Dual Foreign Controller with multiple anchor controllers
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-15-2023 04:31 AM
Hi Everyone,
Is it possible to have Dual Foreign Controller (Active and Standby) in the Central USA and have multiple anchor wlc across the US to route guest wi-fi internet traffic locally.
For example :- Dual Foreign Controllers (Active and Standby) in Kansas, Install Anchor in Lebanon in Kansas, Austin, New York city, Toronto, San Francisco and Chicago, and route guest wi-fi ssid traffics locally.
APs in Austin register in Kansas City Foreign Controllers and route guest wi-fi's internet traffic locally via Austin.
What are other options available to route guest WiFi traffic locally?
Thank you in advance.
- Labels:
-
Wireless LAN Controller
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-15-2023 04:46 AM
Hi @royal99
Attaching a guide for your reference. In short, it is possible to have 71 anchor wlc, limited to 24 per wlan.
But, your scenario is not a good idea because foreign wlc will round robim the clients among anchor and you can not separate by location.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-15-2023 05:09 AM - edited 08-15-2023 05:20 AM
@Flavio Miranda
Thank you for the assistance and information.
are other another options available to route guest WiFi traffic locally? (exclude creating vlan for guest sssid in switches and use ACL to restrict traffices between guest and other networks)
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-15-2023 05:44 AM
@royal99 You can take a look in SDWAN but it will require redesign your whole network.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-15-2023 10:32 AM
Am I missing something? Why would you use a foreign/anchor design if you plan to route guest WiFi traffic locally?
That sounds like standard Flexconnect local switching which does not require foreign/anchor.
The whole point of foreign/anchor is to switch all traffic centrally at the anchor, not locally.
https://www.cisco.com/c/en/us/support/docs/wireless/catalyst-9800-series-wireless-controllers/213912-configure-mobility-anchor-on-catalyst-98.html
"All client traffic for the anchored WLANs is encapsulated into the mobility tunnel to be sent to the anchor. It does not exit locally."
For normal flex local switching see:
https://www.cisco.com/c/en/us/support/docs/wireless/catalyst-9800-series-wireless-controllers/213945-understand-flexconnect-on-9800-wireless.html
https://www.cisco.com/c/en/us/td/docs/wireless/controller/9800/17-9/config-guide/b_wl_17_9_cg/m_vewlc_flex_connect.html
Please click Helpful if this post helped you and Select as Solution (drop down menu at top right of this reply) if this answered your query.
------------------------------
TAC recommended codes for AireOS WLC's and TAC recommended codes for 9800 WLC's
Best Practices for AireOS WLC's, Best Practices for 9800 WLC's and Cisco Wireless compatibility matrix
Check your 9800 WLC config with Wireless Config Analyzer using "show tech wireless" output or "config paging disable" then "show run-config" output on AireOS and use Wireless Debug Analyzer to analyze your WLC client debugs
Field Notice: FN63942 APs and WLCs Fail to Create CAPWAP Connections Due to Certificate Expiration
Field Notice: FN72424 Later Versions of WiFi 6 APs Fail to Join WLC - Software Upgrade Required
Field Notice: FN72524 IOS APs stuck in downloading state after 4 Dec 2022 due to Certificate Expired
- Fixed in 8.10.196.0, latest 9800 releases, 8.5.182.12 (8.5.182.13 for 3504) and 8.5.182.109 (IRCM, 8.5.182.111 for 3504)
Field Notice: FN70479 AP Fails to Join or Joins with 1 Radio due to Country Mismatch, RMA needed
How to avoid boot loop due to corrupted image on Wave 2 and Catalyst 11ax Access Points (CSCvx32806)
Field Notice: FN74035 - Wave2 APs DFS May Not Detect Radar After Channel Availability Check Time
Leo's list of bugs affecting 2800/3800/4800/1560 APs
Default AP console baud rate from 17.12.x is 115200 - introduced by CSCwe88390
