12-20-2013 01:08 AM - edited 07-04-2021 01:27 AM
Hello all,
Is it possible to create multiply management interfaces to the controller? For example to isolate ssh and https access from CAPWAP traffic and use different than the management interface (IP) for snmp etc.
Thanks!
12-20-2013 01:16 AM
Hi,
As per my knowledge u can not create more management interface.
If you have old controllers then u can create AP manager interfaces:
https://supportforums.cisco.com/docs/DOC-28149
Regards
12-20-2013 01:17 AM
No, WLC have a single management interface.
For OOB management you can configure the service port in certain controllers like 5508,5760
HTH
Rasika
**** Pls rate all useful responses ****
12-20-2013 04:43 AM
Thanks for the both answers.
But what makes the management interface so special compared to another interfaces? How does the WLC differentiate the management interface from the rest interfaces?
12-20-2013 04:46 AM
Management is for all management, mobility, syslog, snmp, NTP type traffic. Dynamic interfaces are for client traffic and or radius traffic if enabled. Managemt also does client traffic if the WLAN is assigned to the management interface.
Sent from Cisco Technical Support iPhone App
12-20-2013 04:48 AM
adding to scott:
the management interface IP address is used for GUI and CLI access.
A dynamic interface is simply an interface that maps a WLAN to a wired vlan or subnet.
Dynamic interfaces to be used to control and secure the traffic on the WLAN just like you would use vlans and subnets on the lan for that purpose.
Interface Roles
1.Management interface: Used for in-band management, connectivity to AAA, and other enterprise services, and for Layer 2 (and Layer 3 on the 5508) AP auto-discovery and association.
2.AP-manager interfaces: Source IP address used for AP to controller communication and Layer 3 AP auto-discovery and association.
Note: AP-manager interfaces are not required on the 5508 WLAN controller.
3.Service port interface: Provides out-of-band management of the controller (GUI access to Controller Web)
4. Virtual interface: Used for DHCP Relay, Layer 3 security authentication, and mobility management
5. Dynamic interface: Supplies mapping of WLANs to VLANs on the wired network
Regards
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide