<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic which vlan  AP management  in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608256#M141401</link>
    <description>&lt;P&gt;which vlan &amp;nbsp;AP management &amp;nbsp;should be ? Do you have any switch management vlan on your network ? What IP should I give to AP1,2 &amp;amp; 3 in this case ?&lt;/P&gt;&lt;P&gt;SSID-1 :&amp;nbsp;vlan 1&lt;/P&gt;&lt;P&gt;SSID-2 : vlan 2&lt;/P&gt;&lt;P&gt;AP-mgt : vlan x ???&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do you have pre-defined DHCP pool for vlan 1 &amp;amp; 2 ?&lt;/P&gt;&lt;P&gt;Let us know to help out the required config&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Rasika&lt;/P&gt;&lt;P&gt;**** Pls rate all useful responses ****&lt;/P&gt;</description>
    <pubDate>Mon, 17 Nov 2014 04:45:48 GMT</pubDate>
    <dc:creator>Rasika Nayanajith</dc:creator>
    <dc:date>2014-11-17T04:45:48Z</dc:date>
    <item>
      <title>Best practice configuring 2602i aironet 50-70 users.</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608248#M141393</link>
      <description>&lt;P&gt;Hi Im new to cisco wireless AP.&lt;/P&gt;&lt;P&gt;I need your advice and best way to configure wireless AP. we have 50-70 users in 2 buildings&amp;nbsp; 3 storey. 2 vlans&lt;/P&gt;&lt;P&gt;I have 2 cisco aironet 2602i and 1 1142 aironet.. it is okey if AP-1142 to be access points? and 2 -2602i will be the bridge? can anyone give me configurations?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 08:56:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608248#M141393</guid>
      <dc:creator>butchoi_seso</dc:creator>
      <dc:date>2021-07-05T08:56:42Z</dc:date>
    </item>
    <item>
      <title>Here is my opinion. It is</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608249#M141394</link>
      <description>&lt;P&gt;Here is my opinion. It is best to have an access point in each floor and more than one if a single access point doesn't provide the coverage you want. Now that being said, you can use a seperate AP as a bridge if you are trying to connect two building together via wireless. The bridge would have antennas on the outside and you would use the proper antenna to provide a stable wireless link between the two. &amp;nbsp;This is how I would implement a solution like what you have to ensure you can provide enough wireless coverage for the end devices and a link between the buildings.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Scott&lt;/P&gt;</description>
      <pubDate>Sun, 16 Nov 2014 13:52:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608249#M141394</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2014-11-16T13:52:00Z</dc:date>
    </item>
    <item>
      <title>The only time I'd implement</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608250#M141395</link>
      <description>&lt;P&gt;The only time I'd implement point-to-point wireless&amp;nbsp;bridge is when it's only temporary. &amp;nbsp;I wouldn't recommend a bridge for permanent solution. &amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 16 Nov 2014 22:38:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608250#M141395</guid>
      <dc:creator>Leo Laohoo</dc:creator>
      <dc:date>2014-11-16T22:38:19Z</dc:date>
    </item>
    <item>
      <title>Hi Scott and Leo Thanks for</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608251#M141396</link>
      <description>&lt;P&gt;Hi Scott and Leo Thanks for the reply. Great advise!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If i put access point in each floor can i assign one SSID 1&amp;nbsp; for every floor ? it posible vlan 1 and 2 can connect with the same SSID 1 and 3 access points? what should be the configurations for all the AP?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Nov 2014 00:52:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608251#M141396</guid>
      <dc:creator>butchoi_seso</dc:creator>
      <dc:date>2014-11-17T00:52:39Z</dc:date>
    </item>
    <item>
      <title>Are these Autonomous APs ? If</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608252#M141397</link>
      <description>&lt;P&gt;Are these Autonomous APs&amp;nbsp;? If not you require either WLC or convert those to Autonomous.&lt;/P&gt;&lt;P&gt;If you access CLI via AP console &amp;amp; issue "show version" you can verify this. (Cisco/Cisco will be the credential if these new APs)&lt;/P&gt;&lt;P&gt;Also what type of switch do you have to connect these 3 AP &amp;amp; power them (Hope it is Gigabit switch &amp;amp; &amp;nbsp;PoE)&lt;/P&gt;&lt;P&gt;Let us know, we can help accordingly&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Rasika&lt;/P&gt;&lt;P&gt;**** Pls rate all useful responses ****&lt;/P&gt;</description>
      <pubDate>Mon, 17 Nov 2014 01:09:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608252#M141397</guid>
      <dc:creator>Rasika Nayanajith</dc:creator>
      <dc:date>2014-11-17T01:09:24Z</dc:date>
    </item>
    <item>
      <title>Hi Manannalage, Are these</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608253#M141398</link>
      <description>&lt;P&gt;Hi Manannalage,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Are these Autonomous APs&amp;nbsp;?&lt;STRONG&gt; YES&lt;/STRONG&gt; . We dont have WLC for now. i have&amp;nbsp; Layer 3 switch 3560 g series yes this is&amp;nbsp; Gigabit switch &amp;amp; &amp;nbsp;PoE. this switch is configured 2 vlans only.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Nov 2014 01:24:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608253#M141398</guid>
      <dc:creator>butchoi_seso</dc:creator>
      <dc:date>2014-11-17T01:24:18Z</dc:date>
    </item>
    <item>
      <title>Hi </title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608254#M141399</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for the confirmation.&lt;/P&gt;
&lt;P&gt;Since you are new to Cisco wireless I would go with a very basic configuration.&lt;/P&gt;
&lt;P&gt;If you configure all your APs with this basic configuration &amp;amp; plug it to 3 switchport configured for a DHCP vlan (where you want wireless users to take IP from), your wireless should work.&lt;/P&gt;
&lt;P&gt;Replace &amp;lt;AP_HOSTNAME&amp;gt;, &amp;lt;SSID_NAME&amp;gt; &amp;amp; &amp;lt;SSID_PASSWORD&amp;gt; as required. Also default username password (Cisco/Cisco) you can change for better security.&lt;/P&gt;

&lt;PRE&gt;
&lt;SPAN style="font-family:courier new,courier,monospace;"&gt;conf t
hostname &amp;lt;AP_HOSTNAME&amp;gt;
!
dot11 ssid &amp;lt;SSID_NAME&amp;gt;
   authentication open
   authentication key-management wpa version 2
   guest-mode
   wpa-psk ascii &amp;lt;SSID_PASSWORD&amp;gt;
!
interface Dot11Radio0
 encryption mode ciphers aes-ccm
 ssid &amp;lt;SSID_NAME&amp;gt;
 no shutdown
!
interface Dot11Radio1
 channel width 40-above
 encryption mode ciphers aes-ccm
 ssid &amp;lt;SSID_NAME&amp;gt;
 no shutdown
!
interface BVI1
 ip address dhcp
!
end
write memory
!&lt;/SPAN&gt;&lt;/PRE&gt;

&lt;P&gt;In this case&amp;nbsp;AP will take an IP from the same subent. If you want to create multiple SSIDs &amp;amp; also put AP &amp;nbsp;onto separate mgmt vlan,&amp;nbsp;&amp;nbsp;then we may need to create sub-interfaces &amp;amp; configuration would be little bit complex (but can be done &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; ).&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Let us know&lt;/P&gt;
&lt;P&gt;**** Pls do not forget to rate our responses if that is useful to you ****&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;HTH&lt;/P&gt;
&lt;P&gt;Rasika&lt;/P&gt;</description>
      <pubDate>Mon, 17 Nov 2014 02:06:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608254#M141399</guid>
      <dc:creator>Rasika Nayanajith</dc:creator>
      <dc:date>2014-11-17T02:06:09Z</dc:date>
    </item>
    <item>
      <title>Hi Manannalage,Our L3 Switch</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608255#M141400</link>
      <description>&lt;P&gt;Hi Manannalage,&lt;/P&gt;&lt;P&gt;Our L3 Switch port 1, port 2 and port 3 is different vlans and subnet&lt;/P&gt;&lt;P&gt;vlan 1 172.22.7.x , vlan 2 172.22.10.x.&amp;nbsp; i want this 2 subnets to see in all 3 AP's.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;any advise?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Nov 2014 04:33:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608255#M141400</guid>
