Wireless design help

Hi guys........just have  few qestions about designing WLC 5508
The  scenario is  that currently one of the client has a firewall Tiering T1 internet facing and T2 internal whioch has multiple DMZ connected.
T2 firewall has a DMZ switch connected which has a router which connects to MPLS cloud to different site across the country. (around 10 sites) all static routing.
Now the client is thinking to deploy wireless at all 10 sites using H-REAP. The issue is that client has only one WLC and they are not willing to buy other as i was thinking to deploy two WLC one for corporate and one for guest users. (one in internal network and on in DMZ)
Now my question is as follwow.
1- Keeping in mind that there is only one WLC where should i physically put it?
2- How guest users will work ? How the authentication will be done?
3-There are 8 SFP ports in WLC how physical topology will look like?
4-How many Vlans i have to make for wirless users  will that be 10? (1 at each site) ?
my last question is that how these ports work on WLC are they just like swicth e.g  one port can be assigned to different vlan....just confuse about interfaces and vlans on WLC (interfces concept)
Thanks guy and hope to get a response ASAP.

       OSITAN N Many thanks  please comment
                                    Internet
                                               FW 1
                                                   !                                                        <---------------------Traffic comming this way
                                                FW2--------DMZ--------------SW---------- Router -----------------IP MPLS-----------------
                          ------Trusted-----  !                                                                                                        !
                                                   !                                                     ------Branch Router------->               RT 
                                !           !               !                                                                                               SW
                             DSN      AD            DHCP                                                                                          !
                                                                                                                                                            AP  
                                                                                                                                                          USER
1 Where WLC Place so that Guest trafice dont go to Trusted area?
2. Its gona be H-Reap so DHCP would be local for branch
3. Voce user  Qos? priority how ? example
4 Guest Firewall rules to use only internet ?

Similar Messages

  • Wireless Design help needed

    We have 4402 controllers with (6) 1242AP's and I'm wondering would it be beneficial to add a couple more AP's to our network to accomodate more users that are coming in or design for a new platform?
    I'm not sure what the costs may be to go to a new controller based platform or what AP's would be best (1130's?).
    Can onyone provide some insight not in depth but ballpark figures.
    thanks.

    We have 4402 controllers with (6) 1242AP's and I'm wondering would it be beneficial to add a couple more AP's to our network to accomodate more users that are coming in or design for a new platform?
    Yes.
    I'm not sure what the costs may be to go to a new controller based platform or what AP's would be best (1130's?).
    Depends on your budget.  The most affordable WAP that only supports 802.11a/b/g is the 1130.  If you want to support 802.11 a/b/g/n then you should be looking at the 1040. 
    Can onyone provide some insight not in depth but ballpark figures.
    You need to ask your nearest authorized Cisco reseller.  Get a quote from at least three of them so you know what you're up against. 
    If you still think they are pricey, then try Cisco Refurbished. 

  • New to wireless need help

    I an a ccnp, but want to become certified with wireles, cause in my country cameroon we use mostly wireless. so please, can you give me good books and tell me where i need to start from. thansk for your help in advance.

    Hi Claude,
    Here is some material to get you started;
    Here is a great book that was recommended by ScottMac a real guru when it comes to wireless
    "Cisco 802.11 Wireless Networking Quick Reference" , ISBN: 1-58705-227-X
    Here is a link to many guides,white papers,case studies etc.
    Wireless/Mobility Solutions for Large Enterprise
    http://www.cisco.com/en/US/netsol/ns340/ns394/ns348/networking_solutions_packages_list.html
    Cisco Unified Wireless Network
    http://www.cisco.com/en/US/netsol/ns340/ns394/ns348/ns337/networking_solutions_package.html
    Wireless for Small and Medium Business
    http://www.cisco.com/en/US/netsol/ns642/networking_solutions_packages_list.html
    Cisco AVVID Wireless LAN Design Solutions Reference Network Design
    http://www.cisco.com/application/pdf/en/us/guest/netsol/ns178/c649/ccmigration_09186a00800d67eb.pdf
    RF Power Values
    http://www.cisco.com/en/US/tech/tk722/tk809/technologies_tech_note09186a00800e90fe.shtml
    Wireless LAN Radio Frequently Asked Questions
    http://www.cisco.com/en/US/products/hw/wireless/ps441/products_qanda_item09186a008014624c.shtml
    Some Key Points to Remember About RF
    http://www.cisco.com/en/US/tech/tk722/tk720/technologies_tech_note09186a00800b2d37.shtml#keypoints
    Minimizing 802.11 Interference Issues
    http://www.wi-fiplanet.com/tutorials/article.php/953511
    Improving Wi-Fi Performance by Avoiding RF Interference
    http://www.bbwexchange.com/publications/page1375-5539.asp
    Here is a link to some descriptions,course requirements,training etc. for current Cisco Wireless design and support certifications;
    http://ciscocert.custhelp.com/cgi-bin/ciscocert.cfg/php/enduser/std_alp.php?p_sid=i97C_kji&p_lva=&p_li=&p_accessibility=0&p_page=1&p_cv=&p_pv=&p_prods=0&p_cats=&p_hidden_prods=&prod_lvl1=0&p_search_text=wireless&p_new_search=1
    Hope this helps!
    Rob
    Please remember to rate helpful posts.....

  • Ipod touch is not syncronizing is not even on the list of devices on itunes even when I connect it, is not syncronizing wireless either HELP

    ipod touch is not syncronizing is not even on the list of devices on itunes even when I connect it, is not syncronizing wireless either HELP
    I have some updates in regards my music that I want to upload to mi ipod touch 4th generation 64gb and my computer recognizes the IPOD connected via usb but my computer on  itunes doesnt have any info about it, I don't want to reset all the settings becuase I spent a lot of money on you guys and simply mi ipod is not syncronizing I DEMAND help please also my ipod is not syncronizing wifi it says: "syncronization will be done when VAIO (my laptop) is available" but my computer  IS AVAILABLE WHAT IS WRONG WITH THIS DEVICE someone better get me a resolution this is a huge inconvenience. I am going to stop puchasing apps and music if this is not resolved I DON'T want this tutorial http://www.apple.com/la/support/ipodtouch/assistant/itunes/ or this http://support.apple.com/kb/HT1808 those are not even close to the new update Apple did to ITunes

    This will help: http://support.apple.com/kb/HT1212 : iPhone, iPad, iPod touch: Wrong passcode results in red disabled screen

  • Unable to toggle between LiveCycle Designer & Help

    If we opened the LiveCycle Designer Help window, we are unable to switch to the Designer util the help window is minimized. This is slightly annoying the developers.
    It would be better if it can behave like other applications (e.g. Adobe Workbench ES)
    Thanks,
    Nith

    Charlie
    I am unable to duplicate the problem you are experiencing.  I was able to use Acrobat Pro 9 and X, to apply the Reader Extension permissions (to the sample form I posted earlier) and open and sign the form in both Reader 9 and X.
    What is the exact version of Acrobat you are using to apply the Reader Extension rights.  The dialog I see when doing so with Acrobat 9 Pro is...
    If you are using Acrobat Standard, it seems there is a limitation (save data only) on the Reader Extension permissions that you can apply.
    Regards
    Steve

  • I like to pdf my score. I design my score properly, but then when I make the PDF it changes, in not correct design, help!

    i like to pdf my score. I design my score properly, but then when I make the PDF it changes, in not correct design, help!
    the same problem when normal printing

    You have 90 days of free AppleCare telephone support, please call them. If you don't know the number please click AppleCare Contact Info to locate the number on your part of the planet.

  • Non-profit needs Dreamweaver design help

    Small non-profit serving homeless veterans and veterans in crisis needs design help with Dreamweaver website.  The website was created as a school project by university students but there are some design issues that we are not able to correct.

    It appears to be template driven so the basic layout is inside your site folder's Templates directory -- main.dwt.   This file drives the site wide elements such as navigation, common headers, footers and sidebars. 
    Child pages created from that main.dwt file contain editable regions for content that will change from page to page.  Only content in these editable regions are editable from child pages.
    Whoever will be responsible for updating content should get familiar with CSS & HTML code.  This is required knowledge to work with Dreamweaver.
    Start here:
    HTML & CSS Tutorials - http://w3schools.com/
    Code validation tools
    http://jigsaw.w3.org/css-validator/
    http://validator.w3.org/
    Also thoroughly read DW's Help docs (F1) under working with DW Templates. 
    It looks like the students did a pretty fair job of building the basic site for you.  Now it's up to your org to swap out the generic stuff with relevant content.   I don't advise you to alter the basic layout or structure.  It's all there.  You just need to get up to speed on how to work with it.
    Nancy O.

  • Need some design help

    Well "overall" design help. This project MUST be open source so it does ensure i am very efficent in my design
    Basically my system is going to be a bunch of work stations that tunnel into a server to send the data.
    Now the big issue is, each work station must encrypt its own data and save it on its HD, but it must send data to the server for the server to save it and encrypt it (redundency).
    The big issue is sending data to the server. the keys, how do i securely send them to the server so they can decrypt the stream? everything will randomly generate its key whenever the user (or the system) decides it is time to for the sake of not resuing keys.
    basically we are going to use linux, lock down all ports but one to use sockets to communicate with the server (and vice versa). this adds an extra layer just so we can authenticate with the server machine (and client machines when the server sends it a request)
    help? more info needed?

    I know (next to) nothing about system security (well,
    not enough to be advising people, anyway) - but the
    key distribution problem is typically solved by using
    Public Key Cryptography to exchange a Session Key.
    Have you thought about using an existing system like
    SSL or Kerberos?eh SSL won't really work... i a mgoing to pick up "Cryptography Decrypted" apparently it is a good book to pick up some of the things i need

  • Question regarding Wireless design

    Hi,
    I am planning for a wireless design for a new site and would like to understand the following
    1. Should I go with the Access Point (AP) that support 2.4 GHz or 5 GHz or both
    2. What is the average coverage area in meters or feet for both the frequencies
    3. If the overall area is 2000 Sq. feet with few walls in between, how many access points will be required approximately
    4. What is the leading practice on the number of users per AP
    5. What are the circumstances when a Wireless controller need to be deployed. Is it purely based upon the number of AP's to manage?
    6. Should there be a separate DHCP scope for each AP? If not, how to AP's communicate with each other if there is no controller deployed?
    Your time for answering these will be highly appreciated. Thank you.

    Hi Manoj,
    Here is my responses to your qurey.
    1. Should I go with the Access Point (AP) that support 2.4 GHz or 5 GHz or both
    BOTH
    2. What is the average coverage area in meters or feet for both the frequencies
    These days coverage is not the primary criteria, its capacity. Roughly you need to put a AP for each 20-25 devices for normal data usage.
    3. If the overall area is 2000 Sq. feet with few walls in between, how many access points will be required approximately
    Based on the number of devices expected in each area you can determine that. If you do a survey do it in 5GHz which is lower cell size.
    4. What is the leading practice on the number of users per AP
    If it is typical data usage (email, browsing,etc) then 20-25 users per AP. If you require Video/voice then this number comes down to around 10.
    5. What are the circumstances when a Wireless controller need to be deployed. Is it purely based upon the number of AP's to manage?
    Always go for a Controller managed solutions. It is very hard to control RF environment if you go to manage then individually.(like autonomous AP)
    6. Should there be a separate DHCP scope for each AP? If not, how to AP's communicate with each other if there is no controller deployed?
    No, you can have single DHCP scope for AP. As long as AP & WLC have layer 3 reachability it will comunicate with each other using CAPWAP protocol.
    HTH
    Rasika
    **** Pls rate all useful responses ****

  • Design help to the forms

    Hi gayes
    I need your help in designing help to any any working screen such that when the user push F1 buttons , click the right buttons of the mouse and choose help from the popmenu,or choose help from the menu bar . It must give him the correct help.
    Also this "help screen" how could I make it,and connect it to the help of windows98 to work.
    Thanks

    Hi Kimberg Howe,
    You have several alternatives to generate a .hlp file. You can do it manually in words and save the file as a rich-text-format (.rtf), and then use the Microsoft Help Workshop (a Free Program obtainable from www.microsoft.com site) but realize that you will have to code all the Winhelp engine commands and that's some task. However, you can investin some WYSWYG winhelp file generators. I guess it is not appropriate to suggest any in this forum, but you can do a search on any search engine for keyword "Winhelp", or you can also search on www.download.com
    What this program will do for you is to allow you design your help file and then generate the .hlp for you, some of these programs can also allow you to generate html files that is suitable for web forms.
    I hope this help.

  • Design Help / Education

    Does anyone know if Adobe offers any design education
    I need some basic design help using Dreamweaver (as I am
    having issues migrating from Go Live)
    If not Adobe, are there any experienced DW users out there?
    thanks

    Experienced DW users? Well, yeah.
    What do you need?
    Murray --- ICQ 71997575
    Adobe Community Expert
    (If you *MUST* email me, don't LAUGH when you do so!)
    ==================
    http://www.projectseven.com/go
    - DW FAQs, Tutorials & Resources
    http://www.dwfaq.com - DW FAQs,
    Tutorials & Resources
    ==================
    "golfingdad" <[email protected]> wrote in
    message
    news:gefblj$2pt$[email protected]..
    > Does anyone know if Adobe offers any design education
    >
    > I need some basic design help using Dreamweaver (as I am
    having issues
    > migrating from Go Live)
    >
    > If not Adobe, are there any experienced DW users out
    there?
    >
    > thanks
    >

  • Design Help! Add new lines

    Hi All,
    I need a design help for adding extra lines on an existing order.
    I have a page with 2 subtabs, first one is for order header info inputs and second one is for line info inputs. The line subtab base on user selection may generate mutile lines in lineVO (multiple rows). After user clicked an apply button on line subtab, a header row will be committed into header table and line row(s) will be in line table.
    I was trying to have another button to allow user enter extra lines after committed existing header and line VO. After user click the "add extra line" button, I retain AM to keep header VO but flush out line VO, with this way, framework will try to delete lines in line table.
    Since there are lots logic requirements, I can't keep adding lines after line VO.last() without committing first round line entering.
    How can I keep Header VO, clean line VO, then enter new line(s) info as ADD but not DELETE/UPDATE? any suggestion??
    Thanks & Regards,
    KJ

    Hi Shreya,
    I am not sure about giving new line in each and every page, but there is an alternate. You can show all data in one single page. That is how much ever records you have, they will be shown on one single page, instead of spanning across multiple pages. You can achieve this by changing the property "Number of Data rows displayed at once" from default 100 to 0.
    Hope it helps.
    Regards,
    Arunan.C

  • Wireless design guide/help

    Hi guys........just have  few qestions about designing WLC 5508
    The  scenario is  that currently one of the client has a firewall Tiering T1 internet facing and T2 internal whioch has multiple DMZ connected.
    T2 firewall has a DMZ switch connected which has a router which connects to MPLS cloud to different site across the country. (around 10 sites) all static routing.
    Now the client is thinking to deploy wireless at all 10 sites using H-REAP. The issue is that client has only one WLC and they are not willing to buy other as i was thinking to deploy two WLC one for corporate and one for guest users. (one in internal network and on in DMZ)
    Now my question is as follwow.
    1- Keeping in mind that there is only one WLC where should i physically put it?
    2- How guest users will work ? How the authentication will be done?
    3-There are 8 SFP ports in WLC how physical topology will look like?
    4-How many Vlans i have to make for wirless users  will that be 10? (1 at each site) ?
    my last question is that how these ports work on WLC are they just like swicth e.g  one port can be assigned to different vlan....just confuse about interfaces and vlans on WLC (interfces concept)
    Thanks guy and hope to get a response ASAP.

    1- Keeping in mind that there is only one WLC where should i physically put it?
    Well since you will also be supporting Corporate and I'm guessing that is where the WLC sites, it should be in the inside network.  You would just need to allow udp 5246 & 5247
    2- How guest users will work ? How the authentication will be done?
    Guest users can use webauth in which the credentials will be stored on the WLC.
    3-There are 8 SFP ports in WLC how physical topology will look like?
    This is the tricky part.  You can either lag or not lag.  You can't split up the lag (etherchannel).  So you can either use all 8 if you with and create an etherchannel and then acl the guest traffic out the internet or you can put the guest on a layer 2 vlan in which you would connect that out to the dmz.  Or you can use one port for the management and also have a backup port, one for your internal wireless and also have a backup port and the same for guest.  SO it would look like this:
    Management primary port 1 backup port 2
    SSID primary port 3 backup port 4
    Guest primary port 5 guest port 6
    OR
    Management & SSID's primary port 1 backup port 2
    Guest primary port 3 guest port 4
    4-How many Vlans i have to make for wireless users will that be 10? (1 at each site) ?
    If you use local switching which I would think you would, the vlans for the SSID at the remote site will be created locally at each remote site.  If you want to centrally switch, means all traffic will come back to the WLC, then you will need at least one.  Now you can use a large subnet or have a subnet for each site, its up to you.  You would use AP Groups for that.
    my last question is that how these ports work on WLC are they just like switch e.g one port can be assigned to different vlan....just confuse about interfaces and vlans on WLC (interface concept)
    Thanks,
    Scott
    Help out other by using the rating system and marking answered questions as "Answered"

  • Outdoor wireless point to point design help

    I need to extend a wireless signal from one building, to an elevated metal enclosure approximately 310 feet away across a parking lot.  The enclosure has 3 metal sides and a metal roof. The front is almost entirely one big picture window.  The building across the parking lot from the enclosure that I need the wireless signal to reach from faces the metal back side of the enclosure.
    Currently a yagi antenna is mounted on the building roof and is pointed at the enclosure across the parking lot. The antenna is connected to an old 1231 access point inside the building.
    This configuration does not work.  The signal reaches weakly to the outside of the enclosure, but disappears entirely once inside the enclosure itself.  My guess is that the metal back and sides is blocking the signal from the yagi antenna on the roof across the parking lot.   Signals from other access points in the neighborhood can be seen inside the box, and I'm guessing those signals get through because they're in line with the big window in the front of the metal box.
    How do I get the wireless signal inside of this metal box?  If I install another antenna on the roof of the enclosure that will boost the signal to the outside of the structure, but how do I get the signal inside?  Even if I place an access point inside the structure and run a cable to the outside antenna, won't the signal itself still be outside?
    How do I get the wireless signal from the building across the parking facing the metal rear of this enclosure to reach inside the enclosure?
    For those who are wondering - the elevated metal enclosure sits on top of a row of bleachers and looks out over a sports field.  It's used by sportscasters to broadcast sporting events and upload game information to a website. That's why they need wireless inside.

    How do I get the wireless signal inside of this metal box?
    With difficulty.
    You need to poke holes under the metal box (to prevent water from coming up to the AP) and stick the antenna OUTSIDE.  The metal will act as a reflector.

  • Question about Wireless Design and Controller

    Hi Everyone,
    Although I am not new to Cisco, I have somewhat limited experience with Wireless in general.  I was hoping to get your help with the following:
    We currently have a total of 8 1130AG, 4 on each floor.  They were configured a few years ago, and now we are looking to update the design a bit.  Each AP has its own SSID, and just provide internet access.  Looking at the configuration, I noticed that they are not configured to use proper channels, just random channels (9, 10, 11, instead of 1, 6, 11, etc.).  I noticed that when I roam between one AP to another, I lose about 4-8 pings before I re-establish connectivity again.
    Here are my questions:
    1.  Do I need a controller in order to use just one SSID for the whole setup instead of the 8 seprate ones we currently have?
    2.  Will the controller helps in providing seamless transition when a client roams between AP's?
    3.  Is it normal to loose connectivity roaming around?
    4.  Can I reconfigure the current setup to use just one SSID and provide better transition between AP without the use of a controller?
    5.  Which controller would you recommend?
    We don't have a need to anything fancy ,I am aware that I can enable multiple SSID, VLAN's, etc.  Just trying to keep it as simple as possible, yet reliable.
    Your input is appreciate.
    Thanks

    1.  With 8 AP's only, a WLC would be nice-to-have but not necessary. You can configure WLSE and it will do some limited functions.
    2.  This depends on the signal strengths, wireless coverage and configuration.  If you enable WLSE, for instance, and you have no wireless black spots, then roaming should be no issues.
    3.  See #2.
    4.  You can configure multiple SSID (up to 16 are broadcasted) but if one AP doesn't have the SSID you use for roaming, the association will drop when the client tries to join that particular AP.  It's like mobile phone towers.  If your carrier is not in the area, you sure won't be able to use your mobile phone in that area.
    5.  For 8 1130 APs, I'd recommend the smallest of the lot:  2106 with either 6, 12 or 25 AP licenses.  I'd recommend you the 25 AP licenses.  If your finances allow you something bigger, then consider either the 4402 (25 AP licenses) or the 5508.
    Cisco 2100 Series Wireless LAN Controllers
    http://www.cisco.com/en/US/prod/collateral/wireless/ps6302/ps8322/ps7206/ps7221/product_data_sheet0900aecd805aaab9.html
    Cisco 4400 Series Wireless LAN Controllers
    http://www.cisco.com/en/US/prod/collateral/wireless/ps6302/ps8322/ps6307/product_data_sheet0900aecd802570b0_ps6366_Products_Data_Sheet.html
    Cisco 5500 Series Wireless Controllers Data Sheet
    http://www.cisco.com/en/US/prod/collateral/wireless/ps6302/ps8322/ps10315/data_sheet_c78-521631.html

Maybe you are looking for