无线控制器配置基础课程.pptx





《无线控制器配置基础课程.pptx》由会员分享,可在线阅读,更多相关《无线控制器配置基础课程.pptx(110页珍藏版)》请在淘文阁 - 分享文档赚钱的网站上搜索。
1、 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID1无线控制器配置基础无线控制器配置基础Xiaogang Wu2008.10 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID2基本配置任务及过程基本配置任务及过程准备工作1. 控制器启动配置和升级控制器软件版本控制器启动配置和升级控制器软件版本2. 熟悉控制器配置界面熟悉控制器配置界面3. 连接连接AP到控制器上到控制器上配置任务1
2、. 思科思科CSSC无线客户端的安装和简单配置无线客户端的安装和简单配置2. 构建一个构建一个OPEN和一个和一个WEP的无线网络的无线网络3. 构建一个简单构建一个简单WEB认证的无线网络认证的无线网络4. 构建一个支持本地构建一个支持本地EAP认证的无线网络认证的无线网络5. 构建一个用构建一个用ACS做做AAA认证的无线网络认证的无线网络 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID3Presentation Title Size 30PTOption 2: Live准备工作
3、2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID4基本设备基本设备 控制器 4400或者2100系列 AP:1130或者1240系列 交换机: 最好是3560 POE交换机 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID52100系列无线控制器系列无线控制器 支持支持802.11a/b/g/n 支持支持PCI认证认证 WLC2100 硬件硬件8个FE口,2个上联口,6个下联口其中
4、2个FE口有以太网供电 未使用端口未使用端口2个USB端口和一个扩展槽留作将来扩展用*2106和2006不能作为guest access的anchor controller*不支持Link Aggregation*不能通过软件升级AP容量AIR-WLC2125-K92100 Series WLAN Controller for up to 25 Lightweight APs$18,890AIR-WLC2112-K92100 Series WLAN Controller for up to 12 Lightweight APs$10,070AIR-WLC2106-K92100 Series W
5、LAN Controller for up to 6 Lightweight APs$4,875 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID64400系列无线控制器系列无线控制器 1 RU 高度2口 或者 4口千兆上联 支持 12, 25, 50 or 100 AP 支持 5000 MAC地址转发表 10/100Base-TX 以太网 Service Port 9 pin 串口Console口 2 扩展槽和1个utility port目前未使用 2 热插拔电源模块插槽44xx WL
6、AN Controller 型号 4402 支持 12, 25, 和50 AP 型号 4404支持100 APs*不能通过软件升级AP容量*4400系列使用SFP光纤模块*4400系列每port支持50个AP 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID7准备工作准备工作 网线和Console线。如果是4400,需要两头是DB9接口的线,如果是2106或者ISR,需要DB9+RJ45的线 如果是4400,需要GLC光纤模块和光纤 确认控制器版本是否需要升级 (用命令show sysi
7、nfo查看系统版本) 是否需要将胖AP升级到瘦AP1200/1100/1300需要upgrade tool做升级,1250不需要工具,直接在图形化界面上升级 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID8实验拓扑示例实验拓扑示例TRUNKVLAN1/20/30/40fa0/1port 1SSCWLC说明:说明:1、VLAN1用于连接控制器、AP和ACS;2、VLAN20用于WPA/WPA2认证,认证服务器用ACS。3、VLAN30用作OPEN/WEP/GUEST客户接入3、VLAN4
8、0用作WPA/WPA2认证,认证用本地EAPSSCSSID:VLAN20SSID:VLAN30PC/AAA服务器服务器VLAN1所有3层网关设置在3层交换机上,地址254 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID9启动选项启动选项The controller boot sequence will always have these option available since this is set in PROM to ensure controller recovery op
9、tions按5清空配置 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID10系统启动界面和配置系统启动界面和配置 (OS 5.1)Would you like to terminate autoinstall? yes: System Name Cisco_51:2b:60 (31 characters max): 2106-demoAUTO-INSTALL: process terminated - no configuration loadedEnter Administrative
10、 User Name (24 characters max): ciscoEnter Administrative Password (24 characters max): ciscoRe-enter Administrative Password : ciscoManagement Interface IP Address: 192.168.10.1Management Interface Netmask: 255.255.255.0Management Interface Default Router: 192.168.10.254Management Interface VLAN Id
11、entifier (0 = untagged): Management Interface Port Num 1 to 8: 1Management Interface DHCP Server IP Address: 192.168.10.254AP Manager Interface IP Address: 192.168.10.2AP-Manager is on Management subnet, using same valuesAP Manager Interface DHCP Server (192.168.10.254): Virtual Gateway IP Address:
12、1.1.1.1Mobility/RF Group Name: demo 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID11系统启动界面(续)系统启动界面(续)Enable Symmetric Mobility Tunneling yesNO: yesNetwork Name (SSID): open Allow Static IP Addresses YESno: Configure a RADIUS Server now? YESno: noWarning! The default
13、WLAN security policy requires a RADIUS server.Please see documentation for more details.Enter Country Code list (enter help for a list of countries) US: CNEnable 802.11b Network YESno: Enable 802.11a Network YESno: Enable 802.11g Network YESno: Enable Auto-RF YESno: Configure a NTP server now? YESno
