wlan无线漫游
一、定義
WLAN漫游是指STA在不同AP覆蓋范圍之間移動且保持用戶業(yè)務不中斷的行為。
pc在同一個AC內漫游:
WLAN漫游策略是指STA可以在同屬一個ESS的AP接入,并且在移動的過程中保證已有的業(yè)務不中斷。
下面開始配置:
按照下圖做好拓撲
| AP地址池 | AP分發(fā)的IP地址池 | VLAN100:ip add 10.1.100.1 24 |
| STA地址池 | STA分發(fā)的IP地址池 | VLAN101:ip add 10.1.101.1 24VLAN102:ip add 10.1.102.1 24 |
| AP組 | 實現(xiàn)多AP統(tǒng)一管理配置 | ap-group1 引用模板:VAP模板wlan-vap、域管理模板security-1 |
| 域管理模板 | 提供對AP的國家碼,調優(yōu)信道集合和調優(yōu)帶寬 | domain1 國家碼:cn |
| SSID | 配置無線網絡名稱SSID名稱 | huawei-1 SSID名稱:huawei-1 |
| 安全模板 | 配置WLAN安全策略,對終端進行身份認證 | security-1 安全策略:PWA-WPA2 PSK AES SSID密碼:無 |
| VAP模板 | 為STA提供無線接入服務 | huawei-1,huawei-2 |
| 射頻模板 | 用于優(yōu)化射頻參數(shù),提供信道切換業(yè)務不中斷功能 | ap-group1 |
先配置接入交換機(lsw1)
vlan batch 100 to 102 interface GigabitEthernet0/0/1port link-type trunkport trunk pvid vlan 100port trunk allow-pass vlan 100 to 102 # interface GigabitEthernet0/0/2port link-type trunkport trunk pvid vlan 100port trunk allow-pass vlan 100 102 # interface GigabitEthernet0/0/3port link-type trunkport trunk allow-pass vlan 100 to 102在配置匯聚層交換機(lsw2)
vlan batch 100 to 102 interface GigabitEthernet0/0/2port link-type trunkport trunk allow-pass vlan 100 to 102 # interface GigabitEthernet0/0/3port link-type trunkport trunk allow-pass vlan 100 to 102現(xiàn)在寫AC配置。
[AC]interface GigabitEthernet0/0/1port link-type trunk port trunk allow-pass vlan 100 to 102[AC]dhcp enable #激活dhcp [AC]vlan batch 100 to 102 [AC]int vlan 100 [AC-Vlanif100]ip add 10.1.100.1 24 [AC-Vlanif100]dhcp select interface #下發(fā)dhcp [AC-Vlanif100]int vlan 101 [AC-Vlanif101]ip add 10.1.101.1 24 [AC-Vlanif101]dhcp select interface [AC-Vlanif101]int vlan 102 [AC-Vlanif102]ip add 10.1.102.1 24 [AC-Vlanif102]dhcp select interface [AC-Vlanif102]q [AC]capwap source interface vlanif100 #建立隧道,管理vlan是100 ap工作組 [AC]wlan [AC-wlan-view]ap-group name ap-group1 Info: This operation may take a few seconds. Please wait for a moment.done. [ac6605-wlan-ap-group-ap-group1]q 建立域模板 [AC-wlan-view]regulatory-domain-profile name domain1 [AC-wlan-regulate-domain-domain1]country-code CN #國家碼 Info: The current country code is same with the input country code.[AC-wlan-regulate-domain-domain1]q [AC-wlan-view]ap-group name ap-group1 [AC-wlan-ap-group-ap-group1]regulatory-domain-profile name domain1ssid模板 [AC-wlan-view]ssid-profile name huawei-1 [AC-wlan-ssid-prof-huawei-1]ssid huawei-1 #wifi名 Info: This operation may take a few seconds, please wait.done. [AC-wlan-ssid-prof-huawei-1]q [AC-wlan-view]ssid-profile name huawei-2 [AC-wlan-ssid-prof-huawei-2]ssid huawei-2 Info: This operation may take a few seconds, please wait.done. [AC-wlan-ssid-prof-huawei-2]q [AC-wlan-view]安全模板 [AC-wlan-view]security-profile name security-1 [AC-wlan-sec-prof-security-1]security open #不設置ssid密碼(wifi密碼) [AC-wlan-sec-prof-security-1]q[AC-wlan-view]vap-profile name huawei-1 [AC-wlan-vap-prof-huawei-1]ssid-profile huawei-1 Info: This operation may take a few seconds, please wait.done. [AC-wlan-vap-prof-huawei-1]security-profile security-1 Info: This operation may take a few seconds, please wait.done. [AC-wlan-vap-prof-huawei-1]service-vlan vlan-id 101 Info: This operation may take a few seconds, please wait.done. [AC-wlan-vap-prof-huawei-1]forward-mode direct-forward #轉發(fā)模式,逐級轉發(fā) [AC-wlan-vap-prof-huawei-1]q[AC-wlan-view]vap-profile name huawei-2 [AC-wlan-vap-prof-huawei-2]service-vlan vlan-id 102 Info: This operation may take a few seconds, please wait.done. [AC-wlan-vap-prof-huawei-2]ssid-profile huawei-2 Info: This operation may take a few seconds, please wait.done. [AC-wlan-vap-prof-huawei-2]security-profile security-1 Info: This operation may take a few seconds, please wait.done. [AC-wlan-vap-prof-huawei-2]qap認證 [AC-wlan-view]ap auth-mode mac-auth [AC-wlan-view]ap-mac 00E0-FCB0-52C0 ap-id 0 #ap1的Mac地址 [AC-wlan-ap-0]ap-name ap1 [AC-wlan-ap-0]ap-group ap-group1 Warning: This operation may cause AP reset. If the country code changes, it willclear channel, power and antenna gain configurations of the radio, Whether to c ontinue? [Y/N]:y Info: This operation may take a few seconds. Please wait for a moment.. done. [AC-wlan-ap-0]q[AC-wlan-view]ap-mac 00e0-fc32-2190 ap-id 1 #ap2的Mac地址 [AC-wlan-ap-1]ap-name ap2 [AC-wlan-ap-1]ap-group ap-group1 [AC-wlan-ap-1]工作組 [AC-wlan-view]ap-group name ap-group1 [AC-wlan-ap-group-ap-group1]vap-profile huawei-1 wlan 1 ra [AC-wlan-ap-group-ap-group1]vap-profile huawei-1 wlan 1 radio 0 Info: This operation may take a few seconds, please wait...done. [AC-wlan-ap-group-ap-group1]vap-profile huawei-2 wlan 2 radio 0 Info: This operation may take a few seconds, please wait...done. [AC-wlan-ap-group-ap-group1]到這里等待一會兒,兩個信號范圍就會出現(xiàn),下面 更改ap1的信道為6 更改ap2的信道為11[AC]wlan [AC-wlan-view]ap-id 0 [AC-wlan-ap-0]radio 0 [AC-wlan-radio-0/0]channel 20mhz 6 Warning: This action may cause service interruption. Continue?[Y/N]y [AC-wlan-radio-0/0]q [AC-wlan-view]ap-id 1 [AC-wlan-ap-1]radio 0 [AC-wlan-radio-1/0]channel 20mhz 11 Warning: This action may cause service interruption. Continue?[Y/N]y在拓撲上新加一個ap
開啟AP
在lsw1上把接口加入vlan
lsw1
[AC]
[AC]wlan [AC-wlan-view]ap-mac 00E0-FCDE-4140 ap-id 2 #ap3的Mac地址 [AC-wlan-ap-2]ap-name ap3 [AC-wlan-ap-2]ap-group ap-group1 Warning: This operation may cause AP reset. If the country code changes, it willclear channel, power and antenna gain configurations of the radio, Whether to c ontinue? [Y/N]:y Info: This operation may take a few seconds. Please wait for a moment.. done. [AC-wlan-ap-2]等一會兒AP3就會有信號
然后我們就可以通過移動sta2的位置
先看一下IP地址
然后用ping命令帶上-t持續(xù)進行
可以看到設備移動處于中間位置是,延遲達到最大。因為處于邊緣。
到此結束。
做個總結
STA2可以在AP2和AP3中做無線漫游。修改信道,是防止在相同信道下有干擾,影響網絡質量。
當把sta2放到ap1的網絡里是連不上的,因為本文章我在ping10.1.102.1,在lsw1,沒有讓連接ap1的端口通過vlan102.所以
如果吧lsw1的G0/0/1口將vlan102也通過,即可連同ap1的網絡也可以無限漫游。
附:wlan漫游拓撲及配置文件。
總結
- 上一篇: 安装SqlServer 2017 时出现
- 下一篇: Silverlight4启动无法调试