01-11-2019 02:13 AM - edited 07-05-2021 09:41 AM
Hi Team,
We are deploying central switching WLC Network with ISE for authentication. We have five sites on which central switching solution need to be deployed with different ip pool as per user requirement. As per my understanding L3 interface should be created on L3 switch for each site.
Do we need to create interface on WLC also as we created on L3 interface with L3 interface ip of switch as gateway?
Also, Do we need seprate authorization profile for each site as we have different vlan id?
01-11-2019 02:34 AM
do you mean a WLC central at each site? then yes each WLC needs a dynamic interface to drop the packets on the local vlan
and the packets need to be forwarded on L3 by a switch or router L3 interface in this vlan.
or do you mean a single central corporate WLC?
then the configuration for separate ip-pools is more complicated
01-11-2019 03:00 AM
Hi Pieterh,
Yes, its one WLC at central location.
01-11-2019 04:53 AM - edited 01-11-2019 04:58 AM
then my suggestion would be
- create multiple dynamic interfaces, one for each site (each with dhcp-scope, vlan-id)
- bundle these interfaces in an interface group
- create a wlan with interface pointing to the interface group
- for each site create an AP group for the corresponding AP's
- for each sites ap-group assign the wlan and specify the site-specific interface
this would give a single WLAN configuration over all sites with each site it's own dhcp range
edit: of course in each vlan you need a L3 address at the central switch/router to forward packets to the rest of the network
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide