HREAP vs LOCAL modes

after reading through numerous docs from Cisco - it seems that latest firmware on WLC provides HREAP functions similar to that of using local mode. So what if the APs on a LAN are all set to HREAP giving you the benefit of redundancy and also network local switching avoiding that local traffic needs to traverse the WLC ? I know Cisco are still recommneding use of HREAP for WAN remote sites - but why not use it on LAN too ? The limitations are very few and most either relate to WAN type (which on LAN these do not apply) or else refer to when LAP looses WLC communication (at least it works in limited mode better than not at all like when it is set for 'local' mode. The HREAP does not use CAPWAP tunnel to encapsulate data traffic so I agree some security is lost but if security at the LAP end is not a big issue for client I still see all other features work with HREAP - like RRM / Roaming etc . so you get full benefits of WLC whne HREAP is in connect mode and keep some if WLC is down .. can anyine convince me otherwise ? : )

As per my usual on this type of question.
It all depends on what you want to do.
Yes, you can use the AP like they were autonomous, and bridge all the traffic down to the LAN if you want.  Or you can backhaul it to the WLC.  It's all up to what you need to support.
For example, if you were using Air Fortress, you would have to use HREAP, because of how that applicaiton interacts.
If you're only doing standard, web and email, there is no real need to.
Both designs are valid, all depending on what you want to do.
As for the security aspect of it, the traffic on the LAN isn't encrypted anyway.  So once the traffic egresses the WLC, it's raw, if you have a protocol analyzer you can get the data.  So that comes down to physicl security more than anything, not wired vs. wireless.
Cheers,
Steve
If  this helps you and/or answers your question please mark the question as "answered" and/or rate it, so other users can easily find it.

Similar Messages

  • HREAP & Local mode configuration for one SSID

    I'm looking to provide one SSID Corporate access to multiple sites using HREAP. My question is it possible to configure one SSID and switch the traffic locally?
    I have a controller in the main site that provides one SSID for Corporate access (AP's in Local mode) and would like to have the same SSID used at the remote sites, only difference is the break out locally.
    Do I need to configure the HREAP interface on the controller if it is switching locally at the remote site? If so what interface should it be? I thought it would be locally anyway?

    yes, you can do this.
    In the WLAN, select HREAP Local switching.  This does not mean that the WLAN is always locally switched, just that it can be.
    Put the AP that need to be HREAP/FlexConnect in that mode, reboot, then map the WLAN to the approrpriate VLAN for that site.
    For the AP that you want to do central switching, just leave them as they are.
    Steve

  • HREAP vs AP local mode

    Hello,
    Could someone explain the advantages or differences in using HREAP (when the traffic is centrally switched), to just using the APs in local mode with a centralized WLC?
    Scenario- 1 HQ and several branch offices. All resources are at the HQ including DHCP and internet break-out.
    Thanks

    Well it depends if the lwapp traffic takes up too much of your WAN bandwidth. If not, then run local.... I have clients that have gig connections to their branch offices that run every ap in local mode. I also have clients that run the branch office ap's in h-reap due to bandwidth constraints. Even though traffic will end up back in the central site doesn't mean you can't run the ap's in h-reap. The good thing with h-reap is that if the wlc becomes unreachable for some reason, the ap's will still be up and running. Encryption that can be run in local mode can still be ran in h-reap. The senerio that is in alot of docs is that if your wan goes down, users who need to authenticate back to a radius server in the central site will fail.... that is because the wan is down. Again, you can run locally first and see how that works.

  • H-REAP vs Local mode on LAN with a single WLC

    Hi
    I have a question about H-REAP vs Local mode on a LAN with a single WLC.
    We use EAP-TLS with Cisco ACS for authentication of wireless clients.
    Up and until controller version 4.2 it was not possible to authenticate using 802.1x when a H-REAP AP went into standalone mode.
    Code above 4.2 can now support this. According to the documentation all you need to do is configure the RADIUS IP addresses on the H-REAP AP.
    Usually I would use H-REAP with central authentication and local switching for AP’s that are separated from the WLC via a WAN link.
    However, a colleague has suggested that we could configure H-REAP (central authentication\local switching) AP’s at the same site as the controller. This would give us the advantage that if we lost the controller (we only have 1) then at least the AP’s could still authenticate users.
    I am trying to see the “cons” of this solution. I guess roaming would be affected when the AP’s went to standalone mode as each roam would require complete re-authentication. But this is still better that a hard down state. Are there any cons to this approach during normal operation (e.g. when the controller is up)?
    What about RRM limitations?
    I seem to recall that a H-REAP AP was unable to increase its power output to address coverage holes?
    Layer 3 roaming not supported on locally switched WLAN’s?
    I would appreciate any thoughts\feedback
    Thanks,
    Andy

