va to vi IP address DHCP server tng ng , ta c th forward IP khi DHCP client yu cu. IP address DHCP server c cu hnh trn Router , n cng chnh l a ch ca Sub interface WLC tng ng.
(Cisco Controller) config>interface dhcp vlan2 192.168.2.1 (Cisco Controller) config >interface dhcp vlan3 192.168.3.1
Trang 10
Trn M Phc tranmyphuc1988@gmail.com Bc 6 : Mc nh th chng thc Dot1X c bt ln , do a v ch open authentication (khng cn chng thc) , ta dng cu lnh sau tt chc nng chng thc Dot1X:
(Cisco Controller)config >wlan security 802.1X disable 2 (Cisco Controller)config >wlan security 802.1X disable 3
y l iu quan trng m trong gio trnh Cisco khng c ghi :Rt d b hiu nhm : 1) Khi cu hnh khi to , WLC hi : Network Name (SSID):=> y
chnh l tn ca Wlan1, Wlan1 thng c chc nng qun tr m thi. Do nu bn nh vo Vlan2 , th gi s trong m hnh lab ny , bn s b li 2) Mc nh trong WCL . Wlan lun ch Disable tr Wlan qun tr lun Enable. V th ta dng lnh
(Cisco controller)>show wlan summary =>Bn s thy tnh trng ca cc Wlan (Cisco controller)config> Wlan enable <vlan ID> => Bn enable nhng Wlan cn thit 3) iu lu nh na : Bn c th ng t PC ping n cc a ch khc nhng khng th ping n IP Ap-manager 4) Ti th v thy rng d trin khai access-list trn router , ta vn khng cn dng n nhm lnh: ip helper-address (mode interface) ip forward-protocol udp port 5) Nu nh bn cu hnh trong cu lnh Option 43 l a ch khc Ip AP-manager n s khin cho LAP, khi kt ni s khi ng li lin tc v n khng xin c cu hnh t WLC.(N khi ng li vi mc ch l xin li ln na)
00:1a:6c:8e:f3:78 Received LWAPP DISCOVERY REQUEST from AP 00:1a:6c:8e:f3:78 to 00:1b:53:bd:4e:c0 on port '1' 00:19:aa:00:23:d8 Successful transmission of LWAPP Discovery-Response to AP 00:1a:6c:8e:f3:78 on Port 1 00:1a:6c:8e:f3:78 Received LWAPP JOIN REQUEST from AP 00:1a:6c:8e:f3:78 to 00:1b:53:bd:4e:c0 on port '1' 00:1a:6c:8e:f3:78 LWAPP Join-Request has invalid certificate in CERTIFICATE_PAYLOAD from AP 00:1a:6c:8e:f3:78. Make sure controller time is set! 00:1a:6c:8e:f3:78 Unable to free public key for AP 00:1A:6C:8E:F3:78 spamDeleteLCB: stats timer not initialized for AP 00:1a:6c:8e:f3:78 spamDeleteLCB: stats timer not initialized for AP 00:1a:6c:8e:f3:78
on Debug trn ti nh trn WLC : (Cisco-controller)>debug Wlan events Ngoi ra bn c th t tn cho WLC bng cu lnh (Cisco-controller)config>
Trang 11
Trang 12
Trang 13
Trang 14
Trang 15
III./ Nhng thao tc cui cng v s m rng m hnh mng ny theo mt s nhu cu c bn ca nh qun tr v khch hng :
O1.) Nhng thao tc cui cng: Ni cho vui l thao tc cui cng , ch n rt n gin , mt BABY cng c th lm c l ni cp t port fa0/0 n port fa0 trn LAP. Nh vy l ta c mt h thng mng mi dnh cho 1 vn phng nh i Internet v giao lu d liu vi nhau Cui cng chng ta s sng tay vi thao tc Click . click v click Bc 1: t Cisco Aironet 802.11 a/b/g Wireless Adapter vo NIC slot trn Laptop
Trang 16
Trang 17
Trang 18
Trang 19
Trang 20
Trang 21
Trang 22
Trang 23