AC旁挂在三层交换机上,三层交换机作为DHCP server,为AP和Client分配地址,AP通过二层交换机连接到AC,需要实现AP在AC上线并且Client可以通过无线服务接入网络
需求:AC和AP跨三层连接,AC和AP通过vlan200接入网络,数据报文为集中式转发
配置命令:
#在L2上创建vlan 100 200,连接AP的接口打上vlan200的标签,连接L3的接口模式为trunk并放行vlan100 200
[L2]vlan 100
[L2]vlan 200
[L2-vlan200]port g1/0/3
[L2]inter g1/0/1
[L2-GigabitEthernet1/0/1]port link-type trunk
[L2-GigabitEthernet1/0/1]port trunk permit vlan 100 200
#在L3上创建vlan并配置三层地址
[L3]vlan 100
[L3-vlan100]vlan 200
[L3]inter vlan 100
[L3-Vlan-interface100]ip add 192.168.10.1 24
[L3-Vlan-interface100]inter vlan 200
[L3-Vlan-interface200]ip add 192.168.20.1 24
#修改接口模式和配置放行vlan
[L3]inter g1/0/1
[L3-GigabitEthernet1/0/1]p l t
[L3-GigabitEthernet1/0/1]port trunk permit vlan 200
[L3]inter g1/0/2
[L3-GigabitEthernet1/0/2]p l t
[L3-GigabitEthernet1/0/2]p t p v 100 200
#开启dhcp功能,创建地址池
[L3]dhcp enable
[L3]dhcp server ip-pool 200
[L3-dhcp-pool-200]network 192.168.20.0 24
[L3-dhcp-pool-200]gateway-list 192.168.20.1
[L3-dhcp-pool-200]option 43 hex 82c964dd0400 //option43指定分配的AP
#在AC上创建vlan100 200,并配置三层地址,配置接口模式和放行vlan100 200
[ac]vlan 100
[ac-vlan100]vlan 200
[ac]inter vlan 100
[ac-Vlan-interface100]ip ad 192.168.10.2 24
[ac]inter g1/0/0
[ac-GigabitEthernet1/0/0]p l t
[ac-GigabitEthernet1/0/0]p t p v 100 200
#开启自动上线AP和固化AP
[ac]wlan auto-ap enable
[ac]wlan auto-persistent enable
#创建wlan服务模板,配置ssid(wifi名称),密码,以及加密模式psk,开启服务模板
[ac]wlan service-template 1
[ac-wlan-st-1]ssid ssid
[ac-wlan-st-1]preshared-key pass-phrase simple 12345678
[ac-wlan-st-1]akm mode psk
[ac-wlan-st-1]cipher-suite ccmp
[ac-wlan-st-1]security-ie rsn
[ac-wlan-st-1]service-template enable
#将AP加入ap组,开启2.4G和5G射频,并绑定服务模板1和vlan200 (分配的网段)
[ac]wlan ap-group default-group
[ac-wlan-ap-group-default-group]ap-model WA6320-HCL
[ac-wlan-ap-group-default-group-ap-model-WA6320-HCL]radio 1
[ac-wlan-ap-group-default-group-ap-model-WA6320-HCL-radio-1]radio enable
[ac-wlan-ap-group-default-group-ap-model-WA6320-HCL-radio-1]service-template 1 vlan 200
[ac-wlan-ap-group-default-group-ap-model-WA6320-HCL-radio-1]quit
[ac-wlan-ap-group-default-group-ap-model-WA6320-HCL]radio 2
[ac-wlan-ap-group-default-group-ap-model-WA6320-HCL-radio-2]radio enable
[ac-wlan-ap-group-default-group-ap-model-WA6320-HCL-radio-2]service-template 1 vlan 200