Using A Radius Server For Dynamic Mobility; Group Assignment; Viewing Vlans Configured On The Access Point - Allen-Bradley Stratix 5100 User Manual

Wireless access point/workgroup bridge
Hide thumbs Also See for Stratix 5100:
Table of Contents

Advertisement

3. When the client authenticates successfully, the RADIUS server maps the
client to a specific VLAN, regardless of the VLAN mapping defined for
the SSID the client is using on the access point. If the server does not
return any VLAN attribute for the client, the client is assigned to the
VLAN specified by the SSID mapped locally on the access point.
These are the RADIUS user attributes used for vlan-id assignment. Each
attribute must have a common tag value between 1...31 to identify the grouped
relationship.
• IETF 64 (Tunnel Type): Set this attribute to VLAN.
• IETF 65 (Tunnel Medium Type): Set this attribute to 802.
• IETF 81 (Tunnel Private Group ID): Set this attribute to vlan-id.
Using a RADIUS Server for Dynamic Mobility Group Assignment
You can configure a RADIUS server to dynamically assign mobility groups to
users or user groups. This eliminates the need to configure multiple SSIDs on the
access point. Instead, you need to configure only one SSID per access point.
When users associate to the SSID, the access point passes their login information
to WLSM, that passes the information to the RADIUS server. Based on the login
information, the RADIUS server assigns the users to the appropriate mobility
group and sends their credentials back.
To enable dynamic mobility group assignment, you need to configure the
following attributes on the RADIUS server:
• Tunnel-Type (64)
• Tunnel-Medium-Type (65)
• Tunnel-Private-Group-ID (81)

Viewing VLANs Configured on the Access Point

In privileged EXEC mode, use the
that the access point supports. This is sample output from a
command:
Virtual LAN ID:
vLAN Trunk Interfaces:
FastEthernet0
Virtual-Dot11Radio0
Rockwell Automation Publication 1783-UM006A-EN-P - May 2014
Configuring VLANs
command to view the VLANs
show vlan
1 (IEEE 802.1Q Encapsulation)
Dot11Radio0
Chapter 15
show vlan
449

Advertisement

Table of Contents
loading

This manual is also suitable for:

1783-wapak91783-wapek91783-wapck91783-wapzk9

Table of Contents