14、: noConfigure the system time now? YESno: Enter the date in MM/DD/YY format: 09/28/08Enter the time in HH:MM:SS format: 17:11:00Configuration correct? If yes, system will save it and reset. yesNO: yesConfiguration saved!Resetting system with new configuration.非常重要,非常重要,Controller的的wireless的的domain要和
15、要和AP一致。一致。 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID12配置配置3层交换机层交换机p dhcp excluded-address 192.168.10.1ip dhcp excluded-address 192.168.10.254ip dhcp excluded-address 192.168.10.2!ip dhcp pool AP network 192.168.10.0 255.255.255.0 default-router 192.168.10.254 !i
16、nterface FastEthernet0/1 switchport trunk encapsulation dot1q switchport mode trunkinterface Vlan1 ip address 192.168.10.254 255.255.255.0!interface Vlan20 ip address 192.168.20.254 255.255.255.0! interface Vlan30 ip address 192.168.30.254 255.255.255.0!interface Vlan40 ip address 192.168.40.254 255
17、.255.255.0line vty 0 4 privilege level 15 password cisco login 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID13配置配置WEB访问访问1、使用直通网线,连接交换机的trunk接口到控制器端口12、配置PC机的IP地址 192.168.10.100/24或者DHCP,网关192.168.10.2543、测试PC能否Ping 通Controller的地址:192.168.10.13、用https:/192.168.10.1访问
18、控制器,如果要开启http访问,需要在系统里打开。 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID14使用使用IE浏览器进行浏览器进行WEB访问访问 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID15如果要升级控制器系统软件如果要升级控制器系统软件 tftp 服务器推荐tftpd32 支持64M以上文件传输 2006 Cisco Systems, Inc. All rights
19、 reserved.Cisco ConfidentialPresentation_ID16在在CCO上下载新版本上下载新版本支持室内室外 mesh 版本支持802.11n和其他新功能的普通版本 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID17Upgrade Path to Controller Software Release 5.0.148.0 or aboveCurrent Software Release Upgrade Path to 5.0.148.0 Software 3
20、.2.78.0 or later 3.2 release Upgrade to a 4.1 release before upgrading to 5.0.148.0. 4.0.155.5 or later 4.0 release Upgrade to a 4.1 or 4.2 release before upgrading to 5.0.148.0 4.1.171.0 or later 4.1 release You can upgrade directly to 5.0.148.0. 4.2.61.0 or later 4.2 release You can upgrade direct
21、ly to 5.0.148.0. 注意:由于配置存储格式不同,从3.x-4.x 升级到5.x后,原来的部分配置可能丢失 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID18Upgrade Path to Controller Software Release 4.1.171.0 Current Software Release Upgrade Path to 4.1.171.0 Software 3.2.78.0 Upgrade to 4.0.206.0 or a later 4.0 r
22、elease before upgrading to 4.1.171.0. 3.2.116.21 3.2.150.10 3.2.171.6 3.2.193.5 If your controller is configured with the new J3 country code, upgrade to 3.2.195.10 or a later 3.2 release. If your controller is not configured for the new J3 country code, you can upgrade to 3.2.195.10 or a later 3.2
23、release or to 4.0.206.0 or a later 4.0 release. 3.2.195.10 or later 3.2 release You can upgrade directly to 4.1.171.0. 4.0.155.5 Upgrade to 4.0.206.0 or a later 4.0 release before upgrading to 4.1.171.0. 4.0.179.11 4.0.206.0 or later 4.0 release You can upgrade directly to 4.1.171.0. 2006 Cisco Syst
24、ems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID19控制器软件升级控制器软件升级 命令行方式命令行方式 Step1. ping server-ip-address 测试控制器与TFTP server的连通性 Step2. transfer download mode tftp 设置传输使用的协议:tftp Step3. transfer download datatype code 设置传输的数据类型 Step4. transfer download serverip server-ip-address 指定tftp
25、 server的IP地址 Step5. transfer download filename filename 制定Image的文件名 Step6. transfer download start 开始传输文件,确认时如果回答No,则显示TFTP的参数设置 Step7. reset system WLC的系统重新启动注:TFTP服务器软件推荐tftpd32,可以在网上免费下载,支持64M以上大文件传输 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID20控制器软件升级控制器软件升级 图形
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- 无线 控制器 配置 基础 课程

限制150内