AP 1252 Trunking Multiple VLANs

Hey guys, I'm trying to set up a standalone access point (1252) with a few vlans and a trunk going to a 2960 switch.
I've also got my ssids attached to vlans, a radio sub-interface and gig sub-interface for each vlan, and a trunk going from the gigabit interface on the AP to my 2960
My problem is that I have no connectivity between associated clients on the AP, or between the AP (BVI1 interface) and a hard wired client on the 2960.
Here are the relevent portions of my running-config
dot11 vlan-name Houston vlan 11
dot11 vlan-name IT vlan 7
dot11 vlan-name nuaWireless vlan 70
dot11 ssid Houston
   vlan 11
   authentication open
   authentication key-management wpa version 1
   mbssid guest-mode
   wpa-psk ascii 7 0208115A59081A201E
dot11 ssid IT
   vlan 7
   authentication open
   authentication key-management wpa version 1
   guest-mode
   mbssid guest-mode
   wpa-psk ascii 7 0208115A58081A201F
dot11 ssid nuaWireless
   vlan 70
   authentication open
   authentication key-management wpa version 1
   mbssid guest-mode
   wpa-psk ascii 7 0701344D1F070C0446
interface Dot11Radio0
no ip address
no ip route-cache
encryption mode ciphers tkip
encryption vlan 70 mode ciphers tkip
encryption vlan 11 mode ciphers tkip
encryption vlan 7 mode ciphers tkip
ssid Houston
ssid IT
ssid nuaWireless
mbssid
station-role root
interface Dot11Radio0.1
encapsulation dot1Q 1 native
no ip route-cache
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
bridge-group 1 spanning-disabled
interface Dot11Radio0.7
encapsulation dot1Q 7
no ip route-cache
bridge-group 7
bridge-group 7 subscriber-loop-control
bridge-group 7 block-unknown-source
no bridge-group 7 source-learning
no bridge-group 7 unicast-flooding
bridge-group 7 spanning-disabled
interface Dot11Radio0.11
encapsulation dot1Q 11
no ip route-cache
bridge-group 11
bridge-group 11 subscriber-loop-control
bridge-group 11 block-unknown-source
no bridge-group 11 source-learning
no bridge-group 11 unicast-flooding
bridge-group 11 spanning-disabled
interface Dot11Radio0.70
encapsulation dot1Q 70
no ip route-cache
bridge-group 70
bridge-group 70 subscriber-loop-control
bridge-group 70 block-unknown-source
no bridge-group 70 source-learning
no bridge-group 70 unicast-flooding
bridge-group 70 spanning-disabled
interface GigabitEthernet0
no ip address
no ip route-cache
duplex auto
speed auto
interface GigabitEthernet0.1
encapsulation dot1Q 1 native
no ip route-cache
bridge-group 1
no bridge-group 1 source-learning
bridge-group 1 spanning-disabled
interface GigabitEthernet0.7
encapsulation dot1Q 7
no ip route-cache
bridge-group 7
no bridge-group 7 source-learning
bridge-group 7 spanning-disabled
interface GigabitEthernet0.11
encapsulation dot1Q 11
no ip route-cache
bridge-group 11
no bridge-group 11 source-learning
bridge-group 11 spanning-disabled
interface GigabitEthernet0.70
encapsulation dot1Q 70
no ip route-cache
bridge-group 70
no bridge-group 70 source-learning
bridge-group 70 spanning-disabled
interface BVI1
ip address 10.7.1.200 255.255.0.0
no ip route-cache
Any help would be greatly appreciated.

The section of the config you posted looks fine.  I assume that 10.7.1.200 is in the subnet for VLAN1?  What does the switchport config look like?

Similar Messages

  • Multiple Vlans on a single port.

    hi,
    Can i configure single port with multiple vlans on L2 2950 switch, if yes then what are the commands.
    Thanks,
    Vishal D.

    Paresh,
    i think i have not quoted the question properly.
    see by doing 'switchport mode trunk' it will flow the traffic of all vlan right.
    but if i want to give access of selected vlans then what to do,
    i have tried the command 'switchport trunk allowed vlan 1,2,3'
    do i have to give encapsulation on that port, but on 2950 encap cannot be configured.
    now can u tell me wht is possible to do.
    Thanks for ur reply.
    Vishal.

  • Multiple vlans configuration issue with RV016 router and SG 300-10MP witch

    Hi,
    I have to configure multiple vlans served with a unique DCHP server . As first step, I just will The DHCP server to serve 2 vlans. The following is the hardware and configuration that I implemented :
    Router (RV016 10/100 16-Port VPN Router) as gateway mode:
    IP : 172.16.0.1/24
    DHCP Server :
    IP : 172.16.0.2/24 GW: 172.16.0.1
    2 subnets :
    172.16.1.0/24 GW: 172.16.1.1 to serve vlan 1
    172.16.2.0/24 GW:172.16.2.1 to serve vlan 2
    Switch (SG 300-10MP 10-Port Gigabit PoE Managed Switch) as layer 3 mode:
    IP 172.16.0.254 (vlan 8 default)
    Vlan 1 : 172.16.1.1
    Vlan 2 : 172.16.2.1
    1 device connected on each vlan
    a workstation on the vlan 1
    a laptop on the vlan 2
    In this scenario (see the attached pdf file) the DHCP server is connected on a router, hosts on vlans dont receive any IP address.
    But If I connect the DHCP server on a trunked switch port and adapt the DHCP server gateway 172.16.0.1 to 172.16.0.254, hosts receive ip address properly.
    I have to connect the DHCP server directly to the router. How can I do that, what is wrong in the configuration ?
    I hope the explanations are clear enough and my English too
    Any help will be highly appreciated,
    Zoubeir

    Hi Eric, the small business group doesn't support the ASA config, but  I can help with the switch.
    A couple things I notice in your description-
    48 port (192.168.1.254) and the other 24P (192.168.1.253)  we have a  second vlan 20 set up on the 24P switch (192.168.2.253)  we have ports  1-12 set for vlan20 (untagged and trunk), the remaining ports on on the  default vlan 1.
    The connection between the switches, is it 1u, 2t?
    The link between the switches should be 1u, 2t, the switches support the trunking and vlan tagging, meaning all communication will work fine.
    We have the 24p and 48p switches connect using GE1 and GE1.  We are unable to ping a device on vlan 20 ( on the 24p switch
    The 24p switch should be in layer 2 mode, if you have the 48 port l3 switch upstream. Additionally, you need to have the default gateway set on the 24p switch.
    We have a static route set on the 24p switch (0.0.0.0 192.168.1.0). 
    Between the switches, it shouldn't require any static routes, assuming you correctly trunk / tag your ge1 ports, with both switches operating in l3, the ip route table dynamically builds the connected routes, therefore a static route is redundant.
    -Tom
    Please rate helpful posts

  • AP1300 Bridging Multiple Vlans with Dot1q

    I have a pair of AIR-BR1310G-E-K9 to do ptp bridging. Topology is like this:
    host-switch-rootAP---nonRootAP-switch-host
    We have multiple vlans and have followed this doco:
    <http://www.cisco.com/en/US/docs/wireless/access_point/1300/12.3_7_JA/configuration/guide/b37vlan.html>
    The native vlan is all good and can ping across end-to-end. However, the when I attach a host to the switch in another vlan i.e. user vlan - there is no connectivity. Essentially, we want to dot1q over the ptp bridge setup.
    running version:
    c1310-k9w7-mx.124-10b.JA1
    appreciate any input.
    Ajaz

