实验拓扑图
说明本实验为最基础的实验
如图所示只配置的一个ap上线
基本配置( 这个很重要):
AC vlan的创建
管理 vlan1 : 192.168.1.100
业务 vlan10 : 192.168.10.100
sy # 系统模式
un in en # 关闭系统提示
vlan ba 1 10
q
int vlan 1
ip address 192.168.1.100 24
q
int vlan 10
ip address 192.168.10.100 24
1、连接AP的端口配置trunk允许所有VLAN通过
[AC6005]port-group 1 //创建一个组
[AC6005-port-group-1]group-member g0/0/1 to g0/0/2 //把连接AC的接口,放到这个组中
[AC6005-port-group-1]port link-type trunk //把这个组中的接口配置trunk链路
[AC6005-GigabitEthernet0/0/1]port link-type trunk
[AC6005-GigabitEthernet0/0/2]port link-type trunk
[AC6005-port-group-1]port trunk allow-pass vlan all ///允许所有的vlan通过
[AC6005-GigabitEthernet0/0/1]port trunk allow-pass vlan all
[AC6005-GigabitEthernet0/0/2]port trunk allow-pass vlan all
2、开启DHCP的 功能 ,然后配置DHCP服务,应用到VLAN里面
[AC6005]dhcp enable //开启DHCP功能
[AC6005]ip pool vlan_1 //创建地址池
[AC6005-ip-pool-vlan_1]network 192.168.1.0 mask 24 //创建地址的网段
[AC6005-ip-pool-vlan_1]gateway-list 192.168.1.100 //地址池的网关
[AC6005-ip-pool-vlan_1]int vlan 1 //进入 vlan1
[AC6005-Vlanif1]dhcp select global //选择DHCP全局
[AC6005]ip pool vlan_10 //创建地址池
[AC6005-ip-pool-vlan_10]network 192.168.10.0 mask 24 //创建地址的网段
[AC6005-ip-pool-vlan_10]gateway-list 192.168.10.100 //地址池的网关
[AC6005]int vlan 10 //进入 vlan1
[AC6005-Vlanif10]dhcp select global //选择DHCP全局
3. 配置AP的上线:
前要:
获取ap的mac地址:
先将ap停止
然后:: 右键-设置
ac设置:
# 这里的 vlan 1 就是上面的管理vlan
[AC6005]capwap source int ?
vlan
vlanif
# 注意选择 vlan
[AC6005]capwap source int vlan 1 //设置vlan1为管理下发接口
[AC6005]wlan
[AC6005-wlan-view]ap-group name ap-1 //设置一个AP组
[AC6005-wlan-view]ap-id 0 ap-mac 00e0-fc23-2fc0
# ap-id <随便填应该id> ap-mac 这里填的mac 为ap的mac地址
# 把AP添加到AP组中,(每个AP只有一个mac地址,所以添加mac地址)
[AC6005-wlan-ap-0]ap-name area0 // 给AP设置一个名称
[AC6005-wlan-ap-0]ap-group ap-1 //把此AP添加到AP组中
Warning: This operation may cause AP reset. If the country code changes, it will
clear channel, power and antenna gain configurations of the radio, Whether to c
ontinue? [Y/N]:y
[AC6005-wlan-ap-0]dis ap al
Info: This operation may take a few seconds. Please wait for a moment.done.
Total AP information:
nor : normal [1]
--------------------------------------------------------------------------------
--------
ID MAC Name Group IP Type State STA Uptime
--------------------------------------------------------------------------------
--------
0 00e0-fc23-2fc0 area0 ap-1 192.168.1.19 AP4050DN-E nor 0 22S
--------------------------------------------------------------------------------
--------
Total: 1
出现ip地址代表成功
4.在 AC 上进行安全模板配置,并下发给 AP
[AC6005-wlan-view]security-profile name qqf ///配置安全模板的名称
[AC6005-wlan-sec-prof-qqf]security wpa2 psk pass-phrase a1234567 aes //设置安全密码
[AC6005-wlan-view]ssid-profile name qqf //配置SSID模板的名称
[AC6005-wlan-ssid-prof-qqf]ssid nbwifi SSID的名称
[AC6005-wlan-view]vap-profile name qqf //配置vap模板的名称
[AC6005-wlan-vap-prof-qqf]security-profilel qqf //把安全模板放入到vap模板
[AC6005-wlan-vap-prof-qqf]ssid-profile qqf //把ssid模板放入到vap模板
[AC6005-wlan-vap-prof-qqf]forward-mode tunnel //设置转发模式
[AC6005-wlan-vap-prof-qqf]service-vlan vlan-id 10 //设置业务vlan为vlan10
[AC6005-wlan-view]ap-group name ap-1 ///进入到group组中
[AC6005-wlan-ap-group-ap-1]vap-profile qqf wlan 1 radio all /// 将该 VAP 模板应用到所有射频接口上
5.结果验证
5.结果验证