cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
670
Views
4
Helpful
9
Replies

How Data traffic will be done between AP and Controller ?

palani2010
Level 1
Level 1

How Data traffic will be done between AP and Controller ? 

Is it go through CAPWAP, I believe CAPWAP used to both control plane and data plane ?

 

3 Accepted Solutions

Accepted Solutions

Yes correct 
only the UDP ports is different between control and data 

images.png

View solution in original post

@palani2010 

 Not exactly.

If the WLAN is in flexconnect mode, only control plane is sent between WLC and AP. Data Plane will be betwen AP and switch.

If the WLAN is in local mode, both control plane and data plane will be sent between WLC and AP.

View solution in original post

Configuring Data DTLS (GUI)

Follow the procedure to enable DTLS data encryption for the access points on the controller :

Procedure


Step 1

Click Configuration > Tags and Profile > AP Join.

Step 2

Click Add to create a new AP Join Profile or click an existing profile to edit it.

Step 3

Click CAPWAP > Advanced.

Step 4

Check Enable Data Encryption check box to enable Datagram Transport Layer Security (DTLS) data encryption.

Step 5

Click Update & Apply to Device.

View solution in original post

9 Replies 9

Yes correct 
only the UDP ports is different between control and data 

images.png

Thanks.

 

DTLS will be enable for control plane but not for data plane by default. 

How to check DTLS enabled for data plane from wlc 9800.

Configuring Data DTLS (GUI)

Follow the procedure to enable DTLS data encryption for the access points on the controller :

Procedure


Step 1

Click Configuration > Tags and Profile > AP Join.

Step 2

Click Add to create a new AP Join Profile or click an existing profile to edit it.

Step 3

Click CAPWAP > Advanced.

Step 4

Check Enable Data Encryption check box to enable Datagram Transport Layer Security (DTLS) data encryption.

Step 5

Click Update & Apply to Device.

If DTLS is not enabled means frames not will be encapsulated in capwap data plane traffic.

Correct me if i am wrong

no it will send via capwap with udp port 5247 but it not encap inside dtls.

MHM

marce1000
Hall of Fame
Hall of Fame

 

 - The topic is discussed in this document amongst other stuff : https://www.thenetworkdna.com/2023/02/basics-of-capwap-tunneling.html

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

@palani2010 

 Not exactly.

If the WLAN is in flexconnect mode, only control plane is sent between WLC and AP. Data Plane will be betwen AP and switch.

If the WLAN is in local mode, both control plane and data plane will be sent between WLC and AP.

Flex connect doubts

1. Need to configure flexconnect on wlan 

2. AP should be configured from local mode to flex mode

Flexconnect is the AP (not WLAN) mode required if you want to do WLAN local switching.

Once the AP is in Flexconnect mode the WLAN can be configured for central or local switching.  Centrally switched WLAN client data will still be tunnelled to WLC over CAPWAP while locally switched will breakout on local VLAN on AP switch port.  Flexconnect AP can have centrally and locally switched WLANs.

Review Cisco Networking for a $25 gift card