    yes. standard trunk config on both switches:
    5SL_SWITCH#srif 0/24
    Building configuration...
    Current configuration : 186 bytes
    interface FastEthernet0/24
    switchport trunk encapsulation dot1q
    switchport trunk allowed vlan 1,100
    switchport mode trunk
    switchport nonegotiate
    spanning-tree portfast trunk
    end
    5SL_SWITCH#show interfaces trunk
    Port Mode Encapsulation Status Native vlan
    Fa0/24 on 802.1q trunking 1
    Port Vlans allowed on trunk
    Fa0/24 1,100
    Port Vlans allowed and active in management domain
    Fa0/24 1,100
    Port Vlans in spanning tree forwarding state and not pruned
    Fa0/24 1,100
    5SL_SWITCH#
    11SL_SWITCH#srif 0/24
    Building configuration...
    Current configuration : 186 bytes
    interface FastEthernet0/24
    switchport trunk encapsulation dot1q
    switchport trunk allowed vlan 1,100
    switchport mode trunk
    switchport nonegotiate
    spanning-tree portfast trunk
    end
    11SL_SWITCH#show interfaces trunk
    Port Mode Encapsulation Status Native vlan
    Fa0/24 on 802.1q trunking 1
    Port Vlans allowed on trunk
    Fa0/24 1,100
    Port Vlans allowed and active in management domain
    Fa0/24 1,100
    Port Vlans in spanning tree forwarding state and not pruned
    Fa0/24 1,100
    11SL_SWITCH#
    furthermore the vlans exist in the db and when i trunk between the switches - I can ping the SVI's.
    Do you want me to post the AP config?

  • Creating multiple vlans on a 877

    Hi,
    I want to create a default, voice and access vlan on a 877, but just one vlan comes up. On the other two vlan inetrfaces is the protocol down. I guess this has something to do with bridging. I've tried that already, but I can't find documentation about this. Can someone tell me how to bring up the other two vlan interfaces?

    You need a trunk in case you are passing multiple VLANs on the port. However, in your configuration you do not need a trunk because each port is assigned to one VLAN.
    IN order for all VLANs to go UP all you interface should be Physically and Porotcol UP. Check that all your Fast Ethernet Interfaces are UP.
    Let me know how it goes,

  • L2 Integration of Multiple VLANs

    I have reviewed the ACI L2 and L3 Connectivity White Paper.  Using the instructions,  I have successfully integrated an a VLAN from from the outside into ACI.  I used the Extend BD approach.   In looking at the instructions,  it appears that creating an External Bridge Domain is required for each L2 VLAN from the outside.   Is there a way to use the same physical port (VLAN trunk port from downstream switch) to bring in multiple VLANs in to ACI.
    I would like to use only one port for all VLANs to be imported.
    Is this possible ?   If so,  what would be the configuration steps ?
    thanks,

    The question that should be asked is what are you trying to accomplish?
    1. Either you have external endpoints that need to be members of the same EPG as fabric hosted endpoints
    or
    2. You have external endpoints that you need to apply policy between everything else inside the fabric.
    If this is the first case what you should be extending the EPG, not the bridge domain.  By extending the Bridge Domain you're essentially mapping all the external traffic for that BD into one VLAN which will be represented by an External EPG you'd create on the APIC.  This is useful in the case where you have all external users coming into the fabric you want to treat together using contracts between external users and internal EPGs. 
    Ex.
    External Users <C> Web_EPG <C> App_EPG <C> DB_EPG
    C = Contract
    If it's the second case above, and you have end points both inside the fabric and external that need to belong to the same EPG and have the same policies applied endpoints internal or external to ACI, you'll want to extend the EPG as detailed in the first method of the L2/L3 Connectivity guide.
    Regards,
    Robert

  • Multiple VLAN traffic on one switchport

    Good Morning all,
    I would like some help with a switchport config on one of my VMware clusters.
    Currently the live vDS sits with the below config on a Cisco 4500
    switchport trunk encapsulation dot1q
     switchport trunk native vlan 8
     switchport mode trunk
     spanning-tree portfast trunk
     spanning-tree bpduguard enable
    I require the hots to be able to communicate on multiple VLANs, it sits on VLAN 8 but needs to communicate on 200 and 201 and 8.
    Any help would be greatly appreciated.
    Thanks,
    Hassan.

    Hassan
    The switch port that you show us is correctly configured as a trunk. You have not shown us whether these three vlans are correctly configured on the switch and active on the interface. The output of show interface trunk would be helpful in determining this. If the switch appears to be correctly configured then the other part of the question is whether your VMware cluster is correctly configured to use the three vlans on that interface.
    HTH
    Rick

  • Multiple SSID With Multiple VLANs configuration on Cisco Aironet APs: Assotiated clients cannot obtain IP addresses

    Hi Surendra,
    I was just given this task to see how i can configure a second ssid for guest access in our environment.
    this is our network setup prior to this request: Internet----Firewall (not ASA)---ce520---C1131AG and CME router is also connecting to the ce520 switch. we only have two vlans: one for voice and two for data.
    Presently, there is no vlan configured on the AP because it on broadcasting ont ssid and wireless users gets IP from a windows DHCP server on the LAN. the configuration on the ce520 switch port for the AP and other switches say access vlan is the DATA vlan which automatically becomes the native vlan for all trunk port connecting the AP and other Stiches to the network.
    Now with this new requirement, i have made my research and i have configured the AP to broadcast both the production and the guest Vlans. The two vlans are 20-DATA and 60-Guest. I made the DATA vlan on the AP the native vlan since the poe switch is using the DATA vlan as native on the trunk ports. I configured the firewall to serve as DHCP server for the guest ssid and i have added the ip helper-address on the guest vlan interface on all switches while the windows server remains the dhcp server for the production DATA Vlan. I have confirmed that the AP, switches can ping the default gateway of the guest dhcp server which is another interface on the firewall. I can now see and connect to all broadcasted ssids but the problem is I am not getting IP addresses from both the production dhcp server and guest dhcp server when i connected to the ssid one at a time.
    My AP config is attached below.
    Please tell me what am I doing wrong.
    Do i need to redesign the whole network to have a native vlan other nthan the data vlan?
    Does the access point need to be aware of the voice vlan?
    Do the native Vlan on the AP need to be in Bridge-group 1 or can i leave it in bridge-group 20?
    I will greatly appreciate your urgent response.
    Thanks in advanced.

    Hi,
    As far as i know we dont set the ip helper address on the radio interface. It should be on the L3 interface of corresposding VLANs i.e.
    int vlan 20
    ip helper-address 192.168.33.xxx
    int vlan 60
    ip helper-address 130.20.1.xxx
    I'm assuming that your using SVI's (int Vlan 20 and int Vlan 60) rahter than physical interfaces. Also hope you have configured switch port as trunk where this AP is connected.
    Modify the AP config as below since you are using data vlan as the native vlan
    interface Dot11Radio0.20
    encapsulation dot1Q 20 native
    interface FastEthernet0.20
    encapsulation dot1Q 20 native
    Ideally your AP fastethernet configuration should looks like below and not sure how you missed this as this comes by default when you have multiple vlans for multiple ssids.
    interface FastEthernet0.20
    encapsulation dot1Q 20 native
    no ip route-cache
    bridge-group 20
    no bridge-group 20 source-learning
    bridge-group 20 spanning-disabled
    interface FastEthernet0.60
    encapsulation dot1Q 60
    no ip route-cache
    bridge-group 60
    no bridge-group 60 source-learning
    bridge-group 60 spanning-disabled
    Hope this helps.
    Regards
    Najaf

  • How to create a multiple VLAN or xenbr in oracle vm

    hi,
    i have a server which has a 1 nic card.hence having 1 xenbr i.e.xenbr0
    now my requriement is to create multiple vlan or xenbr into the system.so instead of 1 xenbr i can have many xenbr's & all my guest vm's are in differernt subnets.
    i have trunked the network port from switch side
    i refered below url but still not working..
    http://wiki.oracle.com/page/Oracle+VM+Server+Configuration-bondedand+trunked+network+interfaces
    please help...

    To create a new brigde and use it in your hosts you can try this
    brctl addbr xenbrX
    ip link set xenbrX up
    brctl addif xenbrX ethY
    ifup ethY
    you have created a new bridge with the number "X" on interface "Y" ... now all you have to do is configure you guests to use this new configuration:
    vif = ['
    type=ioemu,
    bridge=xenbrX'
    Hope this helps! ;)
    Edited by: PilotRO on 09.10.2009 00:57
    Edited by: PilotRO on 09.10.2009 00:57
    Edited by: PilotRO on 09.10.2009 00:58

  • 3750 - QinQ Multiple VLANS - Vlan mapping

    Hi All,
    I have a client that uses vlans that already exist on our network (vlan 1,2,3,99,100,200,250...) nethier of us are in a position to change the numbering at this stage.
    3750 stacks are on the client side and on my side
    what is the best way to configure QinQ or vlan mapping to connect their network to ours without a major outage?
    hypothetically, is there a way to have a Ether Channel and trunk all the client vlans to our VMware infrastructure
    * map vlan 99 on the client side to vlan 299 on my side
    * map vlan 100 on the client side to vlan 298 on my side
    * map vlan 200 on the client side to vlan 297 on my side
    Thank you in advance
    I have googled etc and found alot of info on QinQ for access ports / single vlans but not for multiple vlans / trunks

    Janene
    The vlan numbering may be the same but what about the IP subnets used per vlan.
    If the IP subnets are different why not just route between the two switch stacks then the vlans are not visible to each other.
    If you need the throughput you could always use L3 etherchannel for additional links.
    You could use static routes between each stack or run a dynamic routing protocol to exchange the routes (dependant on the feature sets on your stacks).
    Further advantages would be with L3 each site contains it's own broadcasts and there would be no outage for this.
    Obviously if the IP subnets are the same then please ignore the above.
    Jon

  • Onplus with multiple VLAN

    Hi,
    i am trying to set the network agent N100 on a trunk port on a switch (2960) without success regarding dhcp???
    The problem is that the agent is not getting any ip address from a dhcp pool from a Cisco 1841 router acting as DHCP server. The topology is like this:
    Router---------------------------------------------------------------------Switch--------------------------------------------------------------------On100
             fa0/0
             fa0/0.10
             fa0/0.20
    The router is on the stick with subinterfaces. Ports connecting the router and On100 on the switch are 802.1q trunk ports. I also made a simulation of this topology on the GNS3 and with wireshark i can see  that dhcp discover are comming inbound fa0/0 but when i type the command:
    R#show ip dhcp server statistics there are no received dhcp discover packets???It's very strange.
    Did any one have experience with multiple vlan topology?
    Thanks

    Delo,
    Take a look at the document link below.  Beginning on page 3 contains a sample configuration.  I would recommend reading the entire document to get your arms around the VLAN discovery functionality.  I can appreciate that when reading some of the documentation it can be confusing and lead you to believe that it can discover additional networks using Layer 3 routing.  That said, the one thing to keep in consideration is that OnPlus/ON100, other than the Network Scanning functionality, will not traverse Layer 3 boundaries to do additional discovery/monitoring.  You can manually add devices that are only accessible via Layer 3 and select to do some monitoring on those devices however they must be added manually and it will not attempt to access those devices via SSH/Telnet or SNMP.  As such, it won't do functions like backing up configurations.
    OnPlus autodiscovery will only use Layer 2 and that is why you would need the VLAN Trunking with DHCP in each VLAN or to SPAN a switch port.  With VLAN trunking the ON100 will have an IP in the other VLAN and be able to discover devices on that now "local LAN".  With port spanning, the ON100 would discover based on packets it receives.  It can appear a little confusing but as long as  you keep in mind that the ON100 won't discover over a Layer 3, that will help to clarify some of the confusion.
    http://www.cisco.com/en/US/docs/net_mgmt/other_net_mgmt/onplus/application_notes/multivlan/onplus_on100_vlan_discovery_782079601.pdfhttp://www.cisco.com/en/US/docs/net_mgmt/other_net_mgmt/onplus/application_notes/multivlan/onplus_on100_vlan_discovery_782079601.pdf

  • How do I Configure Multiple VLANs on a SG 200-18?

    I am having problems accomplishing these tasks with my new SG 200-18.
    All assistance is appreciated.
    I have a LinkSys WRT54G2 connected to port 1.
    I would like ports 2-8 to be in one VLAN with access to the Internet and to be able to share their printers, hard drives, etc. with other computers on ports 2-8.
    I would like each of ports 9-16 to be on a separate VLAN with access only to the Internet and no other ports on the switch.
    I would like to be able to manage the switch from any of the ports 2-8.
    After I create the VLAN 1009 (see screenshot below), port 9 can browse the Internet and cannot see the other ports on the switch which is correct.
    However, ports 2-8 can no longer access the switch at 192.168.1.20 in order to manage the switch.
    Please see screen shots below.
    Thank you very much in advance.

    Alllan,
    Well first you want to make sure you are running latest firmware 1.1.1.8 I do believe
    Next either console into the switch or you can turn on SSH/Telnet under Web gui (Security••àTCP/UDP services and make sure SSH/Telent is enabled)
    Now we configure the switch via Cli
    We need to enter global configuration mode.
    Configure Terminal
    (next add our vlans)
    Vlan database
    Vlan 10
    Vlan 20
    Vlan 30
    Exit
    (you can run show command to see your vlans)
    do show vlan
    (Now configure the port how you would like)
    Interface GE1
    Switchport mode access   (this is making Gigabit port 1 an access port)
    Switchport access vlan 20 (this command is changing access port vlan from 1 to 20)
    (less configure a trunk port)
    Interface GE2
    Switchport mode trunk (this makes port 2 for trunking)
    (Now less add our Vlans)
    Switchport trunk native vlan 1
    Switchport trunk allowed vlan add 10,20,30
    Exit global configuration
    (Use this command to copy your settings to startup)
    Copy running-config startup-config
    (Some screen shots attached)
    I see you have a WRT54G router which i don't think support vlans unless you have 3rd party OS installed.
    So currently is the SG300 swtich operating in layer 2 or layer 3 , guessing this is why you choose to move up to 300 series switch?
    If the switch is not in layer 3 mode but in layer2 when setting it to layer3 the switch will default all pervious settings.
    If the switch is set in layer 3 mode you might have forgot your default route
    (Command setting default route)
    configure terminal
    ip route 0.0.0.0 0.0.0.0 192.168.1.1  (192.168.1.1 being address of your WRT54G)
    Now you would need to set up ACL's to deny and allow what traffic you wanted to filter on the SG300
    Also reading your post we would need you to call into support center SBSC @ 1-866-606-1866
    This way we could get a better idea of your current configuration and assist with fixing or finding a solution for you.
    you have 1 year phone support with this product
    Thanks,
    Jasbryan

  • DHCP Setup across multiple VLANs on RV325 - DHCP Server only working on VLAN 1

    I have multiple VLAN subnets defined on my RV325 - when I try and utilize a DHCP Server on each VLAN, it only seems to be issuing IP Addresses to clients on VLAN ID 1.  When I first set this up months ago, I thought I had tested it providing IP Addresses via the other subnets.  Now that I am trying to do so, it isn't working "as expected".  Example - I am using VLAN 25 as the GuestWireless subnet utilizing a separate 802.11n WAP that is set to Bridge connections to the IP Address of the VLAN interface.  Devices are able to connect to the WAP, but end up with a self-assigned IP Address 169.x.x.x address.  There has to be an easy fix to this, but I seem to be "stuck" figuring out what it is…pointers/redirects appreciated.  Thanks!

    Thanks - I've already reviewed that information before I posted.  I've been working with DHCP since the mid-90's, so I'm comfortable with the settings/configuration I need to leverage to make this work via other means using various Network-based OSes.
    I'm wondering if there are other options in configuring this device that can impact the ability to dynamically serve IP addresses on a VLAN/subnet-by-VLAN/subnet basis.
    As I did more testing, I discovered when I reserved an IP Address via the IP & MAC Binding option within the DHCP Settings, those devices would receive their static reservations and work as expected, so the problem seems to be leveraging the DHCP Pool for devices connecting to VLANs other that VLAN 1.
    Any ideas as to why the DHCP Pool's are "non-functioning" for the other VLANs is greatly appreciated...
    Each VLAN is setup with a separate DHCP Server configuration as shown below:
    VLAN ID = 1 (Default, Inter VLAN Routing = Enabled, LAN1-6 = Untagged, LAN7=Tagged, LAN8=Excluded, LAN9-14 Untagged)
    Device IP Address = 172.16.xxx.1
    Subnet Mask = 255.255.255.0
    DHCP Mode = DHCP Server
    Remote DHCP Server = 0.0.0.0
    Client Lease Time = 1440 min
    Range Start = 172.16.xxx.100
    Range End = 172.16.xxx.199
    DNS Server = Use DNS as Below
    Static DNS 1 = 208.67.222.222
    Static DNS 2 = 208.67.220.220
    WINS Server = 0.0.0.0
    Correctly serving IP Addresses via DHCP (both static and dynamic) to Wired devices & Wireless devices connecting through WAP (set to Bridge)
    VLAN ID = 25 (GuestWireless, Inter VLAN Routing = Disabled, LAN1-LAN7 = Excluded, LAN8 = Untagged, LAN9-14 = Excluded)
    Device IP Address = 172.16.yyy.1
    Subnet Mask = 255.255.255.0
    DHCP Mode = DHCP Server
    Remote DHCP Server = 0.0.0.0
    Client Lease Time = 1440 min
    Range Start = 172.16.yyy.100
    Range End = 172.16.yyy.199
    DNS Server = Use DNS as Below
    Static DNS 1 = 208.67.222.222
    Static DNS 2 = 208.67.220.220
    WINS Server = 0.0.0.0
    NOT serving dynamic IP Addresses via DHCP to Wired devices & Wireless devices connecting through WAP (set to Bridge)
    Static DHCP Reservations setup via IP & MAC Binding settings DO WORK in terms of providing the assigned static IP Address to the client.  Inbound/Outbound traffic to Internet works for devices with Static DHCP Reservations.
    VLAN ID = 100 (Voice, Inter VLAN Routing = Disabled, LAN1-6 Excluded, LAN7 = Untagged, LAN8-14 = Excluded)
    Device IP Address = 192.168.zzz.1
    Subnet Mask = 255.255.255.0
    DHCP Mode = DHCP Server
    Remote DHCP Server = 0.0.0.0
    Client Lease Time = 1440 min
    Range Start = 192.168.zzz.100
    Range End = 192.168.zzz.199
    DNS Server = Use DNS as Below
    Static DNS 1 = 208.67.222.222
    Static DNS 2 = 208.67.220.220
    WINS Server = 0.0.0.0
    NOT serving dynamic IP Addresses via DHCP to Wired devices & Wireless devices connecting through WAP set to Bridge
    Static DHCP Reservations setup via IP & MAC Binding settings DO WORK in terms of providing the assigned static IP Address to the client.  Inbound/Outbound traffic to Internet works for devices with Static DHCP Reservations.

  • Encrypting Aironet 1410 bridge link using multiple VLANs

    I've looked at the documentation available for Aironet 1400 series, and still would like to see a single document showing an example of
    the best encryption/authentication available for bridge links using multiple VLANs.
    As I understand it, 1400 series can support WPA-PSK using AES, which would work for me.  I just can't picture how to integrate chapters 9 and 10 for the 'WEP and WEP Features' + 'Configuring Authentication Types' instructions.
    I'm looking either for an example config, or a step-by-step that did all steps consecutively.
    Thanks

    What doc are you refering to?  If you want to encrypt the link from root bridge to non-root bridge, then WPA/TKIP-PSK is what you should use.  Here is a link to how to setup your link ssid to WPA: http://www.cisco.com/en/US/docs/wireless/bridge/1400/12.2_15_JA/configuration/guide/p15auth.html#wp1044935
    Don't worry about the example they show on the WEP, just use the configuration from the above link for your encryption.
    Configuring a VLAN
    Configuring your bridge to support VLANs is a five-step process:
    1. Create subinterfaces on the radio and Ethernet interfaces.
    2. Enable 802.1q encapsulation on the subinterfaces and assign one subinterface as the native VLAN.
    3. Assign a bridge group to each VLAN.
    4. (Optional) Enable WEP on the native VLAN. <-- Use WPA-PSK
    5. Assign the bridge's SSID to the native VLAN.
    http://www.cisco.com/en/US/docs/wireless/bridge/1400/12.2_15_JA/configuration/guide/p15vlan.html
    Here is an example of vlan 1 (native) will be your management and your wireless link.  vlan 10 & 20 will pass through the link.
    BR# configure terminal
    BR(config)# interface dot11radio0.1
    BR(config-subif)# encapsulation dot1q 1 native
    BR(config-subif)# bridge group 1
    BR(config-subif)# exit
    BR(config)# interface fastEthernet0.1
    BR(config-subif)# encapsulation dot1q 1 native
    BR(config-subif)# bridge group 1
    BR(config)# interface fastEthernet0.10
    BR(config-subif)# encapsulation dot1q 10
    BR(config-subif)# bridge group 10
    BR(config)# interface fastEthernet0.20
    BR(config-subif)# encapsulation dot1q 20
    BR(config-subif)# bridge group 20
    BR(config-subif)# exit
    BR(config)# interface dot11radio0
    BR(config-if)# ssid batman
    BR(config-ssid)# vlan 1
    BR(config-ssid)# infrastructure-ssid
    BR(config-ssid)# end

  • Windows Load Balancing on Multiple VLAN?

    Hi all.  Just wondering if any of you having this same issue as I did.  I've got NLB configured on 2 VM running on Hyper-V.  Each of the VM equiped with 2 NIC.  The NIC for heart beat purpose is configured
    with Static MAC and with the option "Enable Spoofing for MAC Address" enabled.  Another NIC is for LAN communication purose.  Each of the NIC is reside on a different VLAN (VLANx and VLANy).  After I've got the NLB configured,
    with "unicast" mode.  I've noticed I am not able to ping the NLB virtual IP address from any of the clients.  Ping works between the NLB hosts, and is accessible.  Once I've put all the NIC into the same VLAN, NLB works
    fine; I can ping the NLB virtual IP, and test on IIS works good.  My question, does NLB requires all the host to reside in the same VLAN?  If NLB support mulitple VLAN, then how can I configure it to support multiple VLAN (eg: production LAN
    NIC on VLANx, and heart beat NIC on VLANy)?  Thank you.

    Hi,
    It seems that we need to use Multicast mode.
    Configure Network Load Balancing Cluster Operation Mode
    http://technet.microsoft.com/en-us/library/cc731616.aspx
    Hope this helps.
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

Maybe you are looking for

  • Multiple domains names and web sites with only one SLS and one static IP

    I tried to find a post on this topic but I still can't find what needs to be done. SLS is configured for one domain with one web site and it's working well. We will call it domain1.com. Here is the config: Static IP: 69.x.x.x DNS setting under Server

  • FLV video in PDF won't play for Mac user with Reader 9.4.5.

    I recently created a PDF with an embedded FLV file. I'm using Acrobat X Pro, so embedding the file created a Rich Media Annotation (RMA). From what I've read, anyone using Acrobat or Reader version 9 or later should be able to play the file. However,

  • Operating a SG200-08 switch with case removed.

    I am going to be putting an SG200-08 (8 port switch) inside a 2U rackmount chassis. To enhance cooling I thought I would remove the outer case. Are there, or would there be any issues with using the switch with the cover removed? Thanks Glen

  • Validation, Task Flow, Servlet, Pop-up, and a Managed Bean

    Hi, We're trying to display a PDF in a pop-up by calling a Servlet within a JSF page by using a task flow in JDeveloper 11g R2. The relevant JSF snippet: <af:inlineFrame id="if1" shortDesc="Report" source="/pdfservlet" styleClass="AFStretchWidth"></a

  • Error Loading Calendar

    One of my locally created calendars is howing a little ! symbol next to it and I'm getting this message: Error Loading Calendar iCal was unable to load the calendar. The file might be corrupted or temporarly unreadable. You can try again later or res