Cisco Wireless :: 5508 - Internal DHCP / Two SSID?

Jun 28, 2012

We created the management interface, an internal DHCP scope in same subnet, and Two SSID tied to the same management interface:
 
- when we connect to the first SSID we have and IP address
 
- but when we connect to the secone SSID: impossible to get an ip address - auth and association are OK

View 11 Replies


ADVERTISEMENT

Cisco Wireless :: 2100 No Internal DHCP Over Another (Guest) SSID / Interface

Feb 24, 2013

I have a cisco wlan controller (2100) running software 7.0.235.0. I have the internal private wlan running off of port 1 and that is working fine with an internal dhcp server.Is it possible to setup another ssid (guest) and have the interface directly linked to a static ip on the WAN and also use the built in cisco internal dhcp server?

View 4 Replies View Related

Cisco Wireless :: WLC 5508 Internal DHCP

Aug 22, 2011

The two controllers are having two internal DHCP servers with the same range in LAN (enx1,enx2). but i have specified which is primary DHCP server(enx3) in WLAN interface.
 
Now if a new user added into network, will he get IP address from primary dhcp(WLC) or AP connected WLC.
 
if two users connected to 2 diff AP's which are connected to 2 WLC will get the same IP address? since having same address pool configured.

View 11 Replies View Related

Cisco Wireless :: WLC 5508 - Second DHCP Server For Second SSID?

Apr 22, 2012

I have Internal DHCP Server configured on the Cisco WLC 5508 and all is working fine.  DHCP Range is 192.168.1.100 to 192.168.1.245. Now I created another SSID but I want clients connecting to this SSID get specific IP's or from a specific range.  WLC has no option to bind a DHCP pool to a specific IP so what I did I checked the option to "Override DHCP" and added the IP of my firewall WLC is connected to and setup a DHCP Pool on that firewall as 192.168.1.89 to 192.168.1.94 (192.168.1.88/29).
 
Client can connect to the second SSID but can't grab and IP address, what am I missing ? 

View 6 Replies View Related

Cisco Wireless :: WLC 5508 Internal DHCP Server

May 7, 2012

I am hoping to get your feedback around the dhcp issues I am facing with Two Centrally Switched Wireless LANs. The setup is as follows:

- I have a WLC 5508 which has been configured with 4 SSIDs, out of which 2 are using Central Authentication and Switching. - I have an LWAP connected to the WLC in HREAP mode. - WLC is configured as the DHCP server for clients connecting to the SSID 'Guest'. For the rest, I am using external dhcp server. - Only one scope for Guest Interface is setup on the WLC. 
 
Problems:
1. As far as I know, for WLC to act as internal dhcp server, it is mandatory to have the proxy enabled, but the Clients connecting to SSID 'Internet' are unable to get an ip address from the external dhcp server, if dhcp proxy is enabled on the WLC. If i disable the proxy, it all works fine.
2. DHCP does not release the ip addresses assigned to clients even after they are logged out.
3. If a machine which was earlier connected to 'Guest' SSID connects to the 'Internet' SSID, it requests the same ip it was assigned by the WLC which it was assigned under 'Guest', but gets tagged with the V LAN configured on the management interface.  
 
************Output from the Controller********************
(Cisco Controller) >show sysinfo
Manufacturer's Name............. Cisco Systems Inc.Product Name................ Cisco Controller Product Version................. 7.0.116.0Bootloader Version................ 1.0.1Field Recovery Image Version..................... 6.0.182.0Firmware Version..... FPGA 1.3, Env 1.6, USB console 1.27Build Type.......... DATA + WPS + LDPE
[code]...

View 12 Replies View Related

Cisco Wireless :: 5508 Internal DHCP Server

Jul 21, 2012

A client wants us to use the internal DHCP server on a 5508 instead of Windows DHCP. They will have 15 APs initially and upto 25 later. The docs on the 7.2 WLC make it sound like this is discouraged: Internal DHCP Server.

The controllers contain an internal DHCP server. This server is typically used in branch offices that do not already have a DHCP server. The wireless network generally contains 10 access points or fewer, with the access points on the same IP subnet as the controller.
 
In this case, the APs will not be in the same subnet as the Managment Internet.Is it a mistake to use the internal DHCP with upto 25 APs (3 WLANs)? 

