eNSP中最简单的旁挂式AC+AP组网搭建

image

 拓扑图如左提所示:

1、AC2与路由器的连线允许通过的vlan是99,也是管理AP使用的vlan;AC2作为整个网络的DHCP服务器,为AP、STA分配IP

2、AR1和LSW1之间只通过vlan40的数据

3、LSW1内有4个vlan,分别是:

  • vlan9:AP的管理配置使用的vlan
  • vlan40:与路由器通信使用的vlan
  • vlan10:AP1发布的wifi信号所在的vlan
  • vlan20:AP2发布的wifi信号所在的vlan

整体网络的思路:AP通过vlan9以及DHCP中继,从AC2的vlanif99接口获取IP信息;AP通过option43协议在AC2上线(需要AP的地址池配置该协议);AP1的vlan10的wifi设备通过DHCP中继获取IP,而数据转发通过直接转发的模式;AP2的vlan20的wifi信号通过DHCP中继获取IP,而数据转发通过直接转发的模式.

全网通采用的是RIPv2协议。

LSW1的配置命令如下:

sy
un in e
v b 10 20 40 9
int e0/0/1
p l a
p d v 40
int e0/0/2
p l t
p t a v 9 10
p t p v 9
int e0/0/3
p l t
p t a v 9 20
p t p v 9
int v 10
ip a 192.168.1.1 24
int v 20
ip a 192.168.2.1 24
int v 40
ip a 192.168.4.2 24
int v 9
ip a 192.168.9.1 24
rip
version 2
network 192.168.1.0
network 192.168.2.0
network 192.168.4.0
network 192.168.9.0
dhcp enable
in v10
dhcp select relay
dhcp relay server-ip 192.168.99.100
in v20
dhcp select relay
dhcp relay server-ip 192.168.99.100
in v9
dhcp select relay
dhcp relay server-ip 192.168.99.100

AR1的配置命令如下:

sy
un in e
int g0/0/1
ip a 192.168.3.1 24
int g0/0/2
ip a 192.168.4.1 24
int g0/0/0
ip a 192.168.99.1 24
rip
version 2
network 192.168.3.0
network 192.168.4.0
network 192.168.99.0

AC2的配置命令如下:

sy
un in e
v b 99 10 20
ip pool p10
network 192.168.1.0 mask 24
gateway-list 192.168.1.1
ip pool p20
network 192.168.2.0 mask 24
gateway-list 192.168.2.1
ip pool p99
network 192.168.9.0 mask 24
gateway-list 192.168.9.1
option 43 sub-option 3 ascii 10.0.99.100                   //让DHCP下发的IP信息中携带option43相关的信息,为AP跨网段上线提供信息,让广播变成定向单播
dhcp en
in v 99
ip a 192.168.99.100 24
dhcp select global
rip
version 2
network 192.168.99.0
wlan
capwap source interface vlanif99
wlan
ap auth-mode no-auth
wlan
ssid-profile name ssf
ssid V10WIFI
security-profile name sef
security wpa-wpa2 psk pass-phrase 12345678 aes
y
vap-profile name vaf
forward-mode direct-forward
service-vlan vlan-id 10
ssid-profile ssf
security-profile sef
ap-id 0
vap-profile vaf wlan 1 radio 0wlan
ssid-profile name ssf20
ssid V20WIFI
security-profile name sef20
security wpa-wpa2 psk pass-phrase 12345678 aes
y
vap-profile name vaf20
forward-mode direct-forward
service-vlan vlan-id 20
ssid-profile ssf20
security-profile sef20
ap-id 1
vap-profile vaf20 wlan 1 radio 0
vap-profile vaf20 wlan 1 radio 1

 

posted @ 2025-12-23 18:13  铭久  阅读(2)  评论(0)    收藏  举报