    My 2 cents :
    -I don't recall the HREAP APs having any RRM limitations in recent code.
    -No layer 3 roaming when you are locally switching. If the APs are dropping traffic locally at their switchport, you can't tunnel through WLCs like it happens when you usually do l3 roaming.
    -There are a number of features not supported when you do H-REAP. WGB is one of them for example. Fancy features like directstream and others.
    -The best answer in your case would be to have a second WLC where the APs can failover to. But I know it's not always possible.
    Nicolas

  • Slow report viewer/rdlc performance in local mode with Single Sign On

    Hi Team,
    We have recently enabled Single Sign On to our application and after that our rdlc reports loading got extremely slow.
    Please find the below configuration that we are using.
    1. Report Viewer 11.0.0.0
    2. running rdlc file in local mode (not using Report Server)
    3. System.IdentityModel.Services 4.0.0.0
    The query behind the reports is returning result in 5-10 sec but report is taking 1-4 min to load (sometimes getting timeout) (as per the complexity of the report).
    We have tried a lot of workaound but nothing worked.
    i saw performance improvement in reports by addding <trust legacyCasModel = "True"   level="Full" /> in config file, But using this we are getting "Dynamic operations can only be performed in homogenous AppDomain" error
    in many pages of our application.
    Without SSO reports are running completely fine.
    We are stucked here and not able to proceed. Is there any issue with the SSO and rdlc in local mode ? Is there any hot fix available for the same ?
    Please help !!!
    Regards,
    Pranav Sharma

    This problem is probably related to :
    [http://blogs.oracle.com/stevenChan/2010/03/ebs_jre_issues_16018.html]
    Oracle problem ID : 1054293.1
    Loginpage / Error in Browser for Export and Attachments after upgrading to Sun JRE 1.6.0_18 [ID 1054293.1]
    Sun bug : 6927268
    ShowDocument calls results in new iexplorer process

  • Adaptiva Software Distribution not working with Cisco APs in Local Mode

    A worldwide customer would like to use a new Software distribution system called Adaptiva to replace SCCM within Windows environment. As far as I understand, Adaptiva is designed to work like a snowball system. A single PC at a remote side can be "infected" with new Software and will distribute the package to other PCs within the same IP-subnet, saving WAN bandwidth.
    First tests are showing that it is working well with Cisco WLAN solution as long as we are using Flexconnect WLAN APs.
    Customer locations with Local WLAN AP design create problems for this new software distribution method.
    The WLAN-PCs can be reached from outside, but the establishment of the Client/Server-model between the WLAN Clients is not working. The Port used by this software for communication between clients in each WLAN subnet is UDP Port 34329.
    Our WLCs are running at  7.4.130.0. The problem is appearing independently of AP Multicast settings or Broadcast Forwarding.  Enabling Broadcast forwarding without Reboot did not improve the situation.
    Global Multicast Mode and IGMP Snooping are also of no influence.
    P2P Blocking Action is "Disabled" within the WLAN setup.
    Who has any idea what might cause this communication problem between WLAN clients in Local Mode of APs ?
    Thank You for answers
    Wini

    I can think of two solutions. You could 1: turn the "auto-lock" to never, so that your phone never sleeps. Or, you could 2: jailbreak your iPhone and install "insomnia". I wish we had the Cisco Mobile app. I usually use wifi/insomnia and turn data off at work since we have wireless pretty much everywhere...
    Sent from Cisco Technical Support iPad App

  • What is the correct command sequence code in Labview that will take an instrument out of Remote and put it in Local mode?

    I am writing a routine in Labview 5.1 that will capture the screen data on a Network Analyzer after configuring the display. The routine to capture the data is working fine but when I try to send the equipment into local to allow me to manually make another change to the data I want to capture, the analyzer will go into a listen mode. The command I am sending to the analyzer using the 488 misc function is "loc". I've notice that is seems to put the anayzer into listen mode which will not respond to the commands to capture the screen data again.

    Check the manual for the instrument. Some instruments do not have a specific command to go into local (or remote) mode. Tektronix oscilloscopes use the GTL command to Go To Local. HP and Agilent instruments do not have a command for this.
    It's been a while since I used LV5.1, but in LV6, there is a VI under Instrument I/O->488->488.2 that allows you to set instruments into local mode. Hopefully, the same VIs exist in LV5.1.
    Rob

  • Local mode update in bdc -Call transaction method

    what is LOCAL MODE UPDATE in BDC- Call transaction methods ?

    Hi,
    Try to understand from the below CODE
    CALL TRANSACTION 'ZBDCSINGLE' USING IT_BDCDATA MODE 'A' UPDATE 'S' MESSAGES INTO IT_BDCMSGCOLL.
    REFRESH IT_BDCDATA.
    Cheers!!

  • Nokia c2-02 showing local mode after software upda...

    I TRIED TO UPDATE NOKIA C2-02 WITH PC SUITE AND INTERNET CONNECTION
    IT WAS ALL GOING SMOOTHLY AFTER SOMETIME IT SHOWED RESTART YOUR PC FOR FURTHER INSTALLATION I DID IT AND NOW AFTER RESTARTING MY PC WHEN I ON THE PC SUITE APLLICATION IT SHOWD NO PHONE CONECTED AND MY NOKIA MOBILE IS SHOWING "LOCAL MODE".
    PLEASE SOMEONE HELP ME HOW TO RESOLVE THIS PROBLEM
    I AM WORRIED

    Nokia c2-02 showing local mode after software update

  • What happens if Local Mode LAP lost connection to Controller?

    Hey,
    I wonder what happens to the wireless client and LAP running in local mode if connection to wireless lan controller is down OR the controller itself is down? I do not think LAP will reboot by itself but will wireless client lost wifi connection and internet connection via the LAP?

    H-REAP/FlexConnect is different and it can keep clients connected depending on authentication methods. This will explain it better:
    http://www.cisco.com/en/US/docs/wireless/controller/7.2/configuration/guide/cg_flexconnect.html#wp1224777
    Sent from Cisco Technical Support iPhone App

  • Wat is synchronous, asynchronous & local mode of update in BDC plz help

    wat is synchronous, asynchronous & local mode of update in BDC .
    plz explain each of them

    A Asynchronous updating. In this mode, the called transaction does not wait for any updates it produces to be completed( does not wait till the update in database is complete either it is successful or un successful). It simply passes the updates to the SAP update service. Asynchronous processing therefore usually results in faster execution of your data transfer program.
    Asynchronous processing is NOT recommended for processing any larger amount of data. This is because the called transaction receives no completion message from the update module in asynchronous updating. The calling data transfer program, in turn, cannot determine whether a called transaction ended with a successful update of the database or not.
    If you use asynchronous updating, then you will need to use the update management facility (Transaction SM12) to check whether updates have been terminated abnormally during session processing. Error analysis and recovery is less convenient than with synchronous updating.
    S Synchronous updating. In this mode, the called transaction waits for any updates that it produces to be completed. Execution is slower than with asynchronous updating because called transactions wait for updating to be completed. However, the called transaction is able to return any update error message that occurs to your program. It is much easier for you to analyze and recover from errors.
    L Local updating. If you update data locally, the update of the database will not be processed in a separate process, but in the process of the calling program. (See the ABAP keyword documentation on SET UPDATE TASK LOCAL for more information.)
    reward if it is helpful..
    sai ramesh.

  • 6151 Local Mode

    I have a recurrent problem with my Nokia 6151, bought 2 months ago, that makes me think there is an error in the software.
    I use to use to switch off the phone at night, while programming the alarm on the morning, to wake up. I have been doing this for years with other phones, also Nokia. But from the first day I bought the 6151 this was not possible, as the alarm did not activate, and on the morning I found the phone not responding al all, with the message "Local Mode" on the display, having to take out the battery to be able to use it again. I could see that this (showing "Local Mode" ) happened at the moment that the alarm was programmed to activate.
    Firstly, the shop changed my phone for another one (same model), but the problem was the same.
    Then the phone was sent to the Nokia Service, and after 3 weeks they told me that had updated the phone software.
    After this, the problem persists.
    What can I do?Message Edited by monsalvegf on 05-Aug-200705:11 PM

    SIMILAR:
    I bought myself 1 month ago the mobile Nokia 6151.
    Initially, 3 ó the first 4 unloads, when it(he,she) was setting it to load I was leaving on the screen "LOCAL MODE " and the symbol of load was not seen. The battery was difficult to me to fit until I was achieving that I was loading. I changed the following adjustment:
    Menu - Adjustments - Adjustments of the telephone - Way of network(net) and I selected "GSM"
    With this change, from then, it loads the first one.
    But this week I have started using the alarm of the mobile and the alarm does not sound. It has spent(passed) 2 times.
    In this moment when I look at the mobile me there appears on the screen the same text: "LOCAL MODE ". I try to ignite the mobile but it's not possible. I have to extract the battery, turn it to placing and this way the mobile is ignited.
    I do not understand that it happens ...! Is it a failure of the mobile, of which I have formed badly the mobile or that?
    I have consulted the user guide but I have not found anything about this. I would like that you were helping me to solve this topic, please.

  • How to cleanly migrate APs from local mode to flex-connect?

    I am working with an existing network where all APs are remote from the WLC at the data center. All APs were configured to run in local mode. I am trying to reconfigure these APs to flex-connect mode and local switching.
    Configuring the APs themselves to flex-connect and reconfiguring the switch ports is not an issue.
    None of the WLANs are currently configured for flex-connect local switching.
    When I configure a WLAN to allow local switching several of the APs cease to service clients.
    I am not permitted to change/add a new WLAN so I have to do this in place. This has to be transparent to the users.
    Any thoughts would be appreciated.

    The AP has been changed to flex-connect mode from local and the native VLAN is set to 10. The switch port is trunked with the native VLAN set to 10. This works fine until I try to change the WLAN to allow local switching.
    This example is a small site and all data clients are assigned to VLAN10.

  • Anyone ever heard of 'Local Mode'?

    Mine locked on local mode an wouldn't turn on.
    The manual doesn't mention local mode on the 6126.
    Depression is anger without enthusiasm.

    Local Mode is like Safe Mode - the phone has an internal failure and it unable to start up. Please take the phone to a Nokia Service Center.
    Experience and persistence are second to none just ask user one.
    1610»2110»8110»5110»3310»6210»7250i»6220»6230»6230i»6233
    Love me or hate me, its still an obsession. Love me or hate me, that is the question...

  • Nokia 2610 local mode????

    my mans phone says local mode on front display screen and we cant get it to go away. we cant even turn the phone off without taking out the battery.  my question is what is local mode and how do i turn it off? or is this just simply impossible and we need to get a new phone? I openly admit tha phone is not been treated with the best of care.  He has dropped it off a 15 ft deck on to pavment but it still worked, and he has also gone swiming with it in his pocket, and it again still worked.  but now out of the blue with no damage being added to the phone it started to display the "local Mode" and we cant do anything with it. Is there anyway to solve this problem?

    Well folks,
    I bought 7373 only 3 days ago & have experienced a similar problem. My problem occurs when there is no charge in the phone i.e battery is completely dead. When I connect the charger, the phone automatically turns itself to LOCAL MODE. And then, the only way to make the phone operational is by removing & placing the battery again. I got so frustrated that I decided to do something about it by myself.
    And I just came to the solution for this by chance :
    Instead of trying to charge the phone in the swivel closed condition, try charging the phone in the swivel open condition. That is, whenever your phone is completely dead & the screen is blank, first turn open the swivel & then put the charger jack in the phone. After you see the battery sign that the phone is getting charged, you can close down the swivel.
    Hope this helps. It is working fine for me.
    Thanks

Maybe you are looking for

  • Control Block - Preventing creation of new record

    hi, i have a control block with two text fields. i do not want new record created for this block when the down key is pressed. How do i do that ?

  • IPhoto library refuses to be recognized

    I've moved to new iMac at work. Just transfered the iPhoto Library from the old multi-user machine (from my user window) via firewire. Put it in the pictures folder as a whole. (inside the folder looks good--things are still organized correctly) Now

  • Importing LP video recording

    I can't seem to be able to import LP video recordings from a Samsung camcorder. No problem with SP recording, I am using firewire. The video works fine on the camcorder, but when imported manually into iMovie 08 becomes twice as fast or jumps and mis

  • Remittance advices

    Hello Friends, We have got one requirement. We need to send remittance advices through different output medium based on the vendor(Print, Fax, E-mail, EDI etc). How can we achieve this? Do we need to maintain any output condition records for these? I

  • Which SharingReference I need to add at a portal service for these packages

    Hello, I have written a portal service, not at the Dynpro, environment which uses these imports: com.sap.tc.webdynpro.progmodel.api.IWDNode; com.sap.tc.webdynpro.progmodel.api.IWDNodeElement; com.sap.tc.webdynpro.services.sal.url.api.IWDCachedWebReso