You are on page 1of 26

Wireless Overview

Leigh Bogardis
NETWORK ARCHITECT
Wireless basics
Wireless security
Contents
WLC architectures
- Authentication
- Components

Roaming
Site surveys
Branch designs
Wireless Basics

History Frequencies Standards Bandwidth


Wireless Security

WEP WPA WPA-2

WPA Enterprise
Cisco Unified Wireless Network

Network
Client devices Access points
unification

Network
Mobility services
management
Cisco Unified Wireless Network: Benefits

Reduced TCO

Enhanced visibility and control

Dynamic RF management

WLAN security

Unified wired and wireless networks

Enterprise mobility

Enhanced productivity and collaboration


Wireless LAN controllers

Autonomous AP Centralized
WLAN architecture
LWAPP
CAPWAP
Access Point Modes

Hybrid Remote
Local Mode Monitor
Edge AP

Rogue Detector Sniffer Bridge


EAP-TLS

PEAP

EAP-TTLS

LEAP
WLAN
EAP-FAST
Authentication Options
WLAN Controller Components

WLANs Interfaces Ports


WLC Interface Types

Management Service-port AP Manager


Interface Interface Interface

Dynamic Interface Virtual Interface


Some WLC Controller Platforms
Platform Number of supported AP

CTVM virtual controller 200


Cisco 2500 series wLC 75
Cisco WLC for ISR G2 200
Catalyst 3850 WLC 50
WiSM WLC module 1000
Cisco 5508 WLC 500
Cisco 5520 WLC 1500
Cisco 8540 WLC 6000
Client A: MAC, IP Address, Access Point, QoS, Security

Controller-1 Data Traffic Bridge


Client Database Controller-1 onto VLAN x

LWAPP Tunnel

Access Access
Point 1 Point 2

Roaming Options Client A Roams from


Intracontroller roaming AP1 to AP2
Controller-1 Controller-2
Client Database Client Database
Client Entry
Client A: MAC, IP Client A: MAC, IP
Moved to New
Address, Access Point, Address, Access Point,
Controller
QoS, Security, … QoS, Security, …

Data Traffic VLAN x Data Traffic


Bridged Controller-1 Controller-2 Bridged
from/to Mobility Message Exchange from/to
VLAN x VLAN x

LWAPP Tunnel LWAPP Tunnel

Access Access
Point 1 Point 2

Roaming Options Client A Roams from


Intercontroller roaming AP1 to AP2
Controller-1 Controller-2
Client Database Client Database
Client Entry
Client A: MAC, IP Moved to New Client A: MAC, IP
Address, Access Point, Controller Address, Access Point,
QoS, Security, Anchor QoS, Security, Foreign
Data Traffic Data Traffic
Bridged Bridged
from/to Mobility Message Exchange from/to
VLAN x VLAN x

Controller-1 Ethernet-over-IP (EtherIP) Tunnel Controller-2

LWAPP Tunnel LWAPP Tunnel

Access Access
Point 1 Point 2

Roaming Options
Client A Roams from
Layer 3 intercontroller AP1 to AP2
Roaming
WLAN Design: Controller Redundancy

Deterministic
Predictability
Dynamic
Stability Easy to deploy
Flexibility Dynamic load balancing
Faster failover
Radio resource management
Dynamic channel assignment

Radio Interference detection and avoidance

Management Dynamic transmit power control


Coverage hole detection and correction
Client and network load balancing
RF groups
Cluster of WLC devices
Coordinate
- Send out neighbor messages
- Validate messages
- Create master RF group leader
RF Site Surveys
Define requirements

Obtain diagram of facility

Visual inspection

Identify heavy usage areas

Determine preliminary locations

Use an AP to survey location

Log signal readings and document findings

Report to customer
Wireless Mesh Networks

Wireless control system Wireless LAN controller

Rooftop AP Mesh access point


Campus Design Considerations

Number of APs Placement of APs Power for APs

Placement
Number of WLCs
of WLCs
Local MAC
REAP

Branch H-REAP

Office Controller options


- CTVM virtual controller
Design
- WLC in ISR
- 3650 WLC
- 2500 WLC
802.3af
802.3at
Power Over Higher bandwidth standards might
Ethernet require more power at the AP
Don’t underestimate your network
switch and its capacity for PoE
QoS and Wireless: 802.1p & 802.1e
Access Point QoS Translation AVVID IEEE
AVVID IP DSCP QoS Profile
Values AVVID Traffic Type 802.1p 802.11e UP
Network control 56 (CS7) Platinum 7 7
Inter-network control (CAPWAP) 48 (CS6) Platinum 6 7
control, 802.11 management)
Voice 46 (EF) Platinum 5 6
Interactive Video 34 (AF41) Gold 4 5
Streaming Video 32 (CS4) Gold 4 5
Mission Critical 26 (AF31) Gold 3 4
Call Signaling 24 (CS3) Gold 3 4
Transactional 18 (AF21) Silver 2 3
Network Management 16 (CS2) Silver 2 3
Bulk Data 10 (AF11) Bronze 1 2
Best Effort 0 (BE) Silver 0 0
Scavenger 8 (CS1) Bronze 0 1
Summary of WLAN Design

RF site survey

Guest services supported in Cisco Unified


Wireless network

Outdoor WLAN supported using outdoor AP


and mesh network

Campus networks supported with LAP and WLC

Each AP <30 data devices per WLAN SSID

Separate SSID for voice devices <8 calls per AP


Wireless basics
Wireless security
Summary
WLC architectures
- Authentication
- Components

Roaming
Site surveys
Branch designs

You might also like