      <dc:creator>butchoi_seso</dc:creator>
      <dc:date>2014-11-17T04:33:05Z</dc:date>
    </item>
    <item>
      <title>which vlan  AP management</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608256#M141401</link>
      <description>&lt;P&gt;which vlan &amp;nbsp;AP management &amp;nbsp;should be ? Do you have any switch management vlan on your network ? What IP should I give to AP1,2 &amp;amp; 3 in this case ?&lt;/P&gt;&lt;P&gt;SSID-1 :&amp;nbsp;vlan 1&lt;/P&gt;&lt;P&gt;SSID-2 : vlan 2&lt;/P&gt;&lt;P&gt;AP-mgt : vlan x ???&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do you have pre-defined DHCP pool for vlan 1 &amp;amp; 2 ?&lt;/P&gt;&lt;P&gt;Let us know to help out the required config&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Rasika&lt;/P&gt;&lt;P&gt;**** Pls rate all useful responses ****&lt;/P&gt;</description>
      <pubDate>Mon, 17 Nov 2014 04:45:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608256#M141401</guid>
      <dc:creator>Rasika Nayanajith</dc:creator>
      <dc:date>2014-11-17T04:45:48Z</dc:date>
    </item>
    <item>
      <title>Hi rasika,which vlan  AP</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608257#M141402</link>
      <description>&lt;P&gt;Hi rasika,&lt;/P&gt;&lt;P&gt;which vlan &amp;nbsp;AP management &amp;nbsp;should be ?&lt;/P&gt;&lt;P&gt;Do you have any switch management vlan on your network ? &lt;STRONG&gt;Yes&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;What IP should I give to AP1,2 &amp;amp; 3 in this case ?&lt;/P&gt;&lt;P&gt;for AP 1- 172.22.10.X&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; AP 2- 172.22.7.X&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; AP 3- 172.21.10.X- this vlan 3 - 3rd floor sorry i forgot to mention.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;SSID-1 :&amp;nbsp;vlan 1&lt;/P&gt;&lt;P&gt;SSID-2 : vlan 2&lt;/P&gt;&lt;P&gt;AP-mgt : vlan 3 ???- sorry dont have idea about this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do you have pre-defined DHCP pool for vlan 1 &amp;amp; 2 ? YES we have DHCP server&amp;nbsp; subnet pool=172.22.10.x, 172.22.7.x, 172.21.10.x&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for the reply.&lt;/P&gt;</description>
      <pubDate>Mon, 17 Nov 2014 07:58:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608257#M141402</guid>
      <dc:creator>butchoi_seso</dc:creator>
      <dc:date>2014-11-17T07:58:35Z</dc:date>
    </item>
    <item>
      <title>Ok, Here we go.</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608258#M141403</link>
      <description>&lt;P&gt;Ok, Here we go.&lt;/P&gt;
&lt;P&gt;I assumed a switch management vlan 999 &amp;amp; subnet 192.168.99.0/24. In my case switch configured with vlan 999 - 192.168.99.1 &amp;amp; &amp;nbsp;that would be the default gateway configuration for the AP.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I would assign those 3 AP IP like below&lt;/P&gt;
&lt;P&gt;AP-01 : 192.168.99.101&lt;/P&gt;
&lt;P&gt;AP-01 : 192.168.99.102&lt;/P&gt;
&lt;P&gt;AP-01 : 192.168.99.102&lt;/P&gt;
&lt;P&gt;In your case modify this vlan/subnet information accordingly.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here is the AP-01 configuration. AP-02 &amp;amp; AP-03 configuration would be same excep the BVI 1 IP address &amp;amp; hostname.&lt;/P&gt;

&lt;PRE&gt;
conf t
!
hostname AP-01
!
dot11 ssid SSID-1
   vlan 1
   authentication open
   authentication key-management wpa version 2
   mbssid guest-mode
   wpa-psk ascii &amp;lt;SSID_1_PASSWORD&amp;gt;
!
dot11 ssid SSID-2
   vlan 2
   authentication open
   authentication key-management wpa version 2
   mbssid guest-mode
   wpa-psk ascii &amp;lt;SSID_2_PASSWORD&amp;gt;
!
dot11 ssid SSID-3
   vlan 3
   authentication open
   authentication key-management wpa version 2
   mbssid guest-mode
   wpa-psk ascii &amp;lt;SSID_3_PASSWORD&amp;gt;
!
interface Dot11Radio0
 encryption vlan 1 mode ciphers aes-ccm
 encryption vlan 2 mode ciphers aes-ccm
 encryption vlan 3 mode ciphers aes-ccm
 mbssid
 ssid SSID-1
 ssid SSID-2
 ssid SSID-3
 no shut
!
interface Dot11Radio1
 channel width 40-above
 encryption vlan 1 mode ciphers aes-ccm
 encryption vlan 2 mode ciphers aes-ccm
 encryption vlan 3 mode ciphers aes-ccm
 mbssid
 ssid SSID-1
 ssid SSID-2
 ssid SSID-3
 no shut
!
interface Dot11Radio0.1
 encapsulation dot1Q 1
 bridge-group 10
!
interface Dot11Radio0.2
 encapsulation dot1Q 2
 bridge-group 20
!
interface Dot11Radio0.3
 encapsulation dot1Q 3
 bridge-group 30
!
interface Dot11Radio0.999
 encapsulation dot1Q 999 native
 bridge-group 1
!
interface Dot11Radio1.1
 encapsulation dot1Q 1
 bridge-group 10
!
interface Dot11Radio1.2
 encapsulation dot1Q 2
 bridge-group 20
!
interface Dot11Radio1.3
 encapsulation dot1Q 3
 bridge-group 30
!
interface Dot11Radio1.999
 encapsulation dot1Q 999 native
 bridge-group 1
!
interface GigabitEthernet0.1
 encapsulation dot1Q 1
 bridge-group 10
!
interface GigabitEthernet0.2
 encapsulation dot1Q 2
 bridge-group 20
!
interface GigabitEthernet0.3
 encapsulation dot1Q 3
 bridge-group 30
!
interface GigabitEthernet0.999
 encapsulation dot1Q 999 native
 bridge-group 1
!
interface BVI1
 ip address 192.168.99.101 255.255.255.0
ip default-gateway 192.168.99.1
!
end
write memory

&lt;/PRE&gt;

&lt;P&gt;Here is the switch port configuration those AP connects. In your case make sure AP management vlan replaced 999 value.&amp;nbsp;&lt;/P&gt;

&lt;PRE&gt;
 description AP-01
 switchport trunk native vlan 999
&amp;nbsp;switchport trunk allow vlan 1-3, 999
 switchport mode trunk&lt;/PRE&gt;

&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Once you do this all your 3 AP advertise these 3 SSIDs. When user connect to SSID-1 they will be on vlan 1, SSID-2 users will be on vlan 2 &amp;amp; SSID-3 users will be on vlan 3.&lt;/P&gt;
&lt;P&gt;Hope this is what your looking for &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;****** Please do not forget to rate our responses if that is useful to you ******&lt;/P&gt;
&lt;P&gt;HTH&lt;/P&gt;
&lt;P&gt;Rasika&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Nov 2014 10:19:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608258#M141403</guid>
      <dc:creator>Rasika Nayanajith</dc:creator>
      <dc:date>2014-11-17T10:19:16Z</dc:date>
    </item>
    <item>
      <title>Thanks again! i have 2 quick</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608259#M141404</link>
      <description>&lt;P&gt;Thanks again! i have 3 quick question before i go to the configurations.&lt;/P&gt;
&lt;P&gt;1. Can i use same password for all the SSID?&lt;/P&gt;
&lt;P&gt;2. Can i use same SSID for all the AP's?&lt;/P&gt;
&lt;P&gt;3. Is this necessary to trunk all the ports in L3?&lt;/P&gt;

&lt;PRE&gt;
description AP-01
 switchport trunk native vlan 999
&amp;nbsp;switchport trunk allow vlan 1-3, 999
 switchport mode trunk&lt;/PRE&gt;</description>
      <pubDate>Mon, 17 Nov 2014 14:30:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608259#M141404</guid>
      <dc:creator>butchoi_seso</dc:creator>
      <dc:date>2014-11-17T14:30:34Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608260#M141405</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;PRE&gt;
&lt;SPAN style="font-size: 14px;"&gt;1. Can i use same password for all the SSID?&lt;/SPAN&gt;&lt;/PRE&gt;

&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;Yes,&lt;/SPAN&gt;&lt;/P&gt;

&lt;PRE&gt;
 &lt;SPAN style="font-size: 14px;"&gt;2. Can i use same SSID for all the AP's?&lt;/SPAN&gt;&lt;/PRE&gt;

&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;Yes, if you want to all those SSID advertise by all 3 APs. In this way user move from one level to&amp;nbsp;other level, will roam to the other AP without dropping their connection (assuming you have proper wireless coverage)&lt;/SPAN&gt;&lt;/P&gt;

&lt;PRE&gt;
&lt;SPAN style="font-size: 14px;"&gt;3. Is this necessary to trunk all the ports in L3?&lt;/SPAN&gt;&lt;/PRE&gt;

&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;Yes, If you want to pass multiple vlan to AP, you have to configure switchport connected to AP&amp;nbsp;as a Trunk Port. Trunk port config is L2&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;**** Pls rate all useful responses ******&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;HTH&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;Rasika&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Nov 2014 18:16:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608260#M141405</guid>
      <dc:creator>Rasika Nayanajith</dc:creator>
      <dc:date>2014-11-17T18:16:45Z</dc:date>
    </item>
    <item>
      <title>Hi rasika,Here is my</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608261#M141406</link>
      <description>&lt;P&gt;Hi rasika,&lt;/P&gt;&lt;P&gt;Here is my configurations FOR ALL THE 2 AP's, i did not include&lt;STRONG&gt; AP3&lt;/STRONG&gt;. for your comments.&lt;/P&gt;&lt;P&gt;Building configuration...&lt;/P&gt;&lt;P&gt;Current configuration : 3652 bytes&lt;BR /&gt;!&lt;BR /&gt;! Last configuration change at 22:32:37 UTC Mon Feb 24 2014&lt;BR /&gt;version 15.3&lt;BR /&gt;no service pad&lt;BR /&gt;service timestamps debug datetime msec&lt;BR /&gt;service timestamps log datetime msec&lt;BR /&gt;service password-encryption&lt;BR /&gt;!&lt;BR /&gt;hostname LEDO_AP&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;logging rate-limit console 9&lt;BR /&gt;enable secret 5 $1$SBYI$730mrJamTyAoJhM1BrXD10&lt;BR /&gt;!&lt;BR /&gt;no aaa new-model&lt;BR /&gt;no ip source-route&lt;BR /&gt;no ip cef&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;dot11 syslog&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;dot11 ssid TODO_AP1&lt;BR /&gt;&amp;nbsp;&amp;nbsp; vlan 20&lt;BR /&gt;&amp;nbsp;&amp;nbsp; authentication open&lt;BR /&gt;&amp;nbsp;&amp;nbsp; authentication key-management wpa version 2&lt;BR /&gt;&amp;nbsp;&amp;nbsp; mbssid guest-mode&lt;BR /&gt;&amp;nbsp;&amp;nbsp; wpa-psk ascii 7 03035704040E2D5C411E1C17&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;username CISCO password 7 032752180500&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;bridge irb&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface Dot11Radio0&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;&amp;nbsp;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;&amp;nbsp;encryption vlan 10 mode ciphers aes-ccm&lt;BR /&gt;&amp;nbsp;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;&amp;nbsp;encryption vlan 20 mode ciphers aes-ccm&lt;BR /&gt;&amp;nbsp;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;&amp;nbsp;ssid TODO_AP1&lt;BR /&gt;&amp;nbsp;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;&amp;nbsp;antenna gain 0&lt;BR /&gt;&amp;nbsp;mbssid&amp;nbsp; &amp;nbsp;&lt;BR /&gt;&amp;nbsp;station-role root&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface Dot11Radio0.1&lt;BR /&gt;&amp;nbsp;encapsulation dot1Q 1&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface Dot11Radio0.2&lt;BR /&gt;&amp;nbsp;encapsulation dot1Q 2&lt;BR /&gt;&amp;nbsp;bridge-group 20&lt;BR /&gt;&amp;nbsp;bridge-group 20 subscriber-loop-control&lt;BR /&gt;&amp;nbsp;bridge-group 20 spanning-disabled&lt;BR /&gt;&amp;nbsp;bridge-group 20 block-unknown-source&lt;BR /&gt;&amp;nbsp;no bridge-group 20 source-learning&lt;BR /&gt;&amp;nbsp;no bridge-group 20 unicast-flooding&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface Dot11Radio0.3&lt;BR /&gt;&amp;nbsp;encapsulation dot1Q 3&lt;BR /&gt;&amp;nbsp;bridge-group 30&lt;BR /&gt;&amp;nbsp;bridge-group 30 subscriber-loop-control&lt;BR /&gt;&amp;nbsp;bridge-group 30 spanning-disabled&lt;BR /&gt;&amp;nbsp;bridge-group 30 block-unknown-source&lt;BR /&gt;&amp;nbsp;no bridge-group 30 source-learning&lt;BR /&gt;&amp;nbsp;no bridge-group 30 unicast-flooding&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface Dot11Radio0.999&lt;BR /&gt;&amp;nbsp;encapsulation dot1Q 999 native&lt;BR /&gt;&amp;nbsp;bridge-group 1&lt;BR /&gt;&amp;nbsp;bridge-group 1 subscriber-loop-control&lt;BR /&gt;&amp;nbsp;bridge-group 1 spanning-disabled&lt;BR /&gt;&amp;nbsp;bridge-group 1 block-unknown-source&lt;BR /&gt;&amp;nbsp;no bridge-group 1 source-learning&lt;BR /&gt;&amp;nbsp;no bridge-group 1 unicast-flooding&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface Dot11Radio1&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;&amp;nbsp;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;&amp;nbsp;encryption vlan 10 mode ciphers aes-ccm&lt;BR /&gt;&amp;nbsp;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;&amp;nbsp;encryption vlan 20 mode ciphers aes-ccm&lt;BR /&gt;&amp;nbsp;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;&amp;nbsp;ssid TODO_AP1&lt;BR /&gt;&amp;nbsp;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;&amp;nbsp;antenna gain 0&lt;BR /&gt;&amp;nbsp;peakdetect&lt;BR /&gt;&amp;nbsp;dfs band 3 block&lt;BR /&gt;&amp;nbsp;mbssid&amp;nbsp; &amp;nbsp;&lt;BR /&gt;&amp;nbsp;channel width 40-above&lt;BR /&gt;&amp;nbsp;channel dfs&lt;BR /&gt;&amp;nbsp;station-role root&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface Dot11Radio1.1&lt;BR /&gt;&amp;nbsp;encapsulation dot1Q 1&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface Dot11Radio1.2&lt;BR /&gt;&amp;nbsp;encapsulation dot1Q 2&lt;BR /&gt;&amp;nbsp;bridge-group 20&lt;BR /&gt;&amp;nbsp;bridge-group 20 subscriber-loop-control&lt;BR /&gt;&amp;nbsp;bridge-group 20 spanning-disabled&lt;BR /&gt;&amp;nbsp;bridge-group 20 block-unknown-source&lt;BR /&gt;&amp;nbsp;no bridge-group 20 source-learning&lt;BR /&gt;&amp;nbsp;no bridge-group 20 unicast-flooding&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface Dot11Radio1.3&lt;BR /&gt;&amp;nbsp;encapsulation dot1Q 3&lt;BR /&gt;&amp;nbsp;bridge-group 30&lt;BR /&gt;&amp;nbsp;bridge-group 30 subscriber-loop-control&lt;BR /&gt;&amp;nbsp;bridge-group 30 spanning-disabled&lt;BR /&gt;&amp;nbsp;bridge-group 30 block-unknown-source&lt;BR /&gt;&amp;nbsp;no bridge-group 30 source-learning&lt;BR /&gt;&amp;nbsp;no bridge-group 30 unicast-flooding&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface Dot11Radio1.999&lt;BR /&gt;&amp;nbsp;encapsulation dot1Q 999 native&lt;BR /&gt;&amp;nbsp;bridge-group 1&lt;BR /&gt;&amp;nbsp;bridge-group 1 subscriber-loop-control&lt;BR /&gt;&amp;nbsp;bridge-group 1 spanning-disabled&lt;BR /&gt;&amp;nbsp;bridge-group 1 block-unknown-source&lt;BR /&gt;&amp;nbsp;no bridge-group 1 source-learning&lt;BR /&gt;&amp;nbsp;no bridge-group 1 unicast-flooding&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface GigabitEthernet0&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;&amp;nbsp;duplex auto&lt;BR /&gt;&amp;nbsp;speed auto&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface GigabitEthernet0.1&lt;BR /&gt;&amp;nbsp;encapsulation dot1Q 1&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface GigabitEthernet0.2&lt;BR /&gt;&amp;nbsp;encapsulation dot1Q 2&lt;BR /&gt;&amp;nbsp;bridge-group 20&lt;BR /&gt;&amp;nbsp;bridge-group 20 spanning-disabled&lt;BR /&gt;&amp;nbsp;no bridge-group 20 source-learning&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface GigabitEthernet0.3&lt;BR /&gt;&amp;nbsp;encapsulation dot1Q 3&lt;BR /&gt;&amp;nbsp;bridge-group 30&lt;BR /&gt;&amp;nbsp;bridge-group 30 spanning-disabled&lt;BR /&gt;&amp;nbsp;no bridge-group 30 source-learning&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface GigabitEthernet0.999&lt;BR /&gt;&amp;nbsp;encapsulation dot1Q 999 native&lt;BR /&gt;&amp;nbsp;bridge-group 1&lt;BR /&gt;&amp;nbsp;bridge-group 1 spanning-disabled&lt;BR /&gt;&amp;nbsp;no bridge-group 1 source-learning&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;interface BVI1&lt;BR /&gt;&amp;nbsp;mac-address 7426.ac1a.c49d&lt;BR /&gt;&amp;nbsp;ip address 172.22.7.x 255.255.255.0&lt;BR /&gt;&amp;nbsp;ipv6 address dhcp&lt;BR /&gt;&amp;nbsp;ipv6 address autoconfig&lt;BR /&gt;&amp;nbsp;ipv6 enable&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;ip default-gateway 172.22.7.x&lt;BR /&gt;ip forward-protocol nd&lt;BR /&gt;ip http server&lt;BR /&gt;no ip http secure-server&lt;BR /&gt;ip http help-path &lt;A href="http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag" target="_blank"&gt;http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag&lt;/A&gt;&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;bridge 1 route ip&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;line con 0&lt;BR /&gt;line vty 0 4&lt;BR /&gt;&amp;nbsp;login local&lt;BR /&gt;&amp;nbsp;transport input all&lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;end&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Tommorow i will schedule the testing, im still requesting to trunk the L3.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 18 Nov 2014 09:26:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608261#M141406</guid>
      <dc:creator>butchoi_seso</dc:creator>
      <dc:date>2014-11-18T09:26:47Z</dc:date>
    </item>
    <item>
      <title>You have used vlan 10 &amp; 20</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608262#M141407</link>
      <description>&lt;P&gt;You have used vlan 10 &amp;amp; 20 instead of 1 &amp;amp; 2 as you originally posted.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can simply copy the config I have given &amp;amp; change the SSID_Name, Password,&lt;/P&gt;&lt;P&gt;Depend on the IP range you have to give for&amp;nbsp;AP management &amp;nbsp;you can change the BVI IP &amp;amp; default gateway. remember that vlan has to be native (or untagged). vlan 999 used as example in my case.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Rasika&lt;/P&gt;&lt;P&gt;**** Pls rate all useful responses ****&lt;/P&gt;</description>
      <pubDate>Tue, 18 Nov 2014 10:47:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608262#M141407</guid>
      <dc:creator>Rasika Nayanajith</dc:creator>
      <dc:date>2014-11-18T10:47:54Z</dc:date>
    </item>
    <item>
      <title>HI Raska, Yes i changed it</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608263#M141408</link>
      <description>&lt;P&gt;HI Raska,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yes i changed it because that's the vlan configurations in our L3 switch. cause &lt;STRONG&gt;vlan 10&lt;/STRONG&gt; - admin1- &lt;STRONG&gt;vlan 20&lt;/STRONG&gt; admin2&lt;/P&gt;&lt;P&gt;For BVI IP address 172.22.7.34 255.255.255.0&lt;/P&gt;&lt;P&gt;ip default-gateway 172.22.7.2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please advise!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 18 Nov 2014 13:30:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608263#M141408</guid>
      <dc:creator>butchoi_seso</dc:creator>
      <dc:date>2014-11-18T13:30:14Z</dc:date>
    </item>
    <item>
      <title>Hiseems like I am not helping</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608264#M141409</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;seems like I am not helping you. so far&amp;nbsp;no ratings &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Anyway ,&amp;nbsp;to be clear please provide this info (represent in X)&lt;/P&gt;&lt;P&gt;vlan 10 - 172..x.x.0/24 (SSID name : xxxx)&lt;/P&gt;&lt;P&gt;vlan 20 - 172.x.x.0/24 &amp;nbsp;(SSID name : xxxx)&lt;/P&gt;&lt;P&gt;vlan x &amp;nbsp;- &amp;nbsp;172.22.7.0 /24&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Note that BVI interface should be un-tagged. So vlan X should be the native vlan of the trunk link. If 172.22.7.0/24 is not suitable for that you need to choose a different subnet for AP management.(in otherwords that subnet cannot be use for AP management IP &amp;amp; given for user under SSID configuration)&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Rasika&lt;/P&gt;&lt;P&gt;**** Pls rate all useful responses ***&lt;/P&gt;</description>
      <pubDate>Tue, 18 Nov 2014 20:58:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608264#M141409</guid>
      <dc:creator>Rasika Nayanajith</dc:creator>
      <dc:date>2014-11-18T20:58:24Z</dc:date>
    </item>
    <item>
      <title>Hi Rasika, I'm not aware the</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608265#M141410</link>
      <description>&lt;P&gt;Hi Rasika,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm not aware the ratings sorry, let me check this so i can rate your answers.&lt;/P&gt;&lt;P&gt;You help a lot rasika your time and efforts is enough and most of all the configurations you send to me. your a bright cisco engineer. &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Anyway ,&amp;nbsp;to be clear please provide this info (represent in X)&lt;/P&gt;&lt;P&gt;vlan 10 - 172..22.7.0/24 (SSID name : TODO_AP1)&lt;/P&gt;&lt;P&gt;vlan 20 - 172.22.10.0/24 &amp;nbsp;(SSID name : TODO_AP1)&lt;/P&gt;&lt;P&gt;vlan x &amp;nbsp;- &amp;nbsp;172.21.10.0 /24&lt;/P&gt;</description>
      <pubDate>Wed, 19 Nov 2014 00:22:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608265#M141410</guid>
      <dc:creator>butchoi_seso</dc:creator>
      <dc:date>2014-11-19T00:22:10Z</dc:date>
    </item>
    <item>
      <title>here are few things to note</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608266#M141411</link>
      <description>&lt;P&gt;here are few things to note here.&lt;/P&gt;&lt;P&gt;You cannot assign two vlan for the same SSID in autonomous AP. if you want single SSID, then you have to choose one vlan.&lt;/P&gt;&lt;P&gt;You mentioned you would like to put 172.22.7.34 for the AP which is vlan 10. Since you wan to use this vlan for SSID (wireless users traffic will tag to vlan 10), you cannot use the same vlan for AP management which should be untagged.&lt;/P&gt;&lt;P&gt;You need to have separate vlan/subnet to assign for AP management. You can assign vlan 1 if it is ok &amp;nbsp;&amp;amp; if you have defined gateway for vlan 1 on your switch.&lt;/P&gt;&lt;P&gt;Once we clear on this I can post you the required configuration.&lt;/P&gt;&lt;P&gt;by the way thanks for using the&amp;nbsp;rating system &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Rasika&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Nov 2014 00:36:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608266#M141411</guid>
      <dc:creator>Rasika Nayanajith</dc:creator>
      <dc:date>2014-11-19T00:36:26Z</dc:date>
    </item>
    <item>
      <title>Hi Rasika, If i can't assign</title>
      <link>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608267#M141412</link>
      <description>&lt;P&gt;Hi Rasika,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If i can't assign two vlans for the same SSID is there other configurations for this?&lt;/P&gt;&lt;P&gt;what should be the best way to use 2 AP's one SSID in my network with all the vlans and subnets we have?&lt;/P&gt;&lt;P&gt;Here is the configurations of the L3 switch&lt;/P&gt;&lt;P&gt;interface Vlan1&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Vlan10&lt;BR /&gt;&amp;nbsp;ip address 172.22.10.2 255.255.255.0&lt;BR /&gt;&amp;nbsp;ip helper-address 172.22.x.x&lt;BR /&gt;!&lt;BR /&gt;interface Vlan20&lt;BR /&gt;&amp;nbsp;ip address 172.22.7.2 255.255.255.0&lt;BR /&gt;&amp;nbsp;ip helper-address 172.22.x.x.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please advise&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Nov 2014 01:32:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/best-practice-configuring-2602i-aironet-50-70-users/m-p/2608267#M141412</guid>
      <dc:creator>butchoi_seso</dc:creator>
      <dc:date>2014-11-19T01:32:51Z</dc:date>
    </item>
  </channel>
</rss>

