二层组网 隧道转发 大部配置在三层 AC旁挂配置无线控制部分

 

 

 


<AC6605>dis cur

#100管理AC-AP  101业务  102业务  110互联AC-核心

#如果DHCP都配置在核心 则AC要配全vlan 且互通 如果DHCP配置在AC只配置100管理 和 110互联

vlan batch 100 to 102 110

interface Vlanif100
ip address 192.168.100.2 255.255.255.0
#
interface Vlanif110
ip address 192.168.110.2 255.255.255.0
#
interface GigabitEthernet0/0/1
port link-type trunk
port trunk allow-pass vlan 100 to 102 110
#
ip route-static 0.0.0.0 0.0.0.0 192.168.110.1
#
capwap source interface vlanif100

wlan

security-profile name sec-1
security wpa-wpa2 psk pass-phrase 12345678a aes
security-profile name sec-2

security open

ssid-profile name ssid-1
ssid wifi001
ssid-profile name ssid-2
ssid guest

vap-profile name vap-1
forward-mode tunnel
service-vlan vlan-id 101
ssid-profile ssid-1
security-profile sec-1


vap-profile name vap-2
forward-mode tunnel
service-vlan vlan-id 102
ssid-profile ssid-2
security-profile sec-2

regulatory-domain-profile name default
  country CN


ap auth-mode no-auth

ap-group name my_aps

radio 0

vap-profile vap-1 wlan 1
vap-profile vap-2 wlan 2
radio 1
vap-profile vap-1 wlan 1
vap-profile vap-2 wlan 2
radio 2
vap-profile vap-1 wlan 1
vap-profile vap-2 wlan 2

ap-group name default   无验证AP直接加入AP组情况下, 先加入到默认的default组 通过 ap-regroup ap-id 0,1,2... newgroup 新组名 加入到新AP组中

ap-id 0 type-id 37 ap-mac 00e0-fc06-36c0 ap-sn 210235448310B6089A75
ap-group my_aps
ap-id 1 type-id 37 ap-mac 00e0-fc23-2e70 ap-sn 210235448310EB3E0F4F
ap-group my_aps

return
<AC6605>

 

<L3>dis cur
#
sysname L3

#全系vlan
vlan batch 100 to 102 110
#

dhcp enable

#
interface Vlanif100
description forTunnelToControl&UserData
ip address 192.168.100.1 255.255.255.0
dhcp select interface
#
interface Vlanif101
ip address 192.168.101.1 255.255.255.0
dhcp select interface
#
interface Vlanif102
ip address 192.168.102.1 255.255.255.0
dhcp select interface
#
interface Vlanif110
description L3-to-AC Link
ip address 192.168.110.1 255.255.255.0

#
interface GigabitEthernet0/0/1
port link-type trunk
port trunk allow-pass vlan 100 to 102 110
#
interface GigabitEthernet0/0/2
port link-type access
port default vlan 100
#
interface GigabitEthernet0/0/3
port link-type access
port default vlan 100
#
interface LoopBack0
ip address 1.1.1.1 255.255.255.255

return
<L3>
<L3>

posted @ 2023-03-09 21:37  techNote  阅读(57)  评论(0编辑  收藏  举报