<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Thanks Stephen. However, i in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/guest-network-redesign-anchor-wlc-removal/m-p/2796872#M40189</link>
    <description>&lt;P&gt;&lt;G class="gr_ gr_20 gr-alert gr_gramm Punctuation only-ins replaceWithoutSep" id="20" data-gr-id="20"&gt;Thanks&lt;/G&gt; Stephen. However, &lt;G class="gr_ gr_75 gr-alert gr_tiny gr_spell ContextualSpelling multiReplace" id="75" data-gr-id="75"&gt;i&lt;/G&gt; still can't ping the WLC's interface in the guest &lt;G class="gr_ gr_58 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="58" data-gr-id="58"&gt;vlan&lt;/G&gt;&amp;nbsp;and vice versa. I can ping any other host in this &lt;G class="gr_ gr_119 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="119" data-gr-id="119"&gt;vlan&lt;/G&gt;. The &lt;G class="gr_ gr_202 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="202" data-gr-id="202"&gt;vlan&lt;/G&gt; has been added to the trunk connecting the WLC with the Core switch. Somehow this interface is being isolated as it were on the LAN side. DHCP isn't the issue here. I have the guest &lt;G class="gr_ gr_819 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="819" data-gr-id="819"&gt;vlan&lt;/G&gt; added on all access layer switches as well as core switches. I have added it to all required trunks as well. I can ping the &lt;G class="gr_ gr_1277 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="1277" data-gr-id="1277"&gt;sonciwall&lt;/G&gt;&amp;nbsp;interface and other hosts in this &lt;G class="gr_ gr_1367 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="1367" data-gr-id="1367"&gt;vlan&lt;/G&gt; except the interface on WLC. Thanks.&lt;/P&gt;</description>
    <pubDate>Fri, 06 Nov 2015 20:12:16 GMT</pubDate>
    <dc:creator>grochowskir</dc:creator>
    <dc:date>2015-11-06T20:12:16Z</dc:date>
    <item>
      <title>Guest Network redesign - Anchor WLC removal</title>
      <link>https://community.cisco.com/t5/wireless/guest-network-redesign-anchor-wlc-removal/m-p/2796870#M40187</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Due to various reasons, I've been asked to limit the number of wireless controllers in our infrastructure from 4 (2 on the &amp;nbsp;LAN side and 2 in the DMZ) to 2. I am considering removing the DMZ controllers which are currently serving Open Guest Wifi traffic. To the best of my understanding, this involves the following:&lt;/P&gt;
&lt;P&gt;-creation of the guest VLAN intended for guest traffic on our LAN access layer switches and collapsed core switches and its addition on the trunks&lt;/P&gt;
&lt;P&gt;-creation of an interface on the WLC for the guest VLAN&lt;/P&gt;
&lt;P&gt;-&lt;G class="gr_ gr_3181 gr-alert gr_gramm Grammar multiReplace" id="3181" data-gr-id="3181"&gt;addition&lt;/G&gt; of the guest VLAN to the trunk leading to the&amp;nbsp;WLC&lt;/P&gt;
&lt;P&gt;-creation of the &lt;G class="gr_ gr_5030 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="5030" data-gr-id="5030"&gt;wifi&lt;/G&gt;&amp;nbsp;guest WLAN utilizing the newly created guest network interface on the WLC&lt;/P&gt;
&lt;P&gt;-creation of an interface on our Sonicwall appliance to which the guest VLAN would be connected to. This interface would belong to the DMZ zone, thus isolating LAN traffic from the guest &lt;G class="gr_ gr_4324 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="4324" data-gr-id="4324"&gt;wifi&lt;/G&gt; traffic. This interface would also serve as a gateway for this guest VLAN.&lt;/P&gt;
&lt;P&gt;-creation of the DHCP scope for the guest VLAN traffic. This could be done on the WLC or the Sonicwall. I've tried both methods.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Here are the two scenarios and issues that &lt;G class="gr_ gr_6968 gr-alert gr_tiny gr_spell ContextualSpelling multiReplace" id="6968" data-gr-id="6968"&gt;i&lt;/G&gt; am facing:&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;1. DHCP on the Sonicwall&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;A. via physical wire&lt;/P&gt;
&lt;P&gt;A host is connected to a port in the guest vlan via physical wire on the L2 switch. It is able to obtain an IP address via DHCP, ping the gateway (&lt;G class="gr_ gr_4694 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="4694" data-gr-id="4694"&gt;sonicwall&lt;/G&gt;&amp;nbsp;interface), ping other wired hosts on the same subnet and browse the web. I can't however, ping the WLCs interface assigned to this guest VLAN.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;B. via Wifi&lt;/P&gt;
&lt;P&gt;The wireless client is able to connect to the guest Wifi network but is unable obtain an IP address from the Sonicwall. Ultimately, the wireless client ends up with a &lt;G class="gr_ gr_7465 gr-alert gr_spell ContextualSpelling multiReplace" id="7465" data-gr-id="7465"&gt;self assigned&lt;/G&gt; IP address 169.x.x.x.&amp;nbsp;&lt;SPAN&gt;Tried adding an address manually to the wireless interface just to eliminate a possible DHCP issue, however, the client still couldn't ping the gateway interface on the Sonicwall nor any other client within the guest VLAN as well as the WLCs interface in the guest VLAN.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;2. DHCP on the WLC&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;A. via physical wire&lt;/P&gt;
&lt;P&gt;A host is connected to a port in the guest &lt;G class="gr_ gr_9034 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="9034" data-gr-id="9034"&gt;vlan&lt;/G&gt;&amp;nbsp;via physical wire on the L2 switch. It is unable to obtain an IP address via DHCP and ends up with a self-assigned IP address. Tried adding an IP address manually just to eliminate a possible DHCP issue and the client was able to ping the gateway interface on the Sonicwall and any other wired host within this same VLAN as well as access the Internet. Still unable to ping the WLCs interface in the guest VLAN.&lt;/P&gt;
&lt;P&gt;B. via Wifi&lt;/P&gt;
&lt;P&gt;The wireless client is able to connect to the guest Wifi network and it obtains an IP address from the WLC. It can't, however, access the Internet, nor ping any other wired host on the guest &lt;G class="gr_ gr_9705 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="9705" data-gr-id="9705"&gt;vlan&lt;/G&gt;. It can ping the WLC interface that is assigned to the guest VLAN and other &lt;G class="gr_ gr_11780 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="11780" data-gr-id="11780"&gt;wifi&lt;/G&gt; hosts within this same guest network.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;The WLC can't ping the Sonicwall gateway nor any other host on the guest &lt;G class="gr_ gr_9713 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="9713" data-gr-id="9713"&gt;vlan&lt;/G&gt;&amp;nbsp;in either scenario. The LAN WLC is connected directly to the core switch.&lt;/P&gt;
&lt;P&gt;Can someone please point me towards the right direction here? I am attaching diagrams with current and proposed network layouts. Thank you in advance.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 11:11:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/guest-network-redesign-anchor-wlc-removal/m-p/2796870#M40187</guid>
      <dc:creator>grochowskir</dc:creator>
      <dc:date>2021-07-05T11:11:22Z</dc:date>
    </item>
    <item>
      <title>if you want to use the</title>
      <link>https://community.cisco.com/t5/wireless/guest-network-redesign-anchor-wlc-removal/m-p/2796871#M40188</link>
      <description>&lt;P&gt;if you want to use the SonicWall as the DHCP server, you need to disable DHCP proxy on the WLC.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;HTH,&lt;/P&gt;
&lt;P&gt;Steve&lt;/P&gt;</description>
      <pubDate>Fri, 06 Nov 2015 19:47:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/guest-network-redesign-anchor-wlc-removal/m-p/2796871#M40188</guid>
      <dc:creator>Stephen Rodriguez</dc:creator>
      <dc:date>2015-11-06T19:47:43Z</dc:date>
    </item>
    <item>
      <title>Thanks Stephen. However, i</title>
      <link>https://community.cisco.com/t5/wireless/guest-network-redesign-anchor-wlc-removal/m-p/2796872#M40189</link>
      <description>&lt;P&gt;&lt;G class="gr_ gr_20 gr-alert gr_gramm Punctuation only-ins replaceWithoutSep" id="20" data-gr-id="20"&gt;Thanks&lt;/G&gt; Stephen. However, &lt;G class="gr_ gr_75 gr-alert gr_tiny gr_spell ContextualSpelling multiReplace" id="75" data-gr-id="75"&gt;i&lt;/G&gt; still can't ping the WLC's interface in the guest &lt;G class="gr_ gr_58 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="58" data-gr-id="58"&gt;vlan&lt;/G&gt;&amp;nbsp;and vice versa. I can ping any other host in this &lt;G class="gr_ gr_119 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="119" data-gr-id="119"&gt;vlan&lt;/G&gt;. The &lt;G class="gr_ gr_202 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="202" data-gr-id="202"&gt;vlan&lt;/G&gt; has been added to the trunk connecting the WLC with the Core switch. Somehow this interface is being isolated as it were on the LAN side. DHCP isn't the issue here. I have the guest &lt;G class="gr_ gr_819 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="819" data-gr-id="819"&gt;vlan&lt;/G&gt; added on all access layer switches as well as core switches. I have added it to all required trunks as well. I can ping the &lt;G class="gr_ gr_1277 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="1277" data-gr-id="1277"&gt;sonciwall&lt;/G&gt;&amp;nbsp;interface and other hosts in this &lt;G class="gr_ gr_1367 gr-alert gr_spell ContextualSpelling ins-del multiReplace" id="1367" data-gr-id="1367"&gt;vlan&lt;/G&gt; except the interface on WLC. Thanks.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Nov 2015 20:12:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/guest-network-redesign-anchor-wlc-removal/m-p/2796872#M40189</guid>
      <dc:creator>grochowskir</dc:creator>
      <dc:date>2015-11-06T20:12:16Z</dc:date>
    </item>
  </channel>
</rss>

