目录
3.建立vap模版,并关联ssid模版和security模版,指定用户vlan
4.建立ap-group模版,关联vap模版,radio 0表示2.4g信号,radio 1表示5g信号
一、拓扑图
二、地址规划
VLAN 100--192.168.100.0/24为AP的管理IP地址
VLAN10--192.168.10.0/24为无线用户获取的IP地址
三、基础配置
AC :
vlan batch 10 100
interface GigabitEthernet0/0/1
port link-type trunk
port trunk allow-pass vlan 10 100
LSW1:
vlan batch 10 100
interface GigabitEthernet0/0/1
port link-type trunk
port trunk allow-pass vlan 10 100
interface GigabitEthernet0/0/2
port link-type trunk
port trunk allow-pass vlan 10 100
interface GigabitEthernet0/0/3
port link-type trunk
port trunk allow-pass vlan 10 100
interface Vlanif10
ip address 192.168.10.254 255.255.255.0
LSW2:
interface GigabitEthernet0/0/24
port link-type trunk
port trunk pvid vlan 100
port trunk allow-pass vlan 10 100
interface GigabitEthernet0/0/2
port link-type trunk
port trunk allow-pass vlan 10 100
vlan batch 10 100
LSW3:
vlan batch 10 100
interface GigabitEthernet0/0/3
port link-type trunk
port trunk allow-pass vlan 10 100
dhcp enable
ip pool vlan10
gateway-list 192.168.10.254
network 192.168.10.0 mask 255.255.255.0
lease day 0 hour 10 minute 0
dns-list 8.8.8.8
ip pool vlan100
gateway-list 192.168.100.254
network 192.168.100.0 mask 255.255.255.0
lease day 0 hour 12 minute 0
dns-list 8.8.8.8
option 32 sub-option 2 ip-address 192.168.100.254
interface Vlanif10
ip address 192.168.10.253 255.255.255.0
dhcp select global
interface Vlanif100
ip address 192.168.100.253 255.255.255.0
dhcp select global
四、AP上线
地址分配情况:
在DHCP Server(LSW3)上查看地址分配情况
display ip pool name vlan100 all
Capwap隧道:
1.在AC上指定建立capwap隧道的地址
capwap source ip-address 192.168.100.254
2.开启ap上线不需要认证(自动发现)
wlan
ap auth-mode no-auth
3.查看ap上线情况,状态为nor表示上线成功
display ap all
五、配置WLAN
1.建立ssid模版
wlan
ssid-profile name mingzi5
ssid huawei5g
ssid-profile name mingzi2.4
ssid huawei2.4g
2.建立security模版
Wlan
security-profile name mima
security wpa2 psk pass-phrase huawei@123 aes
3.建立vap模版,并关联ssid模版和security模版,指定用户vlan
wlan
vap-profile name vap5
forward-mode tunnel
service-vlan vlan-id 10
ssid-profile mingzi5
security-profile mima
vap-profile name vap2.4
forward-mode tunnel
service-vlan vlan-id 10
ssid-profile mingzi2.4
security-profile mima
4.建立ap-group模版,关联vap模版,radio 0表示2.4g信号,radio 1表示5g信号
wlan
ap-group name ZB
radio 0
vap-profile vap2.4 wlan 1
radio 1
vap-profile vap5 wlan 1
5.将ap放入到ap-group组中
wlan
ap-id 0
ap-name AP1
ap-group ZB
6.等待ap重启,并用笔记本连接wlan
AP已经正常加入到ap-group中