Several points of access Cisco Aironet 1131AG and same SSID?

We have several Cisco Aironet 1131AG, all wired devices on a switch (2560) Cisco L2 which is connected to the L3 switch (3550). We have assigned a VLAN for access point to the L3 switch which acts as a vtp Server (L2 switch is vtp client). All the ap will have a static ip address and all will have the same SSID and no security, and they will use several channels (e.g. 1,6,11).  They will work in 3 floors for a roaming wireless client. We not using any wireless controller.

So my question is this: how to configure the same APs-all with a different ip address, can we use L3 switch to create the dhcp server to access points VLAN (pool for guests) and the rest of the static ip address for the ap? One of the ap can be WDS and on the same radius server local time with users without Cisco Secure ACS or similar controller or I did not understand this very well :-). I followed the guide http://www.cisco.com/en/US/docs/wireless/access_point/12.3_2_JA/configuration/guide/s32roamg.html for WDS where Abu Cisco ACS part is a problem, so I can use the same ap as a Local authenticator as a guide http://www.cisco.com/en/US/docs/wireless/access_point/12.3_4_JA/configuration/guide/s34local.html#wp1035723.

Thank you very much...

Well, just so you know, WDS, and local RADIUS authentication is necessary only if you use authentication on your wireless connection.  You say that you do not plan to use security, so it's not necessary.  However, I highly recommend at least using a simple WPA2-PSK to lock your connection, otherwise you might end up giving free Internet access at best and at worst you could give access to the computers and corporate servers.  If you want to reuse a 802. 1 x or WPA authentication method, then Yes, you can use an AP as RADIUS and to improve WDS Server authenticated to roaming, but this is much more limited than the use of a Cisco ACS.

As for your other questions, Yes, your APs can all be configured the same except for at least three settings: IP address, hostname, and channel.  Configure your static IP addresses on the interface of the PA BVI1.  Do not place it on the Radio or Ethernet interfaces, because if one of these interfaces goes down, you lose the ability to configure the AP, so it's best to use the BVI1 interface.

And Yes, configure a DHCP scope for your customers on your L3 switch is good design, or you can also use your DHCP server on a different subnet by using the command of support-ip address on the interface of L3.  I hope this helps!  Let me know if you need help to set all this up.

Merry Christmas!

Jeff

Tags: Cisco Wireless

Similar Questions

  • Cisco Aironet 1131AG and measure access points to the power of the wireless signal?

    / * Style definitions * / table. MsoNormalTable {mso-style-name : « Table Normal » ; mso-tstyle-rowband-taille : 0 ; mso-tstyle-colband-taille : 0 ; mso-style-noshow:yes ; mso-style-priorité : 99 ; mso-style-qformat:yes ; mso-style-parent : » « ;" mso-rembourrage-alt : 0 à 5.4pt 0 à 5.4pt ; mso-para-marge-top : 0 ; mso-para-marge-droit : 0 ; mso-para-marge-bas : 10.0pt ; mso-para-marge-left : 0 ; ligne-hauteur : 115 % ; mso-pagination : widow-orphelin ; police-taille : 11.0pt ; famille de police : « Calibri », « sans-serif » ; mso-ascii-font-family : Calibri ; mso-ascii-theme-font : minor-latin ; mso-hansi-font-family : Calibri ; mso-hansi-theme-font : minor-latin ;}

    / * Style definitions * / table. MsoNormalTable {mso-style-name : « Table Normal » ; mso-tstyle-rowband-taille : 0 ; mso-tstyle-colband-taille : 0 ; mso-style-noshow:yes ; mso-style-priorité : 99 ; mso-style-qformat:yes ; mso-style-parent : » « ;" mso-rembourrage-alt : 0 à 5.4pt 0 à 5.4pt ; mso-para-marge-top : 0 ; mso-para-marge-droit : 0 ; mso-para-marge-bas : 10.0pt ; mso-para-marge-left : 0 ; ligne-hauteur : 115 % ; mso-pagination : widow-orphelin ; police-taille : 11.0pt ; famille de police : « Calibri », « sans-serif » ; mso-ascii-font-family : Calibri ; mso-ascii-theme-font : minor-latin ; mso-hansi-font-family : Calibri ; mso-hansi-theme-font : minor-latin ;}

    We have about forty points of access Cisco Aironet 1131AG spread over four floors and they all have a static IP (BVI1) on the same SSID, customers will be on its own virtual local area network (dhcp on 3750 switch) and they use several channels (1,6,11).  Cisco Wireless Control System is pending. This wireless network should support roaming for customers (there will be Wi - Fi tags of multiple AeroScout and wireless laptops). To measure the strength of the wireless signal and wireless coverage on each floor. My questions are:

    1. How to measure the strength of the wireless signal: we must meet at least three APs available with signal excellent (I guess for the WCS needs that will determine the position of the client in the building)? We thought to use NetStumbler and a few laptops with wifi and measure as many points as we can as simpler thing. Or should we use something like Cisco Aironet Client adapters for our mobile phone and then use Cisco Aironet Client Utility (is it worth buying for our analysis and measurement)? Any other idea?
    2. What signal level should we consider for a good wireless (dBm)?
    3. That we should propose for authentication, authorization and management accounting? What happens to the roaming wireless? I did not quiteunderstand WCS, WDS and WLC-that should be used for above tasks?

    Thanks in advance.

    "Use the command on the AP" sh dot11 associations "will give you the clients associated with success.  If you add the MAC address of the client at the end of the command, you will get detailed information.  Look under "Signal Strength" and "Signal to noise".  Under the strength of the Signal, you want a value of-75 dBm or lower (lower values the better).  -76 dBm and is bad.  Under Signal-noise, you want a value of 25 dBm or more (values higher the better).

    To measure the strength of the signal, I use Airmagnet, but you can use Netstumbler or Cisco Wireless Site Survey.

  • Point of access Cisco Aironet 1200 series help

    We have 4 Cisco Aironet 1200 Access Points and they are all set to authenticate with our RADIUS server. However, authentication is hooked and can't understand why. Does anyone have any knowledge/experience with Cisco Aironet 1200 Access Points configuration?

    OK, I do not work with the GUI so although the memory is a little hazy but from the APs home page look on the left hand side and there is an option for something like "Software Setup" or something to that effect. You should be able to find the IOS version of here. This requires that you are indeed runnig IOS code. How old are these APs? If more than a few years ago (and perhaps even more recent) that they could very well be running VxWorks and then we are in a different ball game. If you see what I have described above and the homepage for the AP is often white with a bit of greenish-blue, bluish-green color then IOS, if it is more colorful, yellow stuff and VxWOrks.

    I hope this helps. Let me know if you need anything that anyone else. I will try to answer as soon as POSSIBLE.

  • Cisco aironet 1131AG AP radio interface down

    Hello
    I have a problem with my cisco aironet 1131ag AP radio interface.
    I configured the ssid, authentication and encryptation me have it (the ssid) associated with the radio interface, but the interface of dot11radio still in a State of remission to zero, and if a restart the interface this msg appears "% DOT11-4-NO_SSID: no SSID configured." Not started Dot11Radio0 ' what I need to do?
    Help, please

    Configuration:

    Building configuration...

    Current configuration: 1394 bytes
    !
    version 12.4
    no service button
    horodateurs service debug datetime msec
    Log service timestamps datetime msec
    encryption password service
    !
    host ap name
    !
    Select the 5 secret $1$ Mf3YfBFQQS2.6MSWHQOeG0 $URAK
    !
    No aaa new-model
    domain IP Nida.local
    !
    !
    !
    dot11 ssid Nida
    VLAN 1
    open authentication
    authentication wpa key management
    Comments-mode
    WPA - psk ascii 7 01100F175804575D72
    admit-traffic
    !
    !
    diet pre-standard trading online
    !
    !
    username Cisco privilege 15 password 7 123A0C041104
    !
    Bridge IRB
    !
    !
    interface Dot11Radio0
    IP 192.168.1.80 255.255.255.0
    no ip route cache
    !
    algorithms for encryption tkip encryption mode
    !
    encryption vlan 1 tkip encryption mode
    !
    SSID Nida
    !
    root of station-role
    Bridge-Group 1
    Bridge-group subscriber-loop-control 1
    Bridge-Group 1 block-unknown-source
    No source of bridge-Group 1-learning
    unicast bridge-Group 1-floods
    Bridge-Group 1 covering-disabled people
    !
    interface FastEthernet0
    192.168.1.81 IP address 255.255.255.0
    no ip route cache
    automatic duplex
    automatic speed
    Bridge-Group 1
    No source of bridge-Group 1-learning
    Bridge-Group 1 covering-disabled people
    !
    interface BVI1
    customer_id FastEthernet0 dhcp IP address
    no ip route cache
    !
    IP http server
    no ip http secure server
    IP http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
    1 channel ip bridge
    !
    !
    !
    Line con 0
    line vty 0 4
    local connection
    !
    end

    You must create the dot11radio0.1 and fastethernet0.1 interface

    Must be something like this:

    version 12.4
    no service button
    horodateurs service debug datetime msec
    Log service timestamps datetime msec
    encryption password service
    !
    host ap name
    !
    Select the 5 secret $1$ Mf3YfBFQQS2.6MSWHQOeG0 $URAK
    !
    No aaa new-model
    domain IP Nida.local
    !
    !
    !
    dot11 ssid Nida
    VLAN 1
    open authentication
    authentication wpa key management
    Comments-mode
    WPA - psk ascii 7 01100F175804575D72
    admit-traffic
    !
    !
    diet pre-standard trading online
    !
    !
    !
    Bridge IRB
    !
    !
    interface Dot11Radio0
    no ip route cache
    !
    algorithms for encryption tkip encryption mode
    !
    encryption vlan 1 tkip encryption mode
    !
    SSID Nida
    !
    root of station-role

    interface dot11radio0.1
    encapsulation dot1q 1 native
    Bridge-Group 1
    Bridge-group subscriber-loop-control 1
    Bridge-Group 1 block-unknown-source
    No source of bridge-Group 1-learning
    unicast bridge-Group 1-floods
    Bridge-Group 1 covering-disabled people
    !
    interface FastEthernet0
    no ip route cache
    automatic duplex
    automatic speed
     
    interface Fastethernet0.1
    encapsulation dot1q 1 native
    192.168.1.81 IP address 255.255.255.0
    Bridge-Group 1
    No source of bridge-Group 1-learning
    Bridge-Group 1 covering-disabled people
    !
    interface BVI1
    customer_id FastEthernet0 dhcp IP address
    no ip route cache
    !
    IP http server
    no ip http secure server
    IP http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
    1 channel ip bridge
    !
    !
    !
    Line con 0
    line vty 0 4
    local connection
    !
    end

    PS has also removed the ip address dot11 interface slot and I'm not sure why the role of station is root?

  • Create the Pool DHCP on Cisco Aironet 1131AG

    Hello

    How to create a DHCP on a Cisco Aironet pool so that laptops could get an IP address from this range when connected?

    I don't want to use DHCP on our servers because these laptops are to be on a separate network.

    Just do not know what commands to use.

    Thank you!

    Hello

    There is a nice step by step to configure the DHCP Service on the AP in this doc;

    Configuration of the Access Point to provide DHCP Service

    http://www.Cisco.com/en/us/docs/wireless/access_point/12.3_8_JA/configuration/guide/s38adm.html#wp1090319

    I hope this helps!

    Rob

    Thank you to support CSC helps Haiti

    https://supportforums.Cisco.com/docs/doc-8895

    https://supportforums.Cisco.com/docs/doc-8727

  • SNMP and cisco Aironet 1131AG

    We have a wireless control system, 3 WLC and 190 APs. I need to listen to 802.11 radios via SNMP. The system is running with LWAPP and APs are not accessible via SNMP (no response trying to access). I'm trying to send traps on the Server SNMP (Zabbix) but to disable the WLC 802.11 Radio, I don't see any trap regarding the status of the Radio or the admin down.

    Are you looking for it any method to monitor the status of the radio via SNMP?

    Thanks in advance,

    OLAF

    Hi Olaf,.

    Lwapp APs are not snmp manageable but controllers takes care of this. You can query the WLC via SNMP and it will give you the status of all access points radio.

    I suggest to use the tool of Cisco's MIB browser learn more about AIRESPACE mib that uses the WLC.

    Nicolas

  • Several points of access WAP300N just stop working

    I have 3 WAP300Ns in my office, all with the same SID.  They will work for several days, then stop working - will not respond to the ping, etc.  I do not think that all fail at the same time, but seems it tends to be in a group.  (I know they are all 3 down when I can't get Wifi)  Turn off and turn on again gets working them again.  All have the latest firmware.  I tried different frequencies but doesn't seem to help. Very frustrating.  Any suggestions?

    Lets see what are the results of a disabling WPS.

  • No repeaters between Cisco Aironet 1250 and equipment cisco config

    Hi all

    Company moves to a new site and I need to improve wireless coverage.

    We currently only AP 1252 providing wireless throughout the office. As we produce and sell our own wireless equipment, I was wondering if it is possible to use company equipment to improve coverage.

    I was considering deploying the 1252 in a location central and 2 repeaters in the four corners.

    Any suggestion is welcome.

    See you soon,.

    Fabio

    Repeater mode is owner for each company... Cisco devices can associate with other Cisco Repeater not Cisco No...

    You can use any device cisco to expand coverage... the best feature is a pair of 1310 bridge or bridge of 1410 in long distance... or, you can go for 1252 with an another 1252 if the distance is less.

    Let me know if that answers your question...

    Concerning

    Surendra

    ===

    Please do not forget to note positions that answered your question or was useful

  • can I buy a package of several points of access to both?

    I'm looking all cool APS available since the adobes for photo stores and everything in between, they would all come in handy for work including, but not limited to the YEAR and Pr, how to find the best possible deal for the aps as much as possible?

    Thank you!

    Cloud Plans https://creative.adobe.com/plans and look on the page to see what is available

  • Problem with several user to access the files on the same PC in a peer-to-peer network

    I have 9 PC running a mix of Windows XP Pro (32 bit) and Windows 7 Pro OS on a peer-to-peer network.

    These 9 PC are in the same workgroup that they need to access the same file on a computer acting as a file server, under Windows XP Pro.

    There were once only 5 user accesses files on the PC for editing and other purposes. But recently we have increase the user accesses files on the PC at 7 and there are times when the 6th user is unable to access the files until 1 the user has closed the file that he became.

    Is it possible to increase the number of users able to access the file?

    Hello

    The upgrade of the server or any other computer that keeps the number of connections to Win 7 Pro can bring some relief (Win 7 pro will support more connections).

    However, if it is a business, it is time to start investigating Windows SBS.

    http://www.Microsoft.com/SBS/en/us/default.aspx

  • Cisco APs with the same SSID

    I have a few Cisco 1200 APs series and when I put these to broadcast the SSID even users get ephemeral could.

    What is the problem?

    What I have to do to put the SSID the same serv access points?

    Thank you

    Likely your APs higher tower to the other. Do a search on the forums for survey site and you meet several good conversations.

  • Problem with Aironet 1131ag

    I have a Cisco Aironet 1131ag and used to wrk fine until a few days ago.

    Now, I can't see it emitting from any computer. I reset to recreated a few times TI SSID but still nothing is showing.

    In the Web user interface, everything seems fine, interfaces are with the green arrows but no one can see the access point through wireless. I don't know what else to do that perhaps another update of IOS.

    Help, please

    V/r

    Antonis

    Web GUI-> Security-> SSID Manager

    Scroll down and under "Parameters of the SSID Infrastructure Mode/Guest", choose your SSID in the drop down list of 'Solve single comments Mode SSID' to the appropriate interfaces.

  • Cisco Aironet SAP1602E - changing open to WPA - PSK access remote (RAP and map)

    I currently have a deployment of Cisco Aironet SAP1602E Wireless point to point bridge (bridge using RAP and card, root wireless and Non-Root Bridge) to expand a layer 2 VLAN from one building to the other. It currently operates uisng open authentication and encryption - and is administered remotely via the bridge of root, to get wireless (manage) the bridge Non-Root - RAP wireless remote.

