<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic HREAP behavior in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/hreap-behavior/m-p/2351074#M95490</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Where is your internet link to servcing these branch users ? Do they have own internet connection at each branch ? or are they coming to your central office to acces internet ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rasika&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 25 Oct 2013 20:29:03 GMT</pubDate>
    <dc:creator>Rasika Nayanajith</dc:creator>
    <dc:date>2013-10-25T20:29:03Z</dc:date>
    <item>
      <title>HREAP behavior</title>
      <link>https://community.cisco.com/t5/wireless/hreap-behavior/m-p/2351073#M95489</link>
      <description>&lt;P&gt;Hello all, &lt;/P&gt;&lt;P&gt;I have multiple remote office locations and I have implemented HREAP using central authentication and local switching. The offices have 3 vlans. switch/router mngmnt, Wireless management and the office vlan. The access points are 3502I. The code is 7.0.235.3 . &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The access point IP addresses come from a DHCP scope on the local router. This is is a specific range i.e. 10.20.x.x.&amp;nbsp;&amp;nbsp; This space is only permited to communicate with the central office controllers and denied any other traffic . The AP network is locked down with both an inbound and outbound set of ACL's on the office router. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The AP port on the switch is setup as a trunk and management is the native vlan .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Our IT Security group came to me with a concern. They were seeing apple traffic over the 10.20.x.x network and alot of ICMP traffic from the internet. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Questionis how is the user traffic that is setup to be switched locally getting on the AP management network ? and not staying on the user vlan ?&lt;/P&gt;</description>
      <pubDate>Sun, 04 Jul 2021 08:09:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/hreap-behavior/m-p/2351073#M95489</guid>
      <dc:creator>michael.lussier</dc:creator>
      <dc:date>2021-07-04T08:09:46Z</dc:date>
    </item>
    <item>
      <title>HREAP behavior</title>
      <link>https://community.cisco.com/t5/wireless/hreap-behavior/m-p/2351074#M95490</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Where is your internet link to servcing these branch users ? Do they have own internet connection at each branch ? or are they coming to your central office to acces internet ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rasika&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 Oct 2013 20:29:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/hreap-behavior/m-p/2351074#M95490</guid>
      <dc:creator>Rasika Nayanajith</dc:creator>
      <dc:date>2013-10-25T20:29:03Z</dc:date>
    </item>
    <item>
      <title>HREAP behavior</title>
      <link>https://community.cisco.com/t5/wireless/hreap-behavior/m-p/2351075#M95492</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;All traffic internet included comes back to the main office. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 Oct 2013 21:01:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/hreap-behavior/m-p/2351075#M95492</guid>
      <dc:creator>michael.lussier</dc:creator>
      <dc:date>2013-10-25T21:01:14Z</dc:date>
    </item>
    <item>
      <title>Re: HREAP behavior</title>
      <link>https://community.cisco.com/t5/wireless/hreap-behavior/m-p/2351076#M95494</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Unless you have any other centrally switch WLAN, all traffic &lt;SPAN style="font-size: 10pt;"&gt;except capwap mgt traffic (src or dst to AP mgt IP) &lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;should terminate on your branch local swtich &amp;amp; then go via normal ip routing path to your cerntral office.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best if you could a packet capture of your branch WAN link &amp;amp; confirm 100% you would see user traffic coming from 10.20.x.x network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am not &lt;SPAN style="font-size: 10pt;"&gt;100% &lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;sure whether all packets will be locally switched or first packet will be centrally switched &amp;amp; rest will be locally switched. Your packet capture would prove this.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;HTH&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;Rasika&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;**** Pls rate all useful responses *****&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 Oct 2013 21:30:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/hreap-behavior/m-p/2351076#M95494</guid>
      <dc:creator>Rasika Nayanajith</dc:creator>
      <dc:date>2013-10-25T21:30:45Z</dc:date>
    </item>
  </channel>
</rss>

