Cisco :: Configuring AP1121G-E-K9 For Multiple SSID With Multiple VLAN?
May 28, 2013
i`m facing a problem configuring the mentioned access point to act as stand alone access point with multiple SSID assigned to differnet VLANs the problem is that
1) i`m not able to broadcast the both SSIDs in the same time from the Access point
2) i need to make the radius server to manage the SSID access for the wireless clients (trying to find a way in which the aceess point sends a log for the radius server containing the VLAN id /IP address of the the SSID) you may find the below info about the IOS ver. & the configuration?
Is it possible to assign a single ssid to multiple interface groups by assigning the ssid to multiple AP groups?
I have buildings geographically dispersed that are configured with multiple vlans in interface groups so that I can maintain an addressing scheme of dhcp assigned addresses per building. Each building is also further grouped as AP groups. I'd like to know if by assigning the same wlan ssid to each of the AP groups, will I maintain addressing integrity for each building? I'm thinking it will work.
Do the buildings have to be outside AP range of each other to avoid problems?
how i can configure a second ssid for guest access in our environment. this is our network setup prior to this request: Internet----Firewall (not ASA)---ce520---C1131AG and CME router is also connecting to the ce520 switch. we only have two vlans: one for voice and two for data.
Presently, there is no vlan configured on the AP because it on broadcasting ont ssid and wireless users gets IP from a windows DHCP server on the LAN. the configuration on the ce520 switch port for the AP and other switches say access vlan is the DATA vlan which automatically becomes the native vlan for all trunk port connecting the AP and other Stiches to the network.
Now with this new requirement, i have made my research and i have configured the AP to broadcast both the production and the guest Vlans. The two vlans are 20-DATA and 60-Guest. I made the DATA vlan on the AP the native vlan since the poe switch is using the DATA vlan as native on the trunk ports. I configured the firewall to serve as DHCP server for the guest ssid and i have added the ip helper-address on the guest vlan interface on all switches while the windows server remains the dhcp server for the production DATA Vlan. I have confirmed that the AP, switches can ping the default gateway of the guest dhcp server which is another interface on the firewall. I can now see and connect to all broadcasted ssids but the problem is I am not getting IP addresses from both the production dhcp server and guest dhcp server when i connected to the ssid one at a time. My AP config is attached below.
Do i need to redesign the whole network to have a native vlan other nthan the data vlan? Does the access point need to be aware of the voice vlan? Do the native Vlan on the AP need to be in Bridge-group 1 or can i leave it in bridge-group 20?
My question is if I can configure 3 ssid, for 3 different VLAN and add the DHCP address from a WAP4410N AP, when you upgrade to the latest version of IOS I can have this functionality?
I have around 60 , 1142 N APs . As of now i have only management VLAN ( for IP ) & one user vlan 350 configured on the access point . All the users connect to VLAN 350 and they get IP as required.However in our new set up there are couple of requirements have come up were in SSID will be the same however we have created many VLANs for different kind of user group and all these VLANs should be mapped to this single SSID and pick the IPs from their respective VLANs .
We have done configuration on the RADIUS server side were in we have mapped the users in their respective VLANs and they are getting authenticated via AD . Now how do i map my these 4-5 VLANs in a single SSID in Access Point.
I've replaced my dead ASA5505 with a 861-K9.Our ISP provides a subnet of public address /29 (wan side) by example: 200.200.200.xxx /29,we have 3 servers (lan side) in the example 10.1.1.xxx /24 is the same case than Johnatan, the only difference are the public addresses. [URL], everything is ok when NAT via the FE4 public address, but when do the same with other public IPs doesn't work.
We just got a WAP4410n and cant seem to get multiple SSID's to show up when searching for them.Only SSID1 shows up in Kismet or any other type of Wifi detector software, is it supposed to be like this?I would imagine that it should display both SSID's
-Mynetwork1 -Mynetwork2
Instead of just Mynetwork1, I have tried everything i can think of to connect to the second one but nothing seems to work.
We have a secure ssid and a guest ssid. Is the a way to prompt for a single username and password and if that name is guest it will automatically connect to the guest ssid? If active directory user and password it will automatically use the secure ssid? we are using Microsoft NPS/Radius, 3502 ap's, and 5508 controller.
I have two WAP200's code level version 2.0.4.0 connected to two SFE2000 24port, one switch per building. I have 3 vlans that I want to bridge between those two switches. I know the trunks on the switch are setup correctly because I can connect them directly and test all vlans.
I am able to get the untagged Vlan 1 to work fine with the bridge, but I have issues with the tagged Vlans 2 and 3. I have checked that I have the correct SSID tied to the correct Vlan number. I cause the whole network to lock up when I try to add the other SSID MAC addresses to the AP Mode -> AP Mode -> Wireless Bridge -> "Remote Wireless Bridge's MAC Addresses:" section. The wireless lights and ethernet lights go solid.
Should I be adding the additional MACs there?Does the WAP200 even support multiple VLAN/SSID?
I am using a Aironet 1100 series access point (AIR-AP1142N-N-K9) with IOS version c1140-k9w7-tar.124-21a.JA1. I want to create two seperate SSID's on the access point with WEP encryption. There is no VLAN configured and i want it to be like it. Also I need to broadcast both the SSID's at the same time, so the some of my users need to login with the first SSID and the others to login through the other.
I have come across a new problem with our WAP4410N. I have set up multiple SSID's for various groups of people and guests at our company, the first and main SSID has set security properly at WPA2-Personal with a 63 character password. So I went ahead and setup the other 3 SSID's with the same security (just to initially get security going was planning on taking down one of them for guest account), but when I boot up my testing laptop, it shows that SSID's 2-4 have no security what-so-ever.
I have re-checked my settings in the Wireless Security tab and they are all still set with the passwords.
I am using: PID VID: WAP4410N-A V02Software Version: 2.0.4.2.
On a wlc 5508-7.0.116, can I set up 2 ssids that map to one wlan/vlan/subnet. I thought you could but I don't have the means to test without breaking production.
I have a Cisco AIR-AP1242AG-A-K9 Autonomous AP running firmware 12.4(25d)JA. I wish to set up multiple SSID's (2) each having their own separate security types. Both security types may end up being WPA2, but would have separate keys. I do not have a managed switch, the AP is connected to a "dumb" switch in an office environment, with no VLANS. Also this is only for 1 access point.
I have tried creating 2 SSID's, but my issue is that only one SSID will actually work at a time, meaning that only the native VLAN in the AP will actually allow wired traffic through it's SSID. How can I set up 2 different SSID's, with 2 independant security types and have them work simultaneously? Is this functionality supported by this AP?I feel that this is possible, as I can easily set this up on other access points from other manufacturers.
I am trying to configure a Cisco 871 router.There are 3 servers on my network that need static public IPs but also still need to communicate on the local network.I have given my WAN interface the first IP in the block and set up PAT for the rest of the computers on the network with that IP which is working fine. Next I set up static NAT rules for the servers translating 3 of the remaining public IPs to the internal addresses of the servers.I can access those servers internally using the public IPs but not from outside the network. A traceroute from outside the network gets dropped when it gets to my ISP.I've never configured more than one static ip for a network before and i know i've just missed a step here. Do I also need to use static routes? Will that update the next hop's routing table? Do I need to make an ACL to permit any host to the servers? If so, do I use the internal or external address? [code]
Everytime I disable SSID Broadcasting 2 extra wireless connections appear available connections list. (See wirelessconnections.jpg) One is blank and one is labeled Other Network. They disappear when I enable SSID Broadcasting. I am not sure why this is happening.
I currently have an 867vae router and a 1131ag ap setup with 2 vlans and 2 ssid's. I am in the process of baby proofing the house and would like to use the cisco plsk400 homeplug system to relocate my wap. I use 2 networks to seperate and filter the kids internet traffic from my own. It also allows me to shut the kids vlan when they shouldnt be on the internet.
As far as i can tell the plsk400 homeplug doesnt support 802.1q.... so is there any way i can keep the seperate networks/SSID's and the abilty to filter and turn off one of them at will without a trunked link to the router?
i' ve got 2 cisco 1130 AG AP's , i want both of them to broadcast 2 ssid's per AP, i've done so far but my clients cannot get a ip adress from the dhcp server.
I have two 1142n LWP ap converted into standalone, as client doesn't have any controller there. They just want to extend their network via wireless.
L3 switch (trunk port gig 1/48) -----> connected to AP1 L3 switch (trunk port 2/48) -----------> connected to AP2
client is looking for 3 vlans on the floor ( users might multiple vlans might associated same AP ). They have a dedicated DHCP/DNS server and he will be configuring 3 vlans on L3 switch with correct ip helper address on SVI interfaces.
I'm i allowed to created 3 SSID's on 1142n standalone AP ?
What would the various optiosn to achieve this requirement ? Is there any simplest way to achieve this ? Do i need to go for 802.1x ? I remember client told their users are authenticating by using AD for wired network. This is their first request for wireless environment
I want to set up a WiFi internet connection for a campus. I plan to use 4 routers. the first one is directly connected to the internet. I want to share internet access wirelessly with the other routers. Each of the routers should be a hotspot for each of the four blocks in the campus.
I'm trying to troubleshoot a wireless network at an Inn which is shared among three buildings. The internet at the main building works fine.
However there is a WDS set up for the other two houses that are part of the property. The network is a bit of a mess IMO. The main problem is that routers on the end of the WDS chain work for awhile after booting, but frequently stop issuing IPs. When a device tries to connect it says unable to configure IP or something like that. Rebooting the router always fixes the problem.
My networking knowledge is very limited but I think some settings must be incorrect. I will try to described the setup here..
All of the following routers are WRT54G's with DDWRT
Main router: 192.168.1.1 [different SSID that WDS], all routers forward DHCP to this router WDS router 192.168.1.3 at main building is connected to an cantenna that shoots the signal over to 1st house. Gateway & Local DNS set to 192.168.1.1 WDS router 192.168.1.4 at that house is the main AP for that house and gets its signal from 1.3's cantenna. Gateway & Local DNS set to 192.168.1.3 WDS router 192.168.1.5 under the deck at the 1st house picks up that signal from 1.4 and uses a cantenna to send it to the 2nd house. Gateway & Local DNS set to 192.168.1.4 WDS router 192.167.1.6 under the deck of the 2nd house gets the signal from 1.5's cantenna. Gateway & Local DNS set to 192.168.1.5
The IP configuration problems happen at the 2nd house with 192.168.1.6. I believe 1.5 also has IP configuration problems but that router is not used other than to transmit to 1.6. Again rebooting the router fixes the issues temporarily. It works for a couple days up to a couple weeks before the IP problems start.
Mac addresses for the WDS are set of course. I have been trying to experiment with settings for awhile, but do not really know what I am doing. I am not the one who set this up.
Also under the Advanced Routing tab,here are the Static Routing settings: 192.168.1.3: Destination LAN NET: 192.168.1.0, Gateway: 192.168.1.1 192.168.1.4: Destination LAN NET: 192.168.1.3, Gateway: 192.168.1.1 192.168.1.5: Destination LAN NET: 192.168.1.4, Gateway: 192.168.1.3 192.168.1.6: Destination LAN NET: 192.168.1.5, Gateway: 192.168.1.4
Update: looks like STP should be enabled for WDS? Going to try enabling that I guess.
Currently on ACS 5.2 and our MS Active Directory is migrating to a completely new domain. There will be a two way trust between them for the 24 month migration period. How best to configure ACS connect to both domains?
I just bought a Linksys E2500, and I'm trying to configure multiple SSID's on it. The "guest mode" won't work for me because I want one SSID to use WPA and the other to use WEP, but the option to set different encryption based on the GHz frequency of the connection won't work for me because I only want the WEP one to be used by my Nintendo DS (which doesn't support WPA); I don't want to force ALL devices that don't support 5GHz to use the WEP one!
So My ssid is naular and it has password protection. However there is another ssid from my router called "linksys" which is unprotected. I tried to change it and messed it up bad. Everyime I sign on to "naular" it makes "Naular 2" then Naular 2 3 then Naular 2 3 4 etc. Then I only get local access. I look at my wireless thing and it says i'm connected to naular 2 3 4 5 when I signed onto Naular earlier.
I have two WAP200's code level version 2.0.4.0 connected to two SFE2000 24port, one switch per building. I have 3 vlans that I want to bridge between those two switches. I know the trunks on the switch are setup correctly because I can connect them directly and test all vlans.
I am able to get the untagged Vlan 1 to work fine with the bridge, but I have issues with the tagged Vlans 2 and 3. I have checked that I have the correct SSID tied to the correct Vlan number. I cause the whole network to lock up when I try to add the other SSID MAC addresses to the AP Mode -> AP Mode -> Wireless Bridge -> "Remote Wireless Bridge's MAC Addresses:" section. The wireless lights and ethernet lights go solid.Should I be adding the additional MACs there?
We have multiple Cisco Aironet 1131AG devices, all wired on one Cisco L2 switch(2560) who is connected to L3 switch (3550). We assigned one VLAN for access point in L3 switch who acts as vtp server (L2 switch is vtp client). All ap's will have static ip address and all will have same SSID and no security and they will be using multiple channels (ex. 1,6,11). They will operate in 3 floor building for roaming wireless client. We won't using any wireless controller.
How to configure APs-all the same with different ip's, can we use L3 switch to create dhcp server for access points VLAN (pool for clients, and the rest for static ip for ap's)?
I am trying to build a new network from scratch, I have the WLC 5508 w/ Aironet 3600e APs connected to my Netgear Smart Switches and a Linksys RV082 router that I'm using as my DHCP server with several VLANs for several stuff on my Switches.
I have 2 questions:
1. Can I have 5 Interfaces configured on 5 different VLANs, each SSID on each a different Port:
Port 1: Controller management only=> 192.168.x.x /24 Port 2: SSID 1: WiFi Internal=> 172.16.x.x/12 (Radius Auth with no sharing) Port 3: SSID 2: WiFi Internal w/ sharing=> 192.168.x.x/24 (Radius Auth with sharing) Port 4 :SSID 3: WiFi Guest=> 10.0.x.x/8 (Web Auth) Port 5: SSID 4: WiFi IT=> 192.168.x.x/24 ( Radius or certificate Auth with access to the controller management interface)
2. How can I use the Controller as the DHCP server for all the WiFi traffic, and how should that be configured to work with my other DHCP server?