    Try to configure the PSK WPA2-PSK remotely via the GUI or CLI - first setup - I informed a similar error to her below indicating that:

    Error: Key-management WPA is requried for WPA-PSK
    Read around, it seems, there is a configuration-control problem, and that I need to specify the mode as WPA2-PSK first, before then being able to specify the PSK there instead of using. However, as soon as this mode is specified on RAP, my remote administration is broken - as probably the RAP try to use WPA2-PSK to look for a PSK, which has not yet been configured. Am I missing something obvious here, or is the order of operations of CLI (1] convert to WPA - PSK; (2] shared secret to apply PSK) as a migration from open to WPA2-PSK cannot be configured remotely (short of preparation of a startup-config; TFTPing presents more; and issuance of a 'reload' remote control)? Can someone please enlighten me as to what the logic is here - no doubt I should be able to specify a PSK first (fo without worrying if I use WPA, WPA2 or other), and then be able to specify that I want as the layer of encryption (WPA) to make use of this pre-parameter PSK? If it was a router, you don't can me to add something to the authentication key chain OSPF; before clarifying its use - why so different Aironet Wireless IOS?

    You're right, and because you will have to enter several lines of configuration to switch to WPA2-PSK with AES didn't really matter; the AP would reset the radio anyway because you make changes related to the radio interface. It would be very useful that if Cisco router/switch IOS 'macro' feature available AP thus in changes like this, unfortunately this is not the case.

    Start with the nonroot AP and make sure that the following lines are added to your configuration. If you add by the console, the order must be like that, do it by downloading a new configuration of booting with tftp, that it does not matter.

    interface Dot11Radio0
    encryption ciphers aes - ccm mode

    SSID dot11 TEST
    authentication wpa key management
    WPA - psk ascii 0

    Please rate helpful messages... :-)

  • difference between cisco NAC agent and cisco Clean Access Agent

    Hi all

    If anyone has the idea on different between cisco NAC agent and cisco Clean Access Agent, please let us know your ideas.

    Thank you

    In 4.6, the agent has been revised and is now called the NAC agent.  Previous versions were called the clean access Agent.  So roughly, 4.5 and 4.1.3.2 agent are own access agents, and agents 4.6.x and 4.7.x are called NAC agents.

    Some of the changes are moving a lot of the agent configuration in an XML file, redesign of the GUI, adding a service portion (of the sort that the agent of heel is no longer necessary) and the best journaling agent.

  • 75 laptops using 2 point access (cisco 1130)

    I was informed in advance that there will be a large meeting with 75 people with laptop in an auditorium.   This room has 2 Cisco 1130.   This will be sufficient to support the number of laptop at the same time?   Do I need to add more points of access?

    Thank you

    Basic rule is that you want more than 25 clients per AP, but it really depends on the type of traffic.  For example, you don't want more than 7 calls active voice by both access point.  So it really depends on the type of traffic.

    In general, I would say if you can add another AP I would.  Also if these are dual AP radio that would also help.  I hope that customers would balance the load between the radios.

Maybe you are looking for

  • cannot increase the brightness

    It seems since the last update on my Apple Watch, it is hard to see anything on my watch outside. I also noticed that it is lower than normal on the inside. I tried to increase through my Iphone, but without success. Any suggestions?

  • Windows Vista Service Pack 2 (KB948465) is safe to install?

    I heard about the problems that it may cause such as the freezing of the computer, etc.. He appeared on Windows Update telling me to install it, but I still get the feeling that something can go wrong during installation or after. If possible, please

  • How can I set more than one character of endpoint for interface RS-232 communication?

    Hello I have to communicate via the interface RS-232 of the PC with a card microprocessor. I use the "Advanced Serial write and Read.vi ' off examples of LabVIEW and it works on the principle."My problem is the stop character: it looks like I can put

  • Interactive Online Signature of form - does not

    I made a form in Adobe Acrobat Pro ms and want to distribute for signatures. I'll test on myself by sending it to a non Adobe email address. When I get the form into my Inbox and click the link to sign, he shoots to the top of the screen in a window

  • Create/edit functionality using popup

    HelloI do face-down question on one Page ADF:I have read only the ADF. Under the table, there are 3 buttons (Edit current line, create new & Commit).The two edit/create button opens a popup window showing the ADF form for the selected line in the cas