General problem: WLAN to VLAN forwarding

Hello together,
I try to find a general solution to the following problem:
Cisco WLAN environment, >50 intelligent APs, >300 WLAN User, multiple SSIDs. Behind every SSID is a different VLAN. DHCP enabled on the clients. The users standard of knowledge does not provide the means to configure their WLAN Client. Users are in an active directory.
The objective:
The user must be able to connect to their VLAN without knowing the key of the corresponding SSID.
The momentary solution is an correspondingly hard konfigured WLAN Adapter with RJ45 connector which provides access to the requested SSID / VLAN.
To clarify: WLAN Adapter A -> Access to SSID A / VLAN A
               WLAN Adapter B -> Access to SSID B / VLAN B
               etc.
Now there are users with i.e. iPads without an RJ45 port, who should also be able to connect to their VLANs.
How can I do this?
I thought I could get a running 802.1X network based on a WLC 4402 and controlled APs, but if I enable 802.1X the old hard konfigured WLAN Adapters stop functioning because they do not support that standard. The withdrawal from service of the WLAN Adapters is not an option.
If anyone has suggestions, I would greatly appreciate.
Thanks in advance.

At first: thanks for the responses:
@b.garczynski
What you described was my first intention, but if I understand it right Radius is only possible with 802.1X. But that´s unfortunately not supported by the WLAN adapters.
@stefan.angerer
My "corpus delicti" is the Siemens Gigaset WLAN Repeater 108
http://gigaset.com/at/de/product/GIGASETWLANREPEATER108.html?tab=data
This Adapter does not support 802.1X and just crashes if it is assigned to an WLAN where the .1x standard is running. If it´s disabled, it`s doing its job.
@all
Furthermore the VLAN Association must be safe and flexible, so an Authentification via MAC or similar is also not an option.
Customers can be quite demanding...
Thanks in advance.

Similar Messages

  • Problem in creating Vlan on 3550

    hi,
    I have done stacking between two 3550 siwtches. On one switch already a Vlan is created and network is running. On another switch I have created another Vlan using "int Vlan 79" command and gave an ip address for that VLAN. Enabled routing for this ip address and configured many ports to access this VLAN and connected PCs also. When I give command "sh vlan id 79", the message is "No VLAN is found in database". I have checked the VTP domain mode it was in client mode, then I converted it into server mode, reboot the switch and create Int Vlan again. Result was same. Then just for trying I put command "VLAN 79" in config mode and now everything is running fine. It is showing it in database also.
    My question is when we put "Int Vlan" command, generally it creates the VLAN, then why I need to out VLAN 79 command.
    This is problem related to concept.
    Looking forward for the suggestions.
    Thanks

    Hi Kanupriya,
    When you run the command " Int vlan 79 " and assign and IP to this, you are actually creating a SVI or the layer-3 virtual interface on the switch. This will not create Vlan 79 as a L-2 vlan in the Vlan database. When you run the command " Vlan 79 " that created the Vlan 79 in the Vlan database and you were able to see that Vlan interface. Remember to first define a L2- vlan in Vlan databse always, then configure the ports on this vlan and then define the L3 SVI.
    You can also configure the L2 vlan by going into vlan datbase :
    Switch# Vlan database
    Switch(vlan)# Vlan 79 name V79
    Switch(vlan)#exit
    HTH,
    -amit singh

  • Panic/Block after update download! Unique case or general problem?

    Yesterday, June 12 in the morning (Europe), i have downloaded a automatic Apple update, after that my MacBook Pro 13'' is going in Panic, noway to deblock it... a am a unique case or there is a general problem?

    You are not unique sorry to say.
    Thunderbolt Software Update 1.2 Causes Boot Failures
    Thunderbolt Update plaguing MacBook Pros with kernel panics

  • Flex Connect Groups - WLAN to VLAN mapping

    I have a question about configuring WLAN to VLAN mapping on FlexConnect Groups.
    Do the mappings that are configured in the FC Group get inherited by the APs when they are placed in the group?
    It seems like they do not.
    I am playing around in a lab with a virtual WLC running 7.5 and an old 1131 AP.
    If I configure the WLAN to VLAN mapping on the individual AP, it works as expected.
    If I configure the WLAN to VLAN mapping within the FC group and add the AP to the group, it does not.
    The AP does not inherit the settings from the Group.
    I am wondering how you would deploy a lot of APs without having to configure each AP individually.
    Thanks

    Yes, you are correct. It is not like normal AP groups where it will map WLAN to AP belong to that AP group.
    Anyway since you have to convert each AP manually to FlexConnect mode, you should do the WLAN mapping at that point as additional step.
    FlexConnect Group is mainly to give fast roaming feature for FC APs in brach deployment solution (typically not so many APs). Also keep in mind you can have maximum  25 APs in FlexConnect AP group for WiSM2 or 5508 & you can go upto 100 in 7500 WLC. (see table 7.3 in below link)
    http://www.cisco.com/en/US/docs/solutions/Enterprise/Mobility/emob73dg/ch7_HREA.html#wp1108090
    HTH
    Rasika
    **** Pls rate all useful responses *****

  • Flexconnect static mapping of WLAN to VLAN

    5508 running 7.4
    I want to create a definition for a particular site that maps WLANs (SSIDs) to switched VLANs.   I know that I can go to Wireless => Select AP => VLAN mappings on an individual AP basis.  But is there a way to create a group that will do this?  I thought it could be done with flexconnect groups but I just could not find a way to make it happen there.  Then I ran across this Architecting Network for Branch Offices with Cisco Unified Wireless Cisco Live presentation:
    http://d2zmdbbm9feqrf.cloudfront.net/2013/usa/pdf/BRKEWN-2016.pdf
    And on page 28 it states:
    AP groups give the ability to statically map Wi-Fi service (WLAN) to VLAN based on physical location
    And it then goes on to give a Configuration/VLAN mapping example in which I fail to see where VLANs are mentioned at all.
    Is what I am trying to do possible?
    Thanks,
    -JEff

    Hi Scott, thanks for the reply
    I have a main campus with several different distribution blocks that each use unique VLAN IDs.  And I have about a dozen remote sites that will all use common VLAN IDs.  I am configuring a single SSID (WLAN 2) to be used across all of these locations.  So at my main campus building "A" will have WLAN 2 mapped to VLAN 55 while building "B" will have WLAN 2 mapped to VLAN 65.  At each of the remote sites WLAN 2 needs to be maped to VLAN 15.
    So let's say I want to configure the main campus buildings A and B.  I create a dynamic interface for vlan 55 and name it something creative like vlan-55, Likewise for vlan 65.  Then I create an AP group named APG-55, add WLAN 2 to it and add all of my APs in that buliding.  What I don't understand is where the dynamic interface comes into play.  From your explanation it would seem that I need to assoiciate the dynamic interface to an AP group somehow.  What am I missing?
    Thanks!
    -Jeff

  • I've noticed this especially when I youtube or video stream for a while. Switching between tabs takes 3-4 seconds. Definitely a memory leak! Is it a general problem or addon specific?

    I've noticed this especially when I youtube or video stream for a while. Switching between tabs takes 3-4 seconds.
    Definitely a memory leak! Is it a general problem or addon specific?
    Also, when I try to close firefox and restart it, the process doesn'y get killed with the normal Command + Q in Mac.
    I need to use Force Quit instead.

    Try updating Flash. You appear to be running an older version dating from September 2010 which might be the cause of the problem. Download from http://get.adobe.com/flashplayer/
    If the problem persists after updating, try running Firefox in [[Safe Mode]]. If it functions properly in that configuration, then one of your add-ons is the culprit.

  • What is the general problem with this OriginLab VI?

    I'd like to use some VIs provided by OriginLab for their graphing and analysis software.  They apparently haven't updated their VIs since Labview version 8.5  The attached screenshot is an example of the general problem I'm seeing in their VIs.  If I hover over the property nodes, the Labview context help gives the error "This property is not valid for this class."  It looks to me like these are Origin classes and Origin properties, so I'm surprised by that error.
    Any idea about the reason for this problem?  I'd like to explain it to them in a little more detail and try to motivate them to fix it.  Still, I doubt it will happen soon.  Any suggestions about whether it's something I could fix myself?
    Thanks!

    The activeX interface might be inside a *.ocx, *.dll and even a *.exe file. So manually browsing and trying files with these endings might work. You could even try a text search with a hex editor to identify possible ActiveX components, you should find the keywords IDispatch and IUnknown in them.
    The proper way would be when they show up in the list. This actually is derived from some registry keys (I think it was a bit cryptic to track in the registry, as it involved searching for CLSID or the like). Proper registration is done by command line regsrv32 (if memory serves right). Normally this is automatically called from the installer.
    So it might be the best you just try to reinstall Origin.
    Also search the Origin folder if there are some other examples included there (and if they work).
    Felix
    www.aescusoft.de
    My latest community nugget on producer/consumer design
    My current blog: A journey through uml

  • Firewire 800 general problem?

    Hello, I have a BIG problem in my hands and I'm wondering if there's anyone out there to help me.
    I have 3 LaCie d2 Quadra Hard Drive eSATA 1.5Gbits, FireWire 800, FireWire 400, Hi-Speed USB 2.0 that I use to backup my music. I copy my music in the first one and use Carbon Copy Cloner to clone the information when I turn on the second and third disks. I only turn on the disks when I'm using them, the rest of the time they're all off.
    Today I came into the office to backup a new CD but got an error message when I turned on the first HD: "The disk you inserted was not readable by this computer" and 3 options: Initialize (which takes me to Disk Utility to see the brand of my disk listed but no details about it), Ignore and Eject.
    This happens with all 3 disks whether they're chained or not. Sometimes I get this error message, other times I get no message at all and just can't see the disks. I tried to plug them into 2 different twin 27" iMacs and 1 MBP 13" with different cables and power supplies. These are their characteristics:
    For both iMacs:
    Mac OS X 10.6.8
    3.2 GHz Intel Core i3
    8GB 1333 MHz DDR3
    For the MBP:
    Mac OS X 10.7.3
    2.53 GHz Intel Core 2 Duo
    4GB 1067 MHz DDR3
    But the same problem occurs: I either get the error message or just don't see the disks at all.
    Then I moved the disks to another iMac with the following characteristics:
    Mac OS X 10.7.3
    3.1GHz Intel Core i5
    4 GB 1333 MHz DDR3
    And they worked. All 3 disks with the same cables and power supplies I'd been using. So I thought "Maybe it's a Snow Leopard thing" and tried to make the disks work with the MBP (which has Lion) and they worked again! I moved the disks to their original location and once again plugged them to the MBP to finally work with them and the problem showed up again. Same error message for one of the disks, the other 2 simply don't show up.
    I also tried making them work in the following Mac Pro:
    Mac OS X 10.5.8
    Dual 2.7 GHz PowerPC G5
    4 GB DDR SDRAM
    And I still couldn't.
    This is all through FW800 which only worked that time I tried it with the third iMac. The only other time I got the HDs to work was plugging them to the Mac Pro but through FW400. I also tried plugging a Little Big Disk through FW800 and USB to the MBP and it didn't work. Then I plugged it into the Mac Pro using USB and there it is, with CCC slowly making the backup.
    My workmate is telling me now that last week she plugged in a different pair of LaCie d2 Quadra to the MacPro and she couldn't make them work through FW800 and had to settle for FW400.
    So my question is: Is there some kind of general problem with FW800 that I don't know about? Or is it a thing with LaCie? Like you see, my problem is not definite, I can't say "It works under these circumstances and it doesn't work under these" because it's a bit intermitent and annoying enough to not let me use the HDs at all. I sadly don't have another brand of HD to see if this occurs. I've run tests all morning in all the computers and I can't figure out the source of the problem. There are no software updates available for any of the computers.
    Is there anyone out there with the same problem? If it's a general problem, are there any posts about it? I can't find one.
    Sorry for the long read! I'm going to take a look at the LaCie support page to see if there's anything there.
    Thanks to anyone who read all this

    Well, external WD drives (or rather the cheap enclosures they use) aren't necessarily or generally a good way to rule out problems, but may be in this case.
    In any case, have you tried two things: a) a different (brand new) FW cable and b) an SMC or PRAM reset:
    http://support.apple.com/kb/HT1379
    http://support.apple.com/kb/HT3964
    Either/both sometimes help with FW or USB ports problems.

  • Failure general problems (improtant)

    i was sending text messages to my girlfriend fine
    but just suddenly
    when im trying to send the text
    it keeps saying
    "failure general problems"
    n it says
    "message failed would you like to retry?"
    and i thought it would go away in few hours
    but no it won't...
    i tried finding answers on google and here
    but i couldn't
    please help me
    it's important

    First pull the battery while the unit is on...wait a minute and reinstall and power up.
    Now call *228 and choose option 1.
    See if that corrects the issue.

  • Cause code 98 general problems.

    I am trying to send a message to one person and now i get cause code 98 general problems. what does this mean.
    i even tried to call them and it rings once and then i get disconnected. did i get blocked or what happened?

        That is definitely very strange. Rikki82. Let's see what we can do to help clear this out. Let's get some basic details first. What is the make and model of your phone? Any recent application updates prior to this starting? Since it is only occurring with one phone number, have you tried asking that person if they have accidentally blocked you?
    NicandroN_VZW
    Follow us on twitter @VZWSupport

  • Was the general problem with the bluetooth headset solved in the new ios 5 or in the new iphone 4s

    was the general problem with the bluetooth headset solved in the new ios 5 or in the new iphone 4s ?
    thank you greatly
    also i would like to know what are the diffrences with the bluetooth 4.0 vs 2.1
    ( the bluetooth headset i was thinking of is jawbone icon series thinker black )

    Hi,
    I had HUGE issues with a BlueAnt Q2 on the 4, and after five exchanges, I had to get rid of the phone becuase the Apple store admited that they had "some bluetooth issues."
    I still have the Q2, and I was wondering the same thing becuase I realy want an iphone.

  • Guest WLAN and VLAN out of 2811 w WLC module

    Using a WLC 2006 or 4000 series, there is
    no problem getting the traffic on a "guest WLAN" connected to a wired VLAN.
    But, how to do that when one is using
    a 2811 with a WLC module?
    Now the "guest WLAN" connects internally
    to the 2811 "interface wlan-controller 1/0" as a VLAN on a subinterface. I do not want the default GW for that VLAN within the 2811. Instead I just want to get it out at layer 2. Transparent bridging between a subinterface "int wlan-controller1/0.x" and "int fastethernet0/1.x" failed. Any ideas?

    Try these links:
    http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a008070ba8f.shtml
    http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a008073c723.shtml

  • Email sending and email general problems

    I am using the latest iPhone software version but these problems have been an issue for a while.
    Firstly, I can only send an email whilst connected with my Wi Fi on. If I try and send without there is an error message saying '...the outgoing server "smtp.me.com" failed. My .mac account is set as my Primary server and I have an ISP account also. I have checked my Mail settings and some of the servers were not active so I have turned them all on and still can't send Mail, other than when connected with Wi Fi. How do you change the order of the email accounts on your iPhone do you have to do that in Mail o your computer then sync with iPhone?
    Secondly, when I receive Mail on my iPhone it comes in ok but if I read it by selecting it it then sometimes doesn't show up in Mail on my computer this has become very annoying because I then have to forward any Mail from my iPhone back to my MBP.
    My ISP email account is a POP account and my .mac is an IMAP

    HI and Welcome to Apple Discussions..
    Try rebuilding the mailbox.
    From the Mac Mail Menu Bar, click Mailbox / Rebuild.
    Takes a few minutes to run.
    If that doesn't help, go to Mail/Preferences. Make not of the preferences under each tab then Quit Mail and locate this file.
    ~/Library/Preferences. Move that .plist file to the Trash and restart your Mac.
    Carolyn
    Message was edited by: Carolyn Samit

  • WLC 5508 , AP client dhcp address different from WLAN interface VLAN subnet?

    Hope the title makes sense, here's my situation: I have multiple businesses on 1 WLC 5508, there's a LAG to my core switch with seperate interfaces for each, broken up by vlans.
    My question is: if i have a WLAN setup to use interface "Company A" which is vlan 10 with an ip of 10.0.1.5 which then points to 10.0.1.10 for dhcp.
    Can the WLAN client connecting to the Company A WLAN use an IP in a different IP range?(192.168.1.10?) can the wlc route? from the perspective of the DHCP server where doers the request come from? (10.0.1.5?)
    Can the DHCP server 10.0.10.10 on vlan 10 respond back with and ip on a different subnet to assign to the client to use and still be fully fonctioning? would the default gateway for the client need to be 10.0.1.5?  So the clients ip would be 192.168.1.10 /24 with a gateway of 10.0.1.5 (ip adress fo vlan10 interface on WLC) And if multiple clients on the same subnet wanted to talk to each other woudl the WLC know how to route them to each other without passing through the default gateway?
    Sorry if this is confusing I'm having a bit of a hard time explaining it in works, i can try and draw somethign up if it makes more sense.
    thanks
    Eric

    I think if you want these clients to stick to a WLAN configured on a VLAN that has a different IP addressing you could configure your VLAN with the normal IP addressing then add on the SVI the 2nd IP_Class_default_gateway.
    E.G.
    Vlan 10
    interface vlan 10
    ip address 10.0.10.1 255.255.255.0
    ip address 192.168.1.1 255.255.255.0 secondary
    Clients that receive IP address from 192.168.1.0/24 network will be able to reach 192.168.1.1 and all traffic will pass right.

  • Problem with Port Range Forwarding WRV54G

    I have configured my WRV54G to do the following, in this order, on the Port Range Forwarding page of the router:
    1. Forward port 3389 to LAN Static IP x.x.x.100, a desktop PC. I have confirmed this works, a port scan shows this port is open and I can remote desktop into x.x.x.100
    2. Forward port 443 to LAN Static IP x.x.x.101. I have confirmed this works, a port scan shows this port is open I can VPN to an SSL concentrator at x.x.x.101
    3. Forward port 3390 to LAN Static IP x.x.x.102, a desktop PC. THIS DOES NOT WORK. A port scan shows that this port is not open. I have configured the remote desktop host at x.x.x.102 to use port 3390. Netstat shows that x.x.x.3390 is listening on this port. I can remote desktop to x.x.x.102 from inside the LAN, no problem, so it's not an issue with the PX configuration.
    So, then I switched the order of the port forwarding instructions, in this order, as follows:
    1. Forward port 3389 to LAN Static IP x.x.x.100, a desktop PC. I have confirmed this works, a port scan shows this port is open and I can remote desktop into x.x.x.100
    2. Forward port 3390 to LAN Static IP x.x.x.102, a desktop PC. I have confirmed this
    works, a port scan shows this port is open and I can remote desktop into x.x.x.102
    3. Forward port 443 to LAN Static IP x.x.x.101. THIS DOES NOT WORK. Port scan shows this port is not open.
    It looks like the WRV54G is only recognizing the first two entries in the Port Range Forwarding table and IGNORING the third entry. HELP??!!
    I have the latest firmware installed: v2.39.2e
    Anyone have a solution? Thanks in advance!
    Message Edited by crescendi on 07-19-2008 11:53 AM

    Are you still using the DHCP server range of  x.x.x.100  through  x.x.x.149 ?   If so, then your problem may be that you are using illegal fixed LAN IP addresses.
    With Linksys routers, any fixed LAN IP address must be outside the DHCP server range, and it cannot end in 0, 1, or 255.
    I would suggest that you fix the illegal addresses, then see if that resolves your problem.
    Here is the full set of rules for using fixed LAN IP addresses:
    With Linksys routers, a fixed (static) LAN IP addresses must be assigned in the device that is using the address. So you need to enter the fixed address in the computer or printer, not in the router.
    When using a Linksys router, any fixed LAN IP address must be outside the DHCP server range (typically 192.168.1.100 thru 192.168.1.149), and it cannot end in 0, 1, or 255.
    Therefore any fixed LAN IP address would normally need to be in the range of
    192.168.1.2 thru 192.168.1.99 or
    192.168.1.150 thru 192.168.1.254
    assuming you are still using the default DHCP server range.
    Also, in the computer, when you set up a static LAN IP address, you would need to set the "Subnet mask" to 255.255.255.0 and the "Default Gateway" to 192.168.1.1 and "DNS server" to 192.168.1.1
    It is also important that no two devices on your network be set to the same static LAN IP address.

Maybe you are looking for

  • Excpetion after link is clicked for file download on same page

    I have implemented a module in JSF where the page displays a datatable and one the columns is a command link which when clicked opens up a dialog box to save a CLOB from the DB as a csv on the local desktop. All this is working fine. The problem is t

  • CAHeadless has encountered an error - Sequence.cpp-2233

    Hi Community, I have installed Adobe Premiere Elements 12 and Adobe Photoshop Elements 12 on my PC....Since a few days I'm getting after each system restart the attached Error Message...I have already tried to re-install the software package but noth

  • Blackberry 10 Navigator ridiculous errors for Non-English languages

    Last week I had the chance of thoroughly testing the navigator during my one week vacation. I'm a Dutch speaking Belgian with a BB10 Q5 with Dutch language selected. While driving to the French speaking part of my country I noticed that the voice ann

  • How can I combine a old email address to a new mail address

    Had to change email address. But when i bay books on the new mail the old ones i can not read  I am getting a message" Document is licensed for a different user account" Any ideas how to over come this

  • Work Flow Software for Code

    Does anyone have any suggestions? I'm looking for a software product that would help regulate programmign work flow. For example: if we have several programmers working on the same application, we want a)everyone to have the same version of the appli