AP-VPN Deployment
20.2 Configuring AP and Controller for AP-VPN Operations
SCALANCE W1750D UI
Configuration Manual, 02/2018, C79000-G8976-C451-02
333
For more information on configuring DHCP profiles, see Configuring DHCP Scopes
(Page 281).
Note
A Centralized, L2 or Distributed, L2 VLAN or subnet cannot be used to serve APs in a
hierarchical mode of deployment. Ensure that the physical IP of the APs connecting to the
master AP in hierarchical mode of deployment is not on a VLAN or subnet that is in
Centralized, L2 or Distributed, L2 mode of operation. For information on hierarchical mode of
deployment, see Understanding Hierarchical Deployment (Page 159).
Configuring an SSID or Wired Port
For a client to connect to the AP-VPN network, an SSID or wired port profile on an AP must
be configured with appropriate AP-VPN mode of operation. The VLAN configuration in an
SSID or wired port profile determines whether an SSID or wired port is configured for the AP-
VPN operations.
To configure an SSID or wired port for a specific AP-VPN mode, the VLAN ID defined in the
SSID or wired port profile must match the VLAN ID defined in the DHCP profile
configuration. If the VLAN assignment for an SSