WLAN-ap上线.docx_第1页
WLAN-ap上线.docx_第2页
WLAN-ap上线.docx_第3页
WLAN-ap上线.docx_第4页
WLAN-ap上线.docx_第5页
已阅读5页,还剩5页未读 继续免费阅读

下载本文档

版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领

文档简介

WLAN 二层组网ap上线 一 项目需求采用集中式网络架构,一台AC控制三台AP,发射无线射频信号,使接入端可连接WLAN上网二 WLAN地址规划三 WLAN数据规划表配置项AP1数据AP2数据AP3数据WLAN服务Wap2加密 wap2加密Password:987654321Password:12345678Wap2加密Password:ccie1234AP域AP1: 10AP2:20AP3:30服务集Name:huawei1SSID : guoWLAN虚接口:wlan-ess 0数据转发模式:直接转发Name:huawei2SSID : yanWLAN虚接口:wlan-ess 1数据转发模式:直接转发Name:huawei2SSID : pengWLAN虚接口:wlan-ess 3数据转发模式:直接转发Wlan用户vlanAP1: VLAN 10192.168.1.0/24AP2: VLAN 20192.168.2.0/24AP3: VLAN 30192.168.3.0/24VLANs on the swietchVlan 10/20/30/40AC carrier IDAC/IDOther/1AC管理IP地址Vlanif 40:接口地址:192.168.4.254 /24AP的IP地址池192.168.4.1-192.168.4.253/24AP网关192.168.4.254/24 (ip address of the AC)DHCP服务器AC 下发DHCP地址池三项目拓扑图四 实施步骤WLAN集中式网络架构,只需配置AC(管理控制设备)就可以达到下发无线射频信号的目的。AC6005vlan baAC6005vlan batch 10 20 30 40创建所需VLANInfo: This operation may take a few seconds. Please wait for a moment.done. AC6005dhcp enable开启DHCP服务 Info: The operation may take a few seconds. Please wait for a moment.done.AC6005int vlan 10AC6005-Vlanif10ip add 192.168.1.254 24 AC6005-Vlanif10dhcp select interface进入VLAN10,添加网关地址,dhcp通过接口下放地址,添加dns域名解析 AC6005-Vlanif10dhcp server dns-list 202.106.0.20AC6005int vlan 20 AC6005-Vlanif20ip add 192.168.2.254 24 AC6005-Vlanif20dhcp select interface进入VLAN20,添加网关地址,dhcp通过接口下放地址,添加dns域名解析 AC6005-Vlanif20dhcp server dns-list 202.106.0.20AC6005-Vlanif20qAC6005int vlan 30AC6005-Vlanif30ip add 192.168.3.254 24 AC6005-Vlanif30dhcp se进入VLAN30,添加网关地址,dhcp通过接口下放地址,添加dns域名解析AC6005-Vlanif30dhcp select interface AC6005-Vlanif30dhcp server dns-list 202.106.0.20AC6005int vlan 40AC6005-Vlanif40ip add 192.168.4.254 24进入VLAN40,添加网关地址,dhcp通过接口下放地址,添加dns域名解析 AC6005-Vlanif40dhcp select interface AC6005-Vlanif40dhcp server dns-list 202.106.0.20AC6005int g0/0/1AC6005-GigabitEthernet0/0/1port link-type trunk AC6005-GigabitEthernet0/0/1port trunk pvid vlan 40Ac与ap间配置干道模式,修改主VLAN1为VLAN40 允许所有VLAN通过AC6005-GigabitEthernet0/0/1port trunk allow-pass vlan 10 20 30 40 AC6005-GigabitEthernet0/0/1undo shutdown Info: Interface GigabitEthernet0/0/1 is not shutdown.AC6005int g0/0/2AC6005-GigabitEthernet0/0/2port link-type trunk AC6005-GigabitEthernet0/0/2port trunk pvid vlan 40Ac与ap间配置干道模式,修改主VLAN1为VLAN40 允许所有VLAN通过 AC6005-GigabitEthernet0/0/2port trunk allow-pass vlan 10 20 30 40AC6005-GigabitEthernet0/0/2undo shutdown Info: Interface GigabitEthernet0/0/2 is not shutdownAC6005int g0/0/3AC6005-GigabitEthernet0/0/3port link-type trunk AC6005-GigabitEthernet0/0/3port trunk pvid vlan 40Ac与ap间配置干道模式,修改主VLAN1为VLAN40 允许所有VLAN通过 AC6005-GigabitEthernet0/0/3port trunk allow-pass vlan 10 20 30 40AC6005wlanAC6005-wlan-viewwlan ac source interface vlan 40WLAN模式下,设置AC管理VLAN为VLAN40AC6005int Wlan-Ess 0配置第一个发射射频信号的虚拟接口,接口开启hybrid模式AC6005-Wlan-Ess0port hybrid untagged vlan 10AC6005-Wlan-Ess0qAC6005int Wlan-Ess 1配置第二个发射射频信号的虚拟接口,接口开启hybrid模式AC6005-Wlan-Ess1port hybrid untagged vlan 20AC6005-Wlan-Ess1qAC6005int Wlan-Ess 2配置第三个发射射频信号的虚拟接口,接口开启hybrid模式AC6005-Wlan-Ess2port hybrid untagged vlan 30AC6005dis unauthorized-ap record查看未通过认证的AP列表 Unauthorized AP record: Total number: 3 - AP type: AP6010DN-AGN AP sn: 210235448310B94BF941 AP mac address: 00e0-fc97-6f60 AP ip address: 192.168.4.251 Record time: 2016-03-30 12:43:12 - AP type: AP6010DN-AGN AP sn: 210235448310A656DE63 AP mac address: 00e0-fca9-5780 AP ip address: 192.168.4.252 Record time: 2016-03-30 12:42:51 - AP type: AP6010DN-AGN AP sn: 21023544831074452943 AP mac address: 00e0-fc51-49a0 AP ip address: 192.168.4.253 Record time: 2016-03-30 12:42:49 -AC6005AC6005wlanAC6005-wlan-viewap id 0 type-id 19 mac 00e0-fc97-6f60AC6005-wlan-ap-0qAC6005-wlan-viewap id 1 type-id 19 mac 00e0-fca9-5780手动添加三个未通过认证的ap,通过绑定它们各自的mac地址,使其与ac关联AC6005-wlan-ap-1qAC6005-wlan-viewap id 2 type-id 19 mac 00e0-fc51-49a0AC6005-wlan-viewdis ap all All AP information(Normal-3,UnNormal-0): - AP AP AP Profile AP AP /Region ID Type MAC ID State Sysname - 0 AP6010DN-AGN 00e0-fc97-6f60 0/0 normal ap-0 1 AP6010DN-AGN 00e0-fca9-5780 0/0 normal查看所有ap 都已关联 ap-1 2 AP6010DN-AGN 00e0-fc51-49a0 0/0 normal ap-2 - Total number: 3AC6005-wlan-viewwmm-profile name huawei id 0创建多媒体模板AC6005-wlan-wmm-prof-huaweiqAC6005-wlan-viewtraffic-profile name huawei id 0创建流量模板AC6005-wlan-traffic-prof-huaweiqAC6005-wlan-viewsecAC6005-wlan-viewsecurity-profile naAC6005-wlan-viewsecurity-profile name huawei id 0创建第一个安全模板AC6005-wlan-sec-prof-huaweiseAC6005-wlan-sec-prof-huaweisecurity-policy wpa2在安全模板内添加wpa2认证AC6005-wlan-sec-prof-huaweiwpa2 authentication-method psk pass-phrase cipher 12345678 enAC6005-wlan-sec-prof-huaweiwpa2 authentication-method psk pass-phrase cipher 12345678 encryption-method cAC6005-wlan-sec-prof-huaweiwpa2 authentication-method psk pass-phrase cipher 12345678 encryption-method ccmp设置密文认证方式,密码设置为12345678 Info: Password has been set successfully, but is not safe. It should contain two or more kinds of lowercase, capital, number and other character.AC6005-wlan-sec-prof-huaweiAC6005-wlan-viewservice-set name ap1 id 0创建ap1 的基础服务集AC6005-wlan-service-set-ap1wlAC6005-wlan-service-set-ap1wlan-ess 0指定ap1发射射频信号的虚拟口AC6005-wlan-service-set-ap1ssid guo设置ssid为guo AC6005-wlan-service-set-ap1trafAC6005-wlan-service-set-ap1traffic-filter关联流量模板AC6005-wlan-service-set-ap1traffic-profile id 0AC6005-wlan-service-set-ap1secAC6005-wlan-service-set-ap1security-profile id 0关联第一个安全模板AC6005-wlan-service-set-ap1qAC6005-wlan-viewsecurity-profile name huawei1 id 1创建第二个安全模板AC6005-wlan-sec-prof-huawei1secAC6005-wlan-sec-prof-huawei1security-policy wpa2通过wpa2认证AC6005-wlan-sec-prof-huawei1wpa2 auAC6005-wlan-sec-prof-huawei1wpa2 authentication-method pAC6005-wlan-sec-prof-huawei1wpa2 authentication-method psk paAC6005-wlan-sec-prof-huawei1wpa2 authentication-method psk pass-phrase ciAC6005-wlan-sec-prof-huawei1wpa2 authentication-method psk pass-phrase cipher 987654321 en通过wpa2 认证,设置密码为987654321AC6005-wlan-sec-prof-huawei1wpa2 authentication-method psk pass-phrase cipher 987654321 encryption-method cAC6005-wlan-sec-prof-huawei1wpa2 authentication-method psk pass-phrase cipher 987654321 encryption-method ccmp Info: Password has been set successfully, but is not safe. It should contain two or more kinds of lowercase, capital, number and other character.AC6005-wlan-viewservice-set name ap2 id 1创建ap2 的基础服务集AC6005-wlan-service-set-ap2wlAC6005-wlan-service-set-ap2wlan-ess 1设置发射射频信号虚拟口AC6005-wlan-service-set-ap2ssiAC6005-wlan-service-set-ap2ssid yan创建ssid名称为yanAC6005-wlan-service-set-ap2secAC6005-wlan-service-set-ap2security-profile id 1关联第二个安全模板AC6005-wlan-service-set-ap2traffic-profile id 0关联流量模板AC6005-wlan-service-set-ap2qAC6005-wlan-viewsecurity-profile name huawei2 id 2创建第三个安全模板AC6005-wlan-sec-prof-huawei2secAC6005-wlan-sec-prof-huawei2security-policy wpa2使用wpa2加密认证AC6005-wlan-sec-prof-huawei2wpa2 authentication-method psk pass-phrase cipher ccie1234 enAC6005-wlan-sec-prof-huawei2wpa2 authentication-method psk pass-phrase cipher ccie1234 encryption-method ccAC6005-wlan-sec-prof-huawei2wpa2 authentication-method psk pass-phrase cipher ccie1234 encryption-method ccmp采用密文方式设置密码为ccie1234 AC6005-wlan-sec-prof-huawei2AC6005-wlan-sec-prof-huawei2qAC6005-wlan-viewservice-set name ap3 id 2建立ap3 的基础服务集AC6005-wlan-service-set-ap3wlaAC6005-wlan-service-set-ap3wlan-ess 2设置发射射频信号的虚拟口AC6005-wlan-service-set-ap3ssiAC6005-wlan-service-set-ap3ssid peng设置ssid名称为pengAC6005-wlan-service-set-ap3secAC6005-wlan-service-set-ap3security-profile id 2关联第三个安全模板AC6005-wlan-service-set-ap3trafAC6005-wlan-service-set-ap3traffic-filterAC6005-wlan-service-set-ap3traffic-profile id 0关联流量模板AC6005-wlan-service-set-ap3qAC6005-wlan-viewradio-profile name huawei id 0创建射频模板AC6005-wlan-radio-prof-huaweiwmmAC6005-wlan-radio-prof-huaweiwmm-profile id 0射频模板关联多媒体模板AC6005-wlan-radio-prof-huaweiqAC6005-wlan-viewap 0 radio 0第一个ap使用2.4G频段AC6005-wlan-radio-0/0radio-profile id 0关联射频模板AC6005-wlan-radio-0/0service-set id 0 wlAC6005-wlan-radio-0/0service-set id 0 wlan 1第一个服务集名称为WLAN1AC6005-wlan-radio-0/0serAC6005-wlan-radio-0/0service-set id 1 wlAC6005-wlan-radio-0/0service-set id 1 wlan 2第二个服务集名称为WLAN2AC6005-wlan-radio-0/0serAC6005-wlan-radio-0/0service-set id 2 wlAC6005-wlan-radio-0/0service-set id 2 wlan 3第三个服务集名称为WLAN3AC6005-wlan-radio-0/0chanAC6005-wlan-radio-0/0channel 20AC6005-wlan-radio-0/0channel 20mhz 1更改信道,采取蜂窝式部署方式,防止相同频段之间产生干扰,设置第一个ap为1信道AC6005-wlan-viewap 1 radio 0第二个ap 采用2.4G频段AC6005-wlan-radio-1/0radio-pAC6005-wlan-radio-1/0radio-profile id 0关联射频模板 Warning: Modify the Radio type may cause some parameters of Radio resume default value, are you sure to continue?Y/N:yAC6005-wlan-radio-1/0serAC6005-wlan-radio-1/0service-set id 0 wlAC6005-wlan-radio-1/0service-set id 0 wlan 1AC6005-wlan-radio-1/0serAC6005-wlan-radio-1/0service-set id 1 wlAC6005-wlan-radio-1/0ser

温馨提示

  • 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
  • 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
  • 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
  • 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
  • 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
  • 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
  • 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。

评论

0/150

提交评论