11-01-2005 06:20 PM - edited 07-04-2021 11:17 AM
I want to take the advantage of WDS. I have around 10 APs, 1 ACS, and 1 WLSE. May I know if the WLSM is a must?
11-01-2005 08:15 PM
The AP that you assign the role of "WDS" will act as an authentication proxy; i.e., the client's authentication traffic is routed through the WDS AP .. as the client roams, the hashed credentials are forwarded to the "next" AP that will handle that client's traffic ... the hashed credentials greatly improve the probability that the client will not lose the connection during the hand-over.
The WLSE is a wireless network management system. It will provide status and control for the entire network from a central location, including rogue management, client tracking, software updates (individual, several, or all... on a schedule or immediately).
The WLSE also provides the usual reporting capabilities.
The WLSM is only required if you need Layer 3 mobility (client that roams between subnets). The WLSM is the only device that has the necessary logical mechanisms to provide that type of service (accomplished using a point-to-multipoint tunnel).
L2 mobility can be done using the WDS (client roams within a single broadcast domain).
I believe the fast-roaming featues require using LEAP or EAP-Fast .... which could use the local database (on an AP) ... but only up to 50 client names/user names. The ACS give you the same authentication functionality (lots more, actually) but for a much larger client base.
Good Luck
Scott
11-01-2005 09:48 PM
Dear Scott,
If I only have one subnet for wireless, WLSM will not be a necessary component, right?
11-02-2005 07:10 AM
That's correct. You may (ought to, IMHO) use at least AP (possibly two )APs in dedicated WDS mode (one primary, optionally, one standby).
When you dedicate the AP to WDS, you shutdown the radios so that there is no client association and the AP can dedicate 100% of it's operation to WDS processes.
Good Luck
Scott
03-29-2007 05:45 AM
Is it possible to achieve this fast-roaming capability for EAP without LEAP or EAP-FAST (cisco proprietary).
I have a set of 1242 aps doing EAP authentication with an MS IAS box. Im reading in these forums that one of these APs could be configured with WDS. Does that mean I can cache the credentials on this AP (no radio) and go without an ACS box? My clients are not necessarily using aironet cards, so if that were a prerequisite then I guess the answer is no.
If there is a 50 user limit, I could probably live with that.
Please advise. Thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide