WFS709TP ProSafe Smart Wireless Switch Software Administration Manual

VLAN

Each authenticated user is placed into a VLAN, which determines the user’s DHCP server, IP address, and Layer 2 connection. While you could place all authenticated wireless users into a single VLAN, the system allows you to group wireless users into separate VLANs. This enables you to differentiate groups of wireless users and their access to network resources. For example, you might place authorized employee users into one VLAN and itinerant users, such as contractors or guests, into a separate VLAN.

Note: You create the VLANs for wireless users only on the WFS709TP. You do not need to create the VLANs anywhere else on your network. Because wireless clients are

tunneled to the WFS709TP, it appears to the rest of the network as if the clients were directly connected to the WFS709TP.

For example, in the topology shown in Figure 1-5, authenticated wireless users are placed on VLAN 20. You configure VLAN 20 only on the WFS709TP; you do not need to configure VLAN 20 on any other device in the network.

Note: To allow data to be routed to VLAN 20, you must configure a static route to VLAN 20 on an upstream router in the wired network

Overview of the WFS709TP

1-11

v1.0, June 2007

Page 27
Image 27
NETGEAR WFS709TP-100NAS manual Vlan