Wireless re-design recommendation

Hi, We have a wireless network setup and would like to expand it.
Currently we have wireless in the HQ only - 4402 controllers (2) and 1142 APs.
We have over 90 branches and would like to provide wireless to them as well. Some offices are large (20-30 users) and others are small (2-6 users). They connect to MPLS cloud with a low bandwidth connection (1.5 T1 to 5Mb ethernet connection)
Should the branches get autonomous APs instead of lightweight and create a VLANs for each SSID with ACLs before routing them to the rest of the network, or is it advisable to implement them as "light weight" and increase the license on my controllers (there aren't too many licenses left if I can recall correctly)? Is there a document that covers a scenario like mine? I am ready to look at a total revamp of the wireless infrastructure if that is what is needed.
Thank you very much experts.

I would NOT recommend to go with Autonomous AP deployment at Branch sites, it will give you lots of admin overhead to maintain that setup.
Instead you can use lightweight AP in FlexConnect mode which will give you good branch wireless design. Refer below Ciscolive material which will go through all the options available for good branch wireless design.
http://d2zmdbbm9feqrf.cloudfront.net/2013/usa/pdf/BRKEWN-2016.pdf
since you have 4402 WLC, I would recommend to do a whole revamp of your wireless infrastructure including wireless controller as well (probably with 5508).
PS: If you are looking more towards future, then you can consider next generation controllers like 3850/5760, but this involve most of hardware replacment in your switch network as well.
HTH
Rasika
**** Pls rate all useful responses ****

Similar Messages

  • Wireless Network Design

    What are best practices in consideration to wireless network design? I have a WLC 4400 and 1200 AP's that I want to deploy to replace my existing wireless network. I am researching the best network design for implementing a secured wireless infrastructure and also having a quest account for non employee's to logon to and surf the Internet. We also have WAN sites that need to be included in this design.
    Any help would be appreciated.

    Hi Tim,
    I just wanted to add a bit to the excellent info you have already received from Alejandro (nice work A!);
    Here some good "getting started" Cisco docs (and link to a video) which might help. This is a fair bit of reading :)
    Wireless LAN Design Guide
    http://www.cisco.com/web/about/ciscoitatwork/design_guides/dg-wlan.html
    Wireless Site Survey FAQ
    http://www.cisco.com/en/US/tech/tk722/tk809/technologies_q_and_a_item09186a00805e9a96.shtml
    Understanding the Lightweight Access Point Protocol (LWAPP)
    http://www.cisco.com/en/US/netsol/ns340/ns394/ns348/ns337/networking_solutions_white_paper0900aecd802c18ee.shtml
    Deploying Cisco 440X Series Wireless LAN Controllers
    http://www.cisco.com/en/US/products/ps6366/prod_technical_reference09186a00806cfa96.html
    Cisco Wireless LAN Controller Configuration Guide, Release 4.0
    http://www.cisco.com/en/US/products/ps6366/products_configuration_guide_book09186a00806b0077.html
    WLC Video
    http://www.cisco.com/en/US/products/ps6366/index.html
    Lightweight Access Point FAQ
    http://www.cisco.com/en/US/products/ps6306/products_qanda_item09186a00806a4da3.shtml
    Lightweight AP (LAP) Registration to a Wireless LAN Controller (WLC)
    http://www.cisco.com/en/US/tech/tk722/tk809/technologies_tech_note09186a00806c9e51.shtml
    Here are some excellent overall scope ideas;
    Deploying High Capacity Wireless LANs
    http://www.cisco.com/en/US/products/ps6108/products_white_paper0900aecd8027a5f7.shtml
    Cisco Deploys Wireless LAN Technology to Increase Productivity
    http://www.cisco.com/web/about/ciscoitatwork/downloads/ciscoitatwork/pdf/Cisco_IT_Case_Study_WLAN_2004_print.pdf
    Design Principles for Voice Over WLAN
    http://www.cisco.com/en/US/netsol/ns340/ns394/ns348/networking_solutions_white_paper0900aecd804f1a46.shtml
    Evaluating Interference in Wireless LANs: Recommended Practice
    http://www.cisco.com/application/pdf/en/us/guest/products/wireless/c2072/cdccont_0900aecd80554f8b.pdf
    I have attached some good "getting started" type Security docs). You may also want to engage your Cisco partner and Cisco SE to help you plan and implement this most important function of Wireless.
    Wireless LAN Security White Paper
    http://www.cisco.com/en/US/netsol/ns340/ns394/ns348/ns386/networking_solutions_white_paper09186a00800b469f.shtml
    Five Steps to Securing Your Wireless LAN and Preventing Wireless Threats
    http://www.cisco.com/en/US/netsol/ns340/ns394/ns348/ns386/networking_solutions_white_paper0900aecd8042e23b.shtml
    WLAN Security considerations (Part of WLAN SRND Guide)
    http://www.cisco.com/application/pdf/en/us/guest/netsol/ns178/c649/ccmigration_09186a00800d67eb.pdf
    Wireless LAN Security Solution
    http://www.cisco.com/en/US/netsol/ns339/ns395/ns176/ns178/netqa0900aecd801e3e59.html
    Wireless - Compare Products and Solutions
    http://www.cisco.com/en/US/products/hw/wireless/products_category_buyers_guide.html
    **Don't forget to check out the good books available from Cisco Press (link on this site)
    Hope this helps! And best of luck.
    Rob

  • Design Recommendations 1941 and 2921 still good?

    Hi All,  I've been asked to make some design recommendations.  The 1941 and 2921 would be a good fit for this customer.  Anybody know if there are plans for these routers to go EOL anytime soon?
    Thanks in advance

    I'm installing many 19/29xx series routers and haven't heard anything from my rep about EOL. Even if it goes EOL you still have support for many years after that and a solid piece of equipment.

  • Wireless AP design for Wireless IPPhone 7921

    FOr a client they are asking 40 Wireless IP Phone, with 3 floors, IPT side I am clear in design, but for access point design I am bit confused with standalone and WLC design.
    Could please light me on Wireless design for standalone AP and WLC controller with AP , in the design plan to give both as options.
    And also how to confirm a AP is a standalone or it wil work only with WLC.
    Please light me with wireless design for IPT.

    I would suggest you subcontract this to a partner who is familiar with wireless voice designs. There are a lot of details and caveats to make sure it works.
    For example: autonomous APs are not viable for voice installations. You need a controller to prevent the roam times from interrupting the call.
    At a minimum, you should read the Voice over Wireless LAN Design Guide:
    http://www.cisco.com/en/US/solutions/ns340/ns414/ns742/ns820/landing_voice_wireless.html

  • Design Recommendation

    I am looking for some design recommendation. Our application has set of n (lets assume 2) processes. The definition of each process is in a XML file. The XML file looks like:
    <processes>
    <process name ="a" action="b" />
    <process name ='x' action="y" />
    </processes>
    Now we have several clients that have certain characteristics and run these processes in specific order. For example:
    Client 1 name = "clean" order = a, x
    Client 2 name = "fun" order = x, a
    I am trying to figure out what will be a good, clean design to store this information. Should I create another XML with client list?

    Thanks for your replies. The process is currently in
    production. I recently joined the team and I am now
    trying to clean up the design. In current
    implementation every thing is hard coded and we have
    tough time adding any new clients that use the
    current set of processes. Our goal is to add new
    clients with minimum turn around.OK, is the in memory design cleaned up?
    My experience is that when the design approach comes from the input or output perspective, the resulting design tends to be rigid and sub-optimal. Once you have determined how you wish to represent the data in memory, then you can desing the input and output to be a natural extension of that design (you may want to change it subtlely.) You can even use built-in classes from the JDK to write and read your Objects to/from XML.

  • Wireless guest design + security

    Hi
    Anyone could please advice a recommended way for guest wireless design.
    The requirement is to only allow Internet for guest users. The guest user vlan is terminated in a L3 switch and the guest should not see LAN traffic or reach other vlans on the same switch. I tried using a PBR for the guest user vlan setting next hop as firewall but still the users were able to reach other LAN traffic.
    The guest SSID is configured to use web authentication (user ID / password) using local user database on a 5500 series controller.
    Please advice
    Thanks in advance
    Gaj

    Wat ever wireles config that you have need not be changed!! U need to go for Inter VLAN routing to be tweaked!!
    That is..
    The VLAN that ur using for GUEST should not communicate with rest of the VLANs and allow just Internet traffic, this can be acheived by creating a 2 liner ACL denying traffic for rest of the vlans and allowing the protocols that u need!!
    The below may help u..
    https://learningnetwork.cisco.com/thread/14122
    Please dont forget to rate the usefull posts!! Rating will help others as well to get the right resource!!
    Regards
    Surendra

  • New Mac user, new to Wireless - looking for recommendations on a router

    Hello all! I am new to Macs, and to wireless in general. I just bought a used Powerbook which of course has wireless capability. So my next step will be to set up a router. However, I have no experience with this, and am definitely not a computer geek at heart. So I am looking for recommendations on a router/wireless network system that seems to work well with Macs (and PC's as I now have both) and doesn't require vast amounts of computer networking knowledge to set up and get working. What works well? What should be avoided? Many thanks for your input! (Oh, if it makes any difference, my internet connection is DSL.)

    I would strongly recommend the AirPort Extreme. Its simple, doesn't do much but it does the job perfectly. It never drops out and the distance of the signal is far (you can be online in your back and front yard). And its really easy to setup. And it works with both systems. But I do recommend getting a new one instead of a used one because you'll need the newer version of AirPort Assistant to set it up because older version of Tiger doesn't have that programme pre-installed.

  • Adobe Flex & DESIGN Recommendations ?

    Hi Folks,
    While I am a bit beyond scratching the surface in Adobe Flex 4 & AS3 usage and knowledge, I am looking to spruce up the look and feel of my applications. So, I am looking at and getting confused by a never ending alpha soup of various Adobe products - such as Photoshop, Illustrator, InDesign, Catalyst, etc.
    Where do I start and what do I actually need in order to be able to spruce up my Flex App with some custom looking components, UI controls and logos ?
    What are you using and what would you recommend for a noobish person like my self?
    Thanks again,
    VC

    When I got Flex 2 certified, I found this software to be
    fairly useful. The Flex 3 exam version is not out yet, so you might
    consider getting the version for Flex 2, as it still should be
    useful:
    Attest
    I suggest going through these FB help topics and all
    sub-topics TWICE, compiling all sample programs.
    Flex Programming Elements
    User Interfaces
    Advanced Flex Programming
    Data Access and Interconnectivity
    Application Design
    Application Development
    Application Deployment
    Custom Component Development
    MXML Custom Components
    ActionScript Custom Components
    Nonvisual Custom Components
    Flex Data Visualization Developer's Guide
    Using Flex Builder 3
    Developing AIR applications with Flex
    Programming ActionScript 3.0

  • LAN Design Recommendations?

    Hello,
    We have a 48 port 2960G switch distributing our LAN to numerous 24 port 2960G switches.
    We have been talking about bringing in another 48 port 2960G switch for redundancy.
    Can someone please let me know what the best design options are for this setup, in terms of redundancy and possibly even load balancing? I am interested to find out what Cisco technologies/features are recommended in this situation.
    I created a quick drawing of what we currently have and what we are thinking about. None of these devices have been put into production yet. Let me know if you have any questions, thanks.

    Ok, scratch all that. My project has been updated, to the point where my design needs to go back to the drawing board. I was told to implement 100% end-to-end redundancy (from the distribution switches to the servers).
    We have nine racks of servers for this project. Each rack will get a primary access switch, and a secondary access switch. That is a total of 18 access switches. These switches will all have uplinks to two distribution switches. For the servers themselves, we will utilize NIC adapter teaming. The server network adapters will be configured in a primary/secondary relationship. I have an example drawing of how I think one rack would be laid out.
    - The two distribution switches are 2960G, 48 ports (already purchased).
    - The access switches are 2960G, 24 ports (already purchased).
    - There will be a total of five vlans, but only two of them will carry around 90% of the traffic.
    - The network will be strictly data. There is no voice traffic.
    - There will be a ballpark of around 60 servers (no more than 10 servers on a rack). Almost half of these servers are only there as backups.
    - There will be no end-user workstations off any of these switches. This is strictly a server farm.
    - I do not have a strong feel of the overall traffic on this network, but I was told that it could pass a few terabytes per day (moderate-low load I suppose?).
    I have a number of questions....
    1. Can two 2960G switches effeciently handle the stress of connecting to 18 access switches each? There will also be other links on these distribution switches, such as connections to the internet and end-user access from our corporate network.
    2. All five vlans will be propagated to all of our racks. I was hoping to balance the traffic by vlan. Make one distribution/access switch the primary link for one vlan - while making the other distribution/access switch the primary link for a different vlan. Is that feasible under my circumstances?
    3. Etherchanneling the trunks (that is, having two or more links from a distribution switch to an access switch) would not be possible, because you can only configure six etherchannels per switch total. My distribution switches would have 18 different etherchannels (one channel for each access switch). Am I right in thinking this?
    4. Will NIC adaptor teaming on each server effectively work in this scenario, or is there a better solution for redundancy? I read this can be done with Cisco's Link-State Tracking feature.
    5. Are there any modification suggestions to my drawing, or is that the best end-to-end redundant method for my situation?
    Feel free to ask questions. I look forward to some feedback, and appreciate the help.

  • Design Recommendations for Evolving Business Needs

    Hi All,
    Over time it is feasible that business needs will evolve. This could include changing the data that is captured within business processes as well as workflows, changing core shell information, to having to reorganize the initially designed shell hierarchy.
    Wanted to find out from past experiences what guidelines/best practices/considerations there could be to prevent unintentionally designing shell hierarchy, shells and business processes that are either too inflexible for change or create major effort and rework in implementing it?
    Look forward to hearing any thoughts around this.
    Many Thanks
    Lim

    I meant no disrespect on the rating.  I guess I really don't want to spend more than $300 - $400.  I need to get a larger switch since I'm at capacity for my 8 port unmanaged switch, which was why I was looking at managed switches.  Honestly, I'm really only wanting a managed (layer 3) switch so I can isolate the guest wireless with VLAN's and have POE for the 1142 AP.  If I have to spend $1,000+ to do that I should probably rethink what I'm doing.  I'm sure the 3560x and 2960XR are great switches and have a lot of capabilities, but if I'm only using a small fraction of their capabilities then it doesn't make cost sense to go that route.  If there isn't any Cisco products in my price range with the features I'm looking for, feel free to tell me that.  I'll just have to see what else is out there or like I mentioned, rethink the guest internet access.
    Thanks
    Josh

  • Wireless Print Server Recommendations

    I have a MacBook (10.4) and a Dell Inspiron Notebook. I'm getting ready to purchase a wireless print server, which wireless print routers do you recommend that will be Mac friendly (i.e easy to set up with both my Dell & MacBook).

    It is really a question about the printer and its driver. The Mac situation is different from Windows. Most non-postscript printers come with Carbon drivers, where the comm protocol is written into the driver. USB non-postscript printers come USB-only drivers. To use the OS X built-in protocols, you need CUPS drivers (or postscript driver/printer).
    Except for one or two models out there, nearly all print servers use the industry standard comm protocols LPD, IPP, HP jetdirect or appletalk.
    Apple print servers are yet a different situation - they have firmware that works like Mac-to-Mac print sharing (so they can use USB-only drivers).
    HTH

  • Recommend Wireless Cable ROUTER Recommendations

    Can anyone recommend a good wireless Cable router for use in California?
    I've given up trying to get a new LINKSYS Wireless-G WRT544 (and new LINKSYS Cable Modem BEFCMU10) to work here.
    The specific problem: My 20MB-100MB .mov Quicktime movies consistantly stall while viewing them on the internet.
    I have very tediously ruled out all cables, browsers, workstations.
    The problem duplicates: Mac>LinksysModem (no router).
    The problem clears using Mac>BestModem (no router).
    The problem returns Mac>BestModem>LinksysRouter (reset to default with new firmware).
    I have given up on the Linksys brand.
    My Asante wireless router used to work right, but I think it has began failing and I am trying to replace it.
    Comments appreciated...

    Interesting recommendation...
    I typoed my original post.
    The Linksys router I returned today was a WRT54G v5 with new firmware: 1.00.2
    (I was not bold enough to add on "Alchemy Firmware" but thanks for the tip).
    UPDATE:
    I returned the Linksys Router and Linksys cabel modem.
    I hooked up a new Motorola cable modem SURFboard® model SB5120 and instantly got my movie speed back (same as with my old BestData CMX110).
    I have deduced that:
    1) The Linksys modem was the problem (since I had the problem plugged directly into it), and
    2) The Linksys router was the problem (since the problem returned when I plugged the router into a properly-functioning BestData modem).
    Again, I should add I did all the hardware, software resetting to default, including turning everything off and back on in proper sequence.
    I am currently running off my old Asante router, looking into the new routers (Apple router seems pretty expensive at $200).
    The http://www.jerrykindall.com/2005/06/23the_routerking.asp was especially useful (the D-Link DGL-4300 GamerLounge sound impressive, but at $300 may more than I need).

  • Wireless Camera/Printer Recommendation

    Hi, I'm looking for recommendations on a camera & printer. I want to send the photo from the camera to the printer wirelessly. I have a wireless internet connection. Thanks in advance for any recommendation.

    vmorris wrote:
    Thanks for the response. I guess it might be helpful if I clarify why I was looking at wireless. Every year, my library has an event where we do pictures with Santa. We usually have about 200 kids in a two-hour period. In the past, we've used a Polaroid instant camera, but the film is no longer made, so I'm trying to find a suitable replacement where I can take a picture and immediately print it out and hand it to the child.
    You'll gain a LOT more in terms of options if you add a PC (can be a laptop, probably even a basic netbook) to the mix.
    Given that the camera is going to be burning battery like crazy with that kind of usage, and your lighting setup is going to have to be wired (either continuous "hot lights" or maybe some monoblocs, nothing battery powered is going to last long through that kind of heavy use before needing a recharge), then you probably should find a camera that supports "tethered" operation with a PC.  Nearly all DSLRs support this capability.
    If you have location restraints that require the printer to be wired, it becomes a lot easier when a PC is in the mix.  There are very few solutions for direct wireless between a camera and printer, but many printers have Bluetooth or WiFi for usage with a PC.
    The Eye-Fi which myself and another poster mentioned might also do the trick, but in your particular situation, 200 shots/hour is going to tie everything to wall power, so you may as well use a USB cable to a PC.
    Pentax calls their tethering solution "Remote Assistant", I don't know what it's called for Canon and Nikon - I'm 100% certain it exists, but as my SLR is a Pentax I am only familiar with their name for tethering of a camera to a PC.
    *disclaimer* I am not now, nor have I ever been, an employee of Best Buy, Geek Squad, nor of any of their affiliate, parent, or subsidiary companies.

  • Wireless router brand recommendation?

    We're planning to go away from AOL and to Bellsouth or some other faster service provider soon. I stopped at Microcenter last nite to ask about wireless routers and the Mac guy there recommended a Belkin router over a Lynksis brand. He said the Lynksis router did not have Mac readers and would not be compatible with my G4 (although it would work with the pc I have).
    I've read many times in this discussion to stay away from Belkin as it's not a Mac friendly brand. So, can anyone confirm that the Belkin would, indeed, be a good router to buy or give me a recommendation on a similar, budget priced wireless router with ethernet connections.
    Thanks.

    Netgear are also a good solid Mac friendly brand, I've got a Wireless Netgear Access Point setup on my G5 & Xbox to connect to my ISP's Wi-Fi Modem, its works perfectly on both. I also know a few other people who use the brand's Wireless Routers & have no hassles what so ever. They're super easy to setup - just login with Safari & after a few clicks you have secure wire-free networking.
    Rory

  • Cisco best practice design recommendation for adding a subscriber?

    Hello all,
    We have UC Manager 7.1(3) running on a publisher and subscriber that is serving as the central voip to five (soon to be six) offices.  At what point does cisco recommend an additional subscriber be added to a cluster for call processing and load balancing?  I have been tearing through cisco's website and I am not finding this info.  I am sure it is there, just buried!
    Any feedback and links to the doc would be a huge help.
    Thank you.
    Rgds,
    Vicky

    Vicky,
    The answer you are looking for depends on a few things.  The most basic are:
    1) What hardware are you running? This will determine the maximum number of phones that can be registered to any one server. 
    2) The answer to the first question comes into play as you total up how many phones you need to accommodate throughout the entire cluster.  In addition, you want to provide adequate redundancy as well.  Right now, you have a 1:1 model (Sub should be primary call processing agent but can failover to Publisher).  As your cluster expands, you may need to consider a 2:1 model (2 active Subs, 1 backup) or continue with a 1:1 model.
    3) If your cluster has 1000+ phones, you need to look into going with a Pub, 2 Subs, and a dedicated TFTP server.
    Without getting too far into the weeds, take a look here first: http://www.cisco.com/en/US/docs/voice_ip_comm/cust_contact/contact_center/ipcc_enterprise/srnd/7x/c7ccmsrv.pdf
    Then, if you have additional questions - please ask!
    Hailey
    Please rate helpful posts!

Maybe you are looking for

  • Cancellation and Concerns

    I have some questions. I have three lines in my family plan. The contract of the first 2 lines already ended , but my line still has 10 months remaining. My bill ends on Dec 15th. I have paid the bill for Nov 16th - Dec 15th. Now I want to port all t

  • How to use jcop 3.2.7 with javacard2.2.2

    Hi everybody can any one tell me the answer for this question and which cards can i use?

  • Passing a hidden password via form field

    I have successfully done this with an html form but don't know how to accomplish the same thing in Flash. Here is what I've done in html: <table><tr> <td><form name = "form1" method="post" action="https://www.site.com/index.php"><input name="password

  • Can any body tell me how to pull SAP-CRM data into BW

    Hi BW guru`s, Does anybody tell me how to pull SAP-CRM data into BW. Is there any configuaration setings takes place in CRM system or BW system? Provide few of CRM datasources names (Transaction data Datasources) Please explain indetail and give some

  • Win7 x64 booting natively via EFI (no bios emulation)?

    Hi, has anyone got Win7 x64 booting natively via EFI without bios emulation or know of any resources elsewhere that discuss this? I understand it would have to be on an independent GUID partitioned HD... so not using bootcamp... ruling out all but Ma