Wireless Overview
Leigh Bogardis
NETWORK ARCHITECT
Wireless basics
Wireless security
Contents
WLC architectures
- Authentication
- Components
Roaming
Site surveys
Branch designs
Wireless Basics
History Frequencies Standards Bandwidth
Wireless Security
WEP WPA WPA-2
WPA Enterprise
Cisco Unified Wireless Network
Network
Client devices Access points
unification
Network
Mobility services
management
Cisco Unified Wireless Network: Benefits
Reduced TCO
Enhanced visibility and control
Dynamic RF management
WLAN security
Unified wired and wireless networks
Enterprise mobility
Enhanced productivity and collaboration
Wireless LAN controllers
Autonomous AP Centralized
WLAN architecture
LWAPP
CAPWAP
Access Point Modes
Hybrid Remote
Local Mode Monitor
Edge AP
Rogue Detector Sniffer Bridge
EAP-TLS
PEAP
EAP-TTLS
LEAP
WLAN
EAP-FAST
Authentication Options
WLAN Controller Components
WLANs Interfaces Ports
WLC Interface Types
Management Service-port AP Manager
Interface Interface Interface
Dynamic Interface Virtual Interface
Some WLC Controller Platforms
Platform Number of supported AP
CTVM virtual controller 200
Cisco 2500 series wLC 75
Cisco WLC for ISR G2 200
Catalyst 3850 WLC 50
WiSM WLC module 1000
Cisco 5508 WLC 500
Cisco 5520 WLC 1500
Cisco 8540 WLC 6000
Client A: MAC, IP Address, Access Point, QoS, Security
Controller-1 Data Traffic Bridge
Client Database Controller-1 onto VLAN x
LWAPP Tunnel
Access Access
Point 1 Point 2
Roaming Options Client A Roams from
Intracontroller roaming AP1 to AP2
Controller-1 Controller-2
Client Database Client Database
Client Entry
Client A: MAC, IP Client A: MAC, IP
Moved to New
Address, Access Point, Address, Access Point,
Controller
QoS, Security, … QoS, Security, …
Data Traffic VLAN x Data Traffic
Bridged Controller-1 Controller-2 Bridged
from/to Mobility Message Exchange from/to
VLAN x VLAN x
LWAPP Tunnel LWAPP Tunnel
Access Access
Point 1 Point 2
Roaming Options Client A Roams from
Intercontroller roaming AP1 to AP2
Controller-1 Controller-2
Client Database Client Database
Client Entry
Client A: MAC, IP Moved to New Client A: MAC, IP
Address, Access Point, Controller Address, Access Point,
QoS, Security, Anchor QoS, Security, Foreign
Data Traffic Data Traffic
Bridged Bridged
from/to Mobility Message Exchange from/to
VLAN x VLAN x
Controller-1 Ethernet-over-IP (EtherIP) Tunnel Controller-2
LWAPP Tunnel LWAPP Tunnel
Access Access
Point 1 Point 2
Roaming Options
Client A Roams from
Layer 3 intercontroller AP1 to AP2
Roaming
WLAN Design: Controller Redundancy
Deterministic
Predictability
Dynamic
Stability Easy to deploy
Flexibility Dynamic load balancing
Faster failover
Radio resource management
Dynamic channel assignment
Radio Interference detection and avoidance
Management Dynamic transmit power control
Coverage hole detection and correction
Client and network load balancing
RF groups
Cluster of WLC devices
Coordinate
- Send out neighbor messages
- Validate messages
- Create master RF group leader
RF Site Surveys
Define requirements
Obtain diagram of facility
Visual inspection
Identify heavy usage areas
Determine preliminary locations
Use an AP to survey location
Log signal readings and document findings
Report to customer
Wireless Mesh Networks
Wireless control system Wireless LAN controller
Rooftop AP Mesh access point
Campus Design Considerations
Number of APs Placement of APs Power for APs
Placement
Number of WLCs
of WLCs
Local MAC
REAP
Branch H-REAP
Office Controller options
- CTVM virtual controller
Design
- WLC in ISR
- 3650 WLC
- 2500 WLC
802.3af
802.3at
Power Over Higher bandwidth standards might
Ethernet require more power at the AP
Don’t underestimate your network
switch and its capacity for PoE
QoS and Wireless: 802.1p & 802.1e
Access Point QoS Translation AVVID IEEE
AVVID IP DSCP QoS Profile
Values AVVID Traffic Type 802.1p 802.11e UP
Network control 56 (CS7) Platinum 7 7
Inter-network control (CAPWAP) 48 (CS6) Platinum 6 7
control, 802.11 management)
Voice 46 (EF) Platinum 5 6
Interactive Video 34 (AF41) Gold 4 5
Streaming Video 32 (CS4) Gold 4 5
Mission Critical 26 (AF31) Gold 3 4
Call Signaling 24 (CS3) Gold 3 4
Transactional 18 (AF21) Silver 2 3
Network Management 16 (CS2) Silver 2 3
Bulk Data 10 (AF11) Bronze 1 2
Best Effort 0 (BE) Silver 0 0
Scavenger 8 (CS1) Bronze 0 1
Summary of WLAN Design
RF site survey
Guest services supported in Cisco Unified
Wireless network
Outdoor WLAN supported using outdoor AP
and mesh network
Campus networks supported with LAP and WLC
Each AP <30 data devices per WLAN SSID
Separate SSID for voice devices <8 calls per AP
Wireless basics
Wireless security
Summary
WLC architectures
- Authentication
- Components
Roaming
Site surveys
Branch designs