Chapter 7 Controlling Lightweight Access Points
Cisco Workgroup Bridges
Note See the sample WGB access point configuration in the “Sample WGB Configuration” section on page
•These features are supported for use with a WGB:
–Guest N+1 redundancy
–Local EAP
–Open, WEP 40, WEP 128, CKIP, WPA+TKIP, WPA2+AES, LEAP,
•These features are not supported for use with a WGB:
–Cisco Centralized Key Management (CCKM)
–Hybrid REAP
–Idle timeout
–Web authentication
Note If a WGB associates to a
•The WGB supports a maximum of 20 wired clients. If you have more than 20 wired clients, use a bridge or another device.
•Wired clients connected to the WGB are not authenticated for security. Instead, the WGB is authenticated against the access point to which it associates. Therefore, Cisco recommends that you physically secure the wired side of the WGB.
•With Layer 3 roaming, if you plug a wired client into the WGB network after the WGB has roamed to another controller (for example, to a foreign controller), the wired client’s IP address displays only on the anchor controller, not on the foreign controller.
•If a wired client does not send traffic for an extended period of time, the WGB removes the client from its bridge table, even if traffic is continuously being sent to the wired client. As a result, the traffic flow to the wired client fails. To avoid the traffic loss, prevent the wired client from being removed from the bridge table by configuring the
configure terminal
bridge
exit
end
where
•When you delete a WGB record from the controller, all of the WGB wired clients’ records are also deleted.
•Wired clients connected to a WGB inherit the WGB’s QoS and AAA override attributes.
| Cisco Wireless LAN Controller Configuration Guide |