View 3 Replies View Related

Cisco Wireless :: 5508 - Same SSID With Different Dhcp Scope On Same Controller

Aug 10, 2011

I have a 5508 WLC controller at the HQ with the employee ssid ,the dhcp scope on the ssid is 10.120.0.0/16 network.
 
However,I want this same ssid to be brodcasted to a remote site using HREAP access point but with  different dhcp scope 10.102.0.0/16.
 
I have tried creating another interface for the remote site with a different dhcp scope(10.102.0.0) but the controller wont allow me create another wlan with same ssid that existed before to apply the new interface created for.

View 1 Replies View Related

Cisco Wireless :: WLC 5508 - AP LWAPP With 2 SSID / DHCP Differences?

Jul 22, 2012

I need raise a especial configuration to 34 APs LWAPP associated to WLC 5508 with IOS 7.0.220
 
This is the Scenario:We have 34 APs LWAPP with 2 SSID (Corporative & Guest), with 2 DHCP different. The Guest SSID receive IP to DHCP from WLC while SSID Corporative receive IP from Microsoft DHCP. The AP On Site are Local and the Foreign AP are configured like H-REAP (H-REAP Local switching and Learn Client IP Address are marked)
 
Here is the thing, I need configure a new WLAN (Pruebas) for add to 34 APs (Local and Foreign) but this new WLAN must be receive IP from a New Microsoft DHCP
 
Firstly I configured a new Physical interface and linked to New WLAN (Pruebas) however i don't know how configure the AP and the DHCP because I want that the AP deliver IP addresses depending the Locality.The last because the SuperScope from DHCP is divided in various subnets and because the IP from the AP will be in another VLAN

View 3 Replies View Related

Cisco Wireless :: 5508 Second Guest SSID On Controller Not Giving DHCP Out

Feb 28, 2013

i have two 5508 ver 7.3.0, one is the primary and one is the guest controller. mobility is up and running. i have an exising guest ssid working with wpa2-psk and web authentication and its working fine but i require a second guest ssid that only uses a wpa2-psk for ipod/ipads as i cant use passive client on primary controller. i presently have the one vlan range and dhcp setup on the guest controller to give addressing to either ssid. i know you can have multiple ssid setup on the guest controller but in other sites i have only had one guest connection comming from the primary controller, just a primary controller on each sites was only creating one link to the same guest controler.

View 3 Replies View Related

Cisco :: 5508 / C6509 - Using WLC For DHCP For One SSID?

May 17, 2011

We have a network of multiple WLCs: 5508, 4402, WISMs in two C6509 all running version 7 software. We have about a dozen SSIDs and we need to provide DHCP to the one public SSID (which like the other SSIDs span across all controllers) and to do so we thought of using a spare router, Linux workstation or DHCP server on the controllers. We are not sure if using the controllers is an option since we have multiple controllers. Is there a way to setup DHCP on a WLC and tell the others to use that WLC for DHCP for the one SSID?

View 3 Replies View Related

Cisco :: WLC 5508 Mobility Groups And Internal DHCP

May 6, 2012

How do Mobility Groups work with internal DHCP scopes on a WLC 5508?We have a WLC 5508 with two internal DHCP scopes which redirect to captive portals for authentication. I am looking at putting in a second WLC in a mobility group setup to provide some WLC redundancy. The LWAPs will be setup so that every second AP is on the has the second WLC as its primary controller. If the primary WLC fails we want the secondary to be able to take over and issue IP's from the internal scope. How do you set this up with a Mobility group so the second WLC does not act as a rouge DHCP server while the primary WLC is still active?

View 6 Replies View Related

Cisco :: 5508 Is There A Way For Internal DHCP Scope To Release Scope Addresses

Apr 7, 2013

DHCP scope is configured on a WLC 5508.I'm checking if there' a way for WLC to clear the dhcp leasing when a user is diconnected from wireless?

View 2 Replies View Related

Cisco Wireless :: 5508 Assign Single Ssid To Multiple Interface Groups By Assigning Ssid To Multiple AP Groups

Aug 26, 2012

Is it possible to assign a single ssid to multiple interface groups by assigning the ssid to multiple AP groups? 
 
I have buildings geographically dispersed that are configured with multiple vlans in interface groups so that I can maintain an addressing scheme of dhcp assigned addresses per building.  Each building is also further grouped as AP groups.  I'd like to know if by assigning the same wlan ssid to each of the AP groups, will I maintain addressing integrity for each building?  I'm thinking it will work.
 
Do the buildings have to be outside AP range of each other to avoid problems?

5508 controller
7.2.110.0  code
6 buildings
6 interface groups
1 ssid

View 4 Replies View Related

Cisco Wireless :: Setup WRVS4400N To Isolate Guest Totally From Internal SSID

Jan 25, 2011

A query here with regards to Wireless isolation between SSID and wireless isolation within SSID.If we have 2 SSID, eg. InternalSSID, GuestSSID on AP1.Both SSID are set to Enabled for isolation between SSID, and within SSID, that would mean all machines connected thro' this AP1, would be isolated from one another.
 
1) If there's 1 laptop that connects to another AP, lets call it AP2, (doesn't have isolation function) on ssid01. Would this laptop still be isolated from those that connects to the first AP?
 
2) If there are wired PCs connected to the router. And the 2 APs are connected to the same router. Would the machines connected thro' the AP1 on either InternalSSID, GuestSSID be able to access those wired PCs? (My assumption is yes.)
 
3) Is there a quick and efficient way to setup on WRVS4400N to isolate GuestSSID totally from InternalSSID, and wired PCs. InternalSSID and wired PCs should be allowed to 'see' one another.

The challenge here is that, the network points are all installed already. Both AP are connecting thro' 2 separate unmanaged switch together with a couple of other PCs. 1 Port on the unmanaged switch, each,connects to the router.

View 1 Replies View Related

Cisco Wireless :: 5508 Roaming From AP On Same SSID

Feb 12, 2013

I have an issue where I have an AP in one room and another in another.When I walk from one room to the other, I lose signal but manages to see the SSID and join.But, I cannot seem to surf the Internet, I have to manually disconnect and reconnect. Normal wireless routers I reconnect seamlessly without any manual disconnect & reconnect.Currently using cisco 5508 and ap2600.

View 8 Replies View Related

Cisco Wireless :: 5508 / How To Map Two Different Subnets To One SSID

Dec 12, 2012

we have two offices in same city at different location however we are planning to bring both the office at same location.Now lets say site A has controller 5508 configured with 24 AP's with 10.10.10.x subnet for internal SSID and Site B which is shifting to Site A campus has different subnet ( 10.10.20.x )  for same SSID.Site B has no controller since they had connection with H-reap and they were using different subnet for internal SSID ( 10.10.20.x ) .....Now i need to add their AP's in Site A controller which will be extended wireless LAN however we would like to keep same subnet ( 10.10.20.x )  what Site B has for wireless clients which is really confusing me ....I have already client subnet for site A with 10.10.10.x /24 subnet  and nearly 200 users are already using this wireless client subnet.... How do i add their ( Site B ) subnet / 10.10.20.x  with same SSID configured  which is globally only one SSID  ?
 
limitations :I can not create new SSID for site B since same will be broadcasting even in Site A AP's ?Is this possible to map one more subnet of site B to existing SSID with already different subnet ( 10.10.10.x ) ?

View 11 Replies View Related

Cisco Wireless :: WLC 5508 Cannot Change SSID

Dec 6, 2012

I have an issue where I cannot get clients to change SSID.  I have two SSID, one WPA2 secure, one open guest.  The secure is locally switched via Flexconnect and the guest is centrally switched.  Both of them work.  I have been able to test this and both work as intended.  The problem is that once you connect to one of them, either secure or guest, you cannot then change to the other.  The only way to change is to delete the dhcp entry from the scope and then do it. 
 
Fast SSID change is enabled.  I also have debug client output from when the client fails when you try to switch which I will include below.  I also pulled some wireshark captures and those show me that the DHCP ack packets are trying to give the client the ip address from the incorrect/previous scope.  So basically it's like FAST SSID change is not working and the client is never being disassociated properly??
 
I am totally stumped and even though the client will most likely not be switched between SSID that often I would still like to know the solution.
 
Cisco 5508 running 7.2.110.0
Cisco 3502 LWAPP
windows server 2008 dhcp server

[Code].....

View 5 Replies View Related

Cisco Wireless :: Wap121 SSID For DHCP & Web Only

Mar 28, 2013

I want to know how to configure ACL to have access to dhcp and web only.My router does not support tag vlan.

View 1 Replies View Related

Cisco Wireless :: 5508 Single SSID / Two ACLs

Jul 16, 2012

I am setting up a Cisco 5508 wireless controller and was looking for some feedback or assistance.  Basically I already have my guest SSID configured and functioning.  Created an interface group containing my vlans and applied the created ACL "Guest Policy - internet only", which is also working.I want to setup a second SSID called "staffstudent" and use RADIUS for authentication.  I have already created two separate network policies on the radius server: staff and student.  Each only allows certain user groups.  I want to be able to differentiate on the controller side which profile they are logging in on and then apply the correct ACL.  I have two currently configured:  one for staff and one for student.  It appears to me that since you have to apply the ACL at the interface level I cannot use both since my interface is accepting both staff and students.  Is there a way I can filter them using RADIUS so that when they login RADIUS can return a "student" value and then apply the correct ACL?  Same for staff?

View 2 Replies View Related

Cisco Wireless :: WLC 5508 Multicast Between SSID's And Vlan's

Dec 12, 2012

is it possible to multicast between 2 different SSID's that are associated to 2 different VLAN's?

View 2 Replies View Related

Cisco Wireless :: 5508 Best SSID Practices For Really Old Devices On WEP

Jul 26, 2012

setup a WEP SSID on my 5508 controllers.  THat being said, I have multiple sites with extremely old scan guns that only do 104bit wep.  I plan on locally switching this SSID and using static WEP 104bit key with MAC authentication, and then ACLing to limit my inherent security issues/exposure once someone compromises my WEP key.  [code]

View 4 Replies View Related

Cisco Wireless :: WLC 5508-7.0.116 / Multiple SSID To 1 WLan

Sep 26, 2012

On a wlc 5508-7.0.116, can I set up 2 ssids that map to one wlan/vlan/subnet. I thought you could but I don't have the means to test without breaking production.
 
My goal is this:
 
Ssid red open
Ssid blue wpa 2
 
But all clients on the same ip subnet

View 3 Replies View Related

Cisco Wireless :: 5508-HA / SSID Not Broadcasting After Reload

Jan 28, 2013

I have Build a 5508-HA Cluster (7.4.100.0) , hat to reboot this cluster due to Licens install.After the reboot atleast one of the SSIDs was not broadcasting anymore, even the checkbox was checked.
 
What did I do:

Installed the Licenses @ Freiday 12:00
@17:15 reload active WLC, wait till controller is up again (a few minutes pingable)
@17:25 force failover to first controller.
check a few SSIDs but not all, those who where check are ok.
@monday 07:00 clients complaining not seeing the SSID (some where connected)

View 6 Replies View Related

Cisco Wireless :: 5508 - SSID For IPad / IPhone

Jul 27, 2012

on a 5508 WLC can we create new SSID for I PAD / IPHONE Users without having ISE, only I phone / I PAD are allowed to be authenticated rest all should be denied.  IS this possible?

View 8 Replies View Related

Cisco :: 5508 How To Grant Wire Access To A Wireless Ssid

Jul 25, 2011

I have a wireless lan controller (5508) broadcasting 2 SSID's, once is a secure vlan grabbing an ip address from a local dhcp server and getting access to the internal network, and the other ssid is for a guest vlan where the dhcp server is in a remote site and internet access is off a circuit in our data center which is accessed over a wan. The secure ssid's vlan is defined on the local switch, but the guest vlan is not defined on the local switch.the ap's in the respective sites are trunked to the core switch and the switchport config is : [code] it's trunked b/c we have both vlans going across this physical connection.I would like get the guest vlan a wired connection, ie. off a switchhub, but not sure how to do that as this guest vlan is not defined on our local network.

View 1 Replies View Related

Cisco Wireless :: 5508 - Any Simple Way To Do URL Redirect On Open SSID

Sep 4, 2012

I have an open SSID on 5508 controllers - configured as anchors  and need to redirect wireless clients to the wireless help page automatically once they have connected and opened their browser.I've read all through the web auth and pass through discussions on here but nothing seems to be quiet right for me - unless I am completely missing something.

