Cisco Systems OL-6217-01 manual Managing the Access Points with the CiscoWorks Wlse

Page 24

Cisco Structured Wireless-Aware Network (SWAN) Implementation Guide

Implementing the Cisco SWAN Framework

Step 2 Enter the following commands to define the SNMP communities:

infra-ap(config)# infra-ap(config)# infra-ap(config)#

snmp-server view iso iso included

snmp-server community <read-only community> view iso RO snmp-server community <read-write community> view iso RW

Step 3 Enter a host name for the access point:

infra-ap(config)#hostname <hostname>

Step 4 Enter the following to define Telnet or SSH users:

infra-ap(config)#username <username> password <password>

Step 5 Enter the following to enable SSH (optional step):

infra-ap(config)#ip domain-name <ip domain-name>

infra-ap(config)#crypto key generate rsa general-keys modulus <key size>

Step 6 Enter the following to turn off Telnet (optional step), define an access control list, and apply it to the Telnet lines. Obviously, several access control list definitions can accomplish this task, but the following is an example:

infra-ap(config)#access-list <access-list number> permit tcp any any neq telnet

infra-ap(config)# line 0 16

infra-ap(config-line)#access-class <access-list number>

Step 7 Enter the following command to define the WLCCP credentials for the access point:

infra-ap(config)#wlccp ap username <wlccp_username> password <password>

Subsequent to these steps, customers can configure additional parameters like VLANs, SSIDs, and encryption settings. Customers may choose to use the CiscoWorks WLSE to do these configurations in bulk after the CiscoWorks WLSE has discovered the WDS-host and the infrastructure access points.

Managing the Access Points with the CiscoWorks WLSE

When WDS is active on its host(s) and all infrastructure access points are registered with the appropriate WDS, the access points must be discovered and managed on the CiscoWorks WLSE. The procedure is as follows:

Step 1 Log into the CiscoWorks WLSE.

Step 2 Navigate to Devices > Discover. Select Managed/Unmanaged in the table of contents on the left-hand side.

Step 3 The WDS device(s) are listed in the New folder portion on the right-hand side action pane. Select the WDS device(s) and then Manage. The negotiation of security between the WDS and CiscoWorks WLSE begins. After the encryption keys are negotiated, the WDS is interrogated. The WDS device reports its registered access points to the CiscoWorks WLSE. The CiscoWorks WLSE then interrogates the registered access points. This process may take 5 to 10 minutes depending on the number of access points.

The infrastructure access points should now be managed in the CiscoWorks WLSE following the instructions in Steps 2 and 3.

Note This procedure is unnecessary if the advanced discovery auto-manage option was configured prior to WDS-host discovery.

Cisco Structured Wireless-Aware Network (SWAN) Implementation Guide

24

OL-6217-01

 

 

Image 24
Contents Corporate Headquarters Cisco Aironet 1400 Series Wireless Bridge Deployment Guide N T E N T S Contents Book Title Xxxxx-xx Audience Acroymns and Terms Cisco Swan Framework Overview Cisco Swan Layers Cisco Swan Logical View Shows the access point-based WDS solution Cisco Swan Framework Components WDS WlccpSoftware Components Hardware ComponentsImplementing the Cisco Swan Framework Common Tasks CiscoSecure ACS NAS Setup Adding Username and Password Credentials CiscoSecure ACS User Setup AAA-apconfig#radius-server local AAA-apconfig-radsrvuser username password passwordCiscoWorks Wlse Snmp Community Entry Screen CiscoWorks Wlse Telnet/SSH Credentials Entry Access Point-Based WDS Solution Configuration Configuring the WDS Access PointWds-apconfig#hostname hostname Wds-apconfig#username username password passwordConfiguring the Infrastructure Access Point Wds-apconfig#wlccp wds priority priority numberWds-apconfig#wlccp wnm ip address wlse ip address Managing the Access Points with the CiscoWorks Wlse Infra-apconfig#hostname hostnameInfra-apconfig#username username password password Infra-apconfig-line#access-class access-list numberSwitch-Based WDS Solution Configuration Validating the ConfigurationConfiguring the Catalyst 6500 Supervisor Wds-ap#show wlccp wds apConfiguring the WDS on the Wlsm Create the Vlan between the supervisor and WlsmWlsmconfig#snmp-server view iso iso included Wlsmconfig#hostname hostnameConfiguring the Infrastructure Access Points Wlsmconfig# wlccp wnm ip address wlse ip addressInfra-apconfig#wlccp ap wds ip address wlsm ip address Validating the Setup Wlsm# show wlccp wds apWlsm# show wlccp wnm status Sup720# show mobility status Mobility apFast Secure Roaming with Cckm When Using Multiple Encryption Types or VLANs Infra-apconfig#interface dot11RadioInfra-apconfig-if#encryption mode ciphers cipher-type Infra-apconfig-if-ssid#authentication network-eap eap-groupConfiguring ACU to use Cckm Click Profile ManagementCisco Swan Radio Management Features Cisco Swan Framework Radio ManagementPreparing to Use Cisco Swan Radio Management Building Tool Pop-Up WindowCisco Swan Radio Management Features Page OL-6217-01