Setup to show new vlan on top wlans wirelews controller năm 2024
We now need to set the Port to be connected to our Access-Point. In this example, we are going to use Port 2. Show
Step 8 – Set Port 2 to “General Mode” – To do this, right-click over Port 2 and click “Edit” Port Name: 2 Mode: General VLAN Membership: 1, 200, 300 Click “Save” Once above has been completed, we need to create 2 SSIDs. Step 9 – Create SSIDs – To do this, go to “SSID Profiles” Wireless > Access Point > SSID Profiles Right-click over “dlink1” and click “Edit” SSID: Corporative_N (VID 200) Click “Save” Step 10 – Create the “Guest” SSID – Right-click over “dlink2” and click “Edit” SSID: Guest_N (VID 300) Click “Save” Step 10 – Push changes to Access-Points – To do this, go to “AP Profile” Wireless > Access Point > AP Profile You will see the “Profile Status” shows “Associated-Modified” – To push new configuration to the APs, right-click over top and click “Apply” Step 11 – You should now be able to connect to either SSIDs and receive the correct IP. Our result is as follows: A VLAN is a switched network that is logically segmented by function, project team, or application, without regard to the physical locations of the users. VLANs have the same attributes as physical LANs, but you can group end stations even if they are not physically located on the same LAN segment. Any controller port can belong to a VLAN, and unicast, broadcast, and multicast packets are forwarded and flooded only to end stations in the VLAN. Each VLAN is considered a logical network, and packets destined for stations that do not belong to the VLAN must be forwarded through a router or a controller supporting fallback bridging. Because a VLAN is considered a separate logical network, it contains its own bridge Management Information Base (MIB) information. VLANs are often associated with IP subnet. For example, all the end stations in a particular IP subnet belong to the same VLAN. Interface VLAN membership on the controller is assigned manually on an interface-by-interface basis. When you assign controller interfaces to VLANs by using this method, it is known as interface-based, or static, VLAN membership. Supported VLANsThe controller supports VLANs in VTP client, server, and transparent modes. VLANs are identified by a number from 1 to 4094. VLAN 1 is the default VLAN and is created during system initialization. All of the VLANs except 1002 to 1005 are available for user configuration. VLAN Port Membership ModesYou configure a port to belong to a VLAN by assigning a membership mode that specifies the kind of traffic the port carries and the number of VLANs to which it can belong. When a port belongs to a VLAN, the controller learns and manages the addresses associated with the port on a per-VLAN basis. Table 1. Port Membership Modes and Characteristics Membership Mode VLAN Membership Characteristics VTP Characteristics Static-access A static-access port can belong to one VLAN and is manually assigned to that VLAN. VTP is not required. If you do not want VTP to globally propagate information, set the VTP mode to transparent. To participate in VTP, there must be at least one trunk port on the controller connected to a trunk port of a second controller. Trunk IEEE 802.1Q) :
A trunk port is a member of all VLANs by default, including extended-range VLANs, but membership can be limited by configuring the allowed-VLAN list. VTP is recommended but not required. VTP maintains VLAN configuration consistency by managing the addition, deletion, and renaming of VLANs on a network-wide basis. VTP exchanges VLAN configuration messages with other controller over trunk links. Note If a client VLAN has two subnets, a primary subnet and a secondary subnet, the static IP address is not supported on the secondary subnet. Consider the following SVI configuration example: interface VlanX ip address a.b.c.254 255.255.255.0 secondary ip address a.d.e.254 255.255.255.0 In this scenario, you can't allocate the secondary subnet for clients with static IP addresses. VLAN Configuration FilesConfigurations for VLAN IDs 1 to 1005 are written to the vlan.dat file (VLAN database), and you can display them by entering the show vlan privileged EXEC command. The vlan.dat file is stored in flash memory. If the VTP mode is transparent, they are also saved in the controller running configuration file. You use the interface configuration mode to define the port membership mode and to add and remove ports from VLANs. The results of these commands are written to the running-configuration file, and you can display the file by entering the show running-config privileged EXEC command. When you save VLAN and VTP information (including extended-range VLAN configuration information) in the startup configuration file and reboot the controller, the controller configuration is selected as follows:
Note Ensure that you delete the vlan.dat file along with the configuration files before you reset the switch configuration using write erase command. This ensures that the switch reboots correctly on a reset. Normal-Range VLAN Configuration GuidelinesFollow these guidelines when creating and modifying normal-range VLANs in your network:
Extended-Range VLAN Configuration GuidelinesExtended-range VLANs are VLANs with IDs from 1006 to 4094. Follow these guidelines when creating extended-range VLANs:
Prerequisites for VLANsThe following are prerequisites and considerations for configuring VLANs:
Restrictions for VLANsThe following are restrictions for VLANs:
How to Configure VLANs How to Configure Normal-Range VLANsYou can set these parameters when you create a new normal-range VLAN or modify an existing VLAN in the VLAN database:
You can cause inconsistency in the VLAN database if you attempt to manually delete the vlan.dat file. If you want to modify the VLAN configuration, follow the procedures in this section. Creating or Modifying an Ethernet VLANBefore you beginWith VTP version 1 and 2, if the controller is in VTP transparent mode, you can assign VLAN IDs greater than 1006, but they are not added to the VLAN database. The controller supports only Ethernet interfaces. ProcedureCommand or Action Purpose Step 1 vlan vlan-id Example:
Enters a VLAN ID, and enters VLAN configuration mode. Enter a new VLAN ID to create a VLAN, or enter an existing VLAN ID to modify that VLAN. Note The available VLAN ID range for this command is 1 to 4094. Step 2 name vlan-name Example:
(Optional) Enters a name for the VLAN. If no name is entered for the VLAN, the default is to append the vlan-id value with leading zeros to the word VLAN. For example, VLAN0004 is a default VLAN name for VLAN 4. Step 3 media { ethernet | fd-net | trn-net } Example:
Configures the VLAN media type. Step 4 show vlan {name vlan-name | id vlan-id} Example:
Verifies your entries. Assigning Static-Access Ports to a VLAN (GUI)ProcedureStep 1 Choose Step 2 Click the VLAN tab. Step 3 To assign Port Members, click the interfaces that are to be included as port members from the Available list and click on the arrow to move it to the Associated list. Step 4 Click Update & Apply to Device. Assigning Static-Access Ports to a VLANYou can assign a static-access port to a VLAN without having VTP globally propagate VLAN configuration information by disabling VTP (VTP transparent mode). For more information on static-access ports, see VLAN Port Membership Modes. If you assign an interface to a VLAN that does not exist, the new VLAN is created. ProcedureCommand or Action Purpose Step 1 configure terminal Example:
Enters global configuration mode Step 2 interface interface-id Example:
Enters the interface to be added to the VLAN. Step 3 switchport mode access Example:
Defines the VLAN membership mode for the port (Layer 2 access port). Step 4 switchport access vlan vlan-id Example:
Assigns the port to a VLAN. Valid VLAN IDs are 1 to 4094. Step 5 end Example:
Returns to privileged EXEC mode. Step 6 show running-config interface interface-id Example:
0 Verifies the VLAN membership mode of the interface. Step 7 show interfaces interface-idswitchport Example:
1 Verifies your entries in the Administrative Mode and the Access Mode VLAN fields of the display. How to Configure Extended-Range VLANsExtended-range VLANs enable service providers to extend their infrastructure to a greater number of customers. The extended-range VLAN IDs are allowed for any switchport commands that allow VLAN IDs. With VTP version 1 or 2, extended-range VLAN configurations are not stored in the VLAN database, but because VTP mode is transparent, they are stored in the controller running configuration file, and you can save the configuration in the startup configuration file. Extended-range VLANs created in VTP version 3 are stored in the VLAN database. Creating an Extended-Range VLAN (GUI)ProcedureStep 1 Choose . Step 2 In the VLAN page, click ADD. Step 3 Enter the extended range VLAN ID in the VLAN ID field. The extended range is between range is 1006 and 4094. Step 4 Enter a VLAN name in the Name field. Step 5 Save the configuration. Creating an Extended-Range VLANProcedureCommand or Action Purpose Step 1 configure terminal Example:
Enters global configuration mode. Step 2 vlan vlan-id Example:
3 Enters an extended-range VLAN ID and enters VLAN configuration mode. The range is 1006 to 4094. Step 3 show vlan id vlan-id Example:
4 Verifies that the VLAN has been created. Monitoring VLANsTable 2. Privileged EXEC show Commands Command Purpose show interfaces [vlan vlan-id] Displays characteristics for all interfaces or for the specified VLAN configured on the controller. show vlan [ access-map name | brief | group |id vlan-id | ifindex | mtu | name name | summary ] Displays parameters for all VLANs or the specified VLAN on the controller. The following command options are available:
name—Displays the VTP VLAN information by specified name. How to check VLAN in WLC?WLAN Controller VLAN Configuration in GUI From the WLC GUI, navigate to Controller > Interfaces. The Interfaces page lists all the interfaces that are configured on the WLC. In order to create a new dynamic interface, click New. Enter the Interface Name and VLAN Identifier, and click Apply. How do I show VLAN status?Use the show vlan command to verify your VLAN configuration. This command displays all switchports and their associated VLAN as well as the VLAN status and some extra parameters that relate to Token Ring and FDDI trunks. How to view VLANs on Cisco router?I typically use “show int status” to get a quick overview of which vlans are used by each port. Use "show run int portname " to see the running config of particular port. Which tab in the WLAN configuration screen of a WLC configures VLAN mapping?WLAN creation and SSID to VLAN mapping is configured on the WLAN tab of the WLC configuration. Each WLAN SSID is associated to a VLAN previously created and linked to a pysical interface on Controller tab. |