View 5 Replies View Related

Cisco Wireless :: WLC-5508 Authorization Failed To Create SSID

Nov 17, 2011

I have two WLC-5508 for 50 AP's deployed. One is primary controller & other is secondary.Recently noticed an unknown "authorization failed, no sufficient privileges for user" message poping up while making configuration changes in WLC. Specificly when trying to create an new SSID. WLC Authentication is local. This message poped up earlier once or twice but it didnt prevent from making changes that time.

View 3 Replies View Related

Cisco Wireless :: WLC 5508 - Mapping SSID With Authentication Protocol

Aug 28, 2012

My customer wants to have mapping of WLAN SSID with   different authentication protocol as show below .
  
1: EMP-M for Mschap
2: EMP-G   for Peap GTC
3: EMP-T   for TLS
 
For example EMP-M SSID users should be connected with only PEAP(MSCHAPv2) and not on other methods like PEAP-GTC/EAP-TLS .
 
customer is currently having WLC 5508 and using ISE for AAA . Any tip how we can do the above requirement through WLC .

View 4 Replies View Related

Cisco Wireless :: 5508 - Mobility Group Same Ssid Multiple WLC

Apr 7, 2013

I have a 4400 and a 5508 WLC in the same location We want to be able to roam between ap joined to both the 4400 and the 5508 using only one ssid
 
Do I only need to create a mobility group and add both WLC then create only one WLAN on one of the controllers and it will be shared across bot WLC.

View 5 Replies View Related

Cisco Wireless :: 2504 - Using Both External And Internal DHCP On WLC

Nov 25, 2012

I am wondering if the folowing is a valid configuration:

WLC2504
AP2600
 
I need 3 SSID/VLAN, 1 for corporate devices, 1 for coporate smartphones, 1 for guest.

Port 1 on the 2504 should be used for management and corporate devices and connect to the corp network. Port 2 is for smartphones/guest and will be connected to a Cisco ASA 5515 that is connected to a second ISP.
 
Corp devices should get IP from an Windows DHCP. Smartphones/guest should get IP from the WLC. Is this possilbe? I read this in a document "To use the WLC as a dhcp, you need to enable DHCP proxy as it is required." Some how I am imagining that this will mess with the Windows DHCP. Is it better to use the ASA as DHCP for smartphones/guest?

View 4 Replies View Related

Cisco Wireless :: 5508 Office Extend Internal External?

Dec 18, 2011

I am having an issue with internal and external clients. When we have the nat ip configured on the controller we cannot connect internal ap's at all. When we take the nat ip out it works fine. We are on code 7.0.220. I have tried the following command  <config network ap-discovery nat-ip-only disable> and it did nothing.

View 1 Replies View Related

Cisco Wireless :: 5508 - Remote AP Connecting To NAT Address Instead Of Internal IP

Jun 2, 2013

We have a 5508 with 7.4.100.0 vor Internal APs and OEAPs. till now every thing is ok. Now we have to connect an AP (local) in a remote office, connected to the WLC by a VPN Tunnel. The problem is that the AP in the remote office uses the NAT Address to connect to the WLC, so the traffic goes over the Internet, not trough the VPN Tunnel. On the controller I have the following setting:

AP Discovery - NAT IP Only ................. Disabled
On the AP:
AP Link Latency.................................. Disabled
 
How to force the AP to use the internal IP Address of the WLC?

View 7 Replies View Related

Cisco :: WLC 5508 - Keeping Internal Users Off Guest Wireless

Mar 22, 2010

Have a WLC 5508 running 6.x code with LAP's providing wireless for our internal laptops (WPA2 and EAP-TLS). I want to provide guest wireless which goes out a different port on the WLC to a guest firewall/cable modem. However, we want to prevent our internal laptops from being able to use the guest wireless. I have RADIUS (IAS) and LDAP for my AD available. We would prefer not to have use Lobby Ambassador and just have the guests use a simple password or web passthru. Guests may be laptops or smartphones. What options are available? I have tried a test setup using dynamic vlan assignments from RADIUS using the IETF flags, but can't seem to get it to work. Is there a way to identify the SSID is being used at the RADIUS server?

View 13 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved