You are on page 1of 9

Wireless Part 2

www.ine.com
Cisco Unified Wireless Network
Composed of:
WLAN Controller (WLC)
Lightweight APs (LAP)
Real-time processes handled by AP
802.11 Management and Control Frames
Data Encryption/decryption.

Copyright www.ine.com
Cisco Unified Wireless Network
Management functionality moved to WLC
Configuration updates
Authenticating users
Managing security policies
LWAPP or CAPWAP protocols tunnel traffic.
LAPs authenticate against WLC using pre-
installed X.509 digital certificates.
Copyright www.ine.com
Client Roaming
Roaming = seamless movement of clients between
access points.
Layer-2 roaming
Roaming between APs within same L2 Broadcast Domain
Same IP address on host is preserved
Layer-3 roaming
Roaming between APs within different L2 Broadcast Domains
IP address is changed on host
Service interruption of data (not true roaming)
Copyright www.ine.com
Roaming
Layer 2 roaming requirements
Should have the same SSID in each access point
RF coverage area of adjacent access points must overlap
by 10-15%
Same SSID in APs mapped to same VLAN in switches
Same authentication methods used across APs.
IP subnet remains consistent.

Copyright www.ine.com
When Does Roaming Happen?
Decision to roam is a WiFi Client decision.
Different vendors have different critera.
Common Conditions that trigger roaming
Missing beacons
Data reaches maximum retry count
Data rates shifts down

Copyright www.ine.com
Wireless VLANs
Access Points usually have at least two SSIDs
configured:
Internal/Employee SSID
Guest SSID
Each SSID can be placed on its own VLAN
Provides level of security
Need to have different subnet
Can be isolated into different management privileges
Access Points use 802.1q to tag VLAN traffic to Switch
Copyright www.ine.com
Switches and WLANs
No special Wi-Fi configuration needed on switch.
If all SSIDs in AP map to a single VLAN:
Configure switchport as access and assign that VLAN.
If different SSIDs on a single AP map to different
VLANs:
Ensure same VLANs are created on switch
Use 802.1q between AP and Switch

Copyright www.ine.com
Switch Configuration Options
POE
Access Points usually placed in areas not physically close to AC
Power outlet
POE from switch can power AP.
(config-if)#power inline auto
Portfast
Access Points do not participate in Spanning-Tree
Portfast recommended on switchports that connect to APs.
(config-if)#spanning-tree portfast trunk

Copyright www.ine.com

You might also like