Using 5300Xl Switch Network Address Translation With The Acm; The Role Of Vlans; Client Vlans - HP ProCurve J8162A Supplementary Manual

Access controller xl module to the hp procurve 6400cl/5300xl/3400cl
Table of Contents

Advertisement

Using 5300xl Switch Network Address Translation with
the ACM
The Secure Access 700wl series products and the ACM provide network
address translation for client traffic. The 5300xl switch's network address
translation feature is not recommended for use with the ACM.

The Role of VLANs

VLANs are used by the Access Controller xl Module to manage client traffic
through the switch. Downlink client ports, connecting to access points, either
directly or through an intermediate network, are assigned as untagged mem­
bers to a unique VLAN that also includes the downlink port as a tagged
member. Traffic from the downlink client port, passing inbound through the
downlink port on its way to the Access Controller xl Module, is normally
tagged with the downlink client port's VLAN ID (VID), except when traffic is
being bridged (see "Operating Notes" on page 31). The correct authentication
policies and access policies are applied to this inbound client traffic by the
Access Controller xl Module, based, in part, on the VLAN tag the traffic carries.
In a similar fashion, ACM traffic outbound to the network uses a VLAN to
connect to the correct switch port. The uplink network port is an untagged
member of the uplink VLAN, which by default is the 5300xl DEFAULT_VLAN.
All switch ports that belong to the uplink VLAN are uplink network ports. The
uplink VLAN may be changed by creating a new VLAN and assigning the uplink
port to it as an untagged member. Any ports that belong to the new VLAN are
uplink network ports, carrying ACM traffic to and from the network.

Client VLANs

Client VLANs are special VLANs used by the module for client traffic. They
have the following characteristics:
Up to 24 client VLANs, depending on your configuration, may be used
on a 5300xl switch. If two Access Controller xl Modules are installed
in a 5300xl switch, the total number of VLANs used by the two
modules may not exceed 24.
Uplink network ports may not be members of a client VLAN.
Using 5300xl Features with the Access Controller xl Module
11

Advertisement

Table of Contents
loading

This manual is also suitable for:

Procurve 6400clProcurve 5300xlProcurve 3400clXl module

Table of Contents