cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
436
Views
10
Helpful
3
Replies

cisco flexconnect

Anjana A
Level 1
Level 1

Hello Team,

we are using flex connect mode of access point, in which the data traffic switching locally and central authentication.

here i have doubt, whether the user authentication traffic (control traffic) how it will reach controller.

user>> cawaptunnel>> wlc>>> aaa

                      ( or)

user>> ap>> switch>> coreswitch>> isp?? wlc.

whether the branch site isp have any impact on the control traffic.

in case if the branch has high bandwidth utilization users cant authenticate or any disconnection may happen?

 

Regards,

Anjana

3 Replies 3

Haydn Andrews
VIP Alumni
VIP Alumni

In flexconnect central auth local switching traffic flow is:

Based onf 802.1x Auth (remove RADIUS if just PSK):

Client>AP>WLC (Via what ever transport is between AP and WLC (LAN/WAN etc)>RADIUS server (via what ever transport is between WLC and RADIUS Server)>WLC>AP> Client

In event of high bandwidth WANs then recommend QOS to proritise CAPWAP control traffic.

Other option is Flexconnect Local Auth if you need everything to remain within the site

*****Help out other by using the rating system and marking answered questions as "Answered"*****
*** Please rate helpful posts ***

Hello Andrew..

pls confirm how to priotrise the capwap tunnel traffic, by priotrise the ap management vlan or qos on the router?

 

Regards,

Anjana

Haydn Andrews
VIP Alumni
VIP Alumni

On the AP management VLAN create a QOS policy to poritise CAPWAP Control UDP 5246 to the WLCs

*****Help out other by using the rating system and marking answered questions as "Answered"*****
*** Please rate helpful posts ***
Review Cisco Networking for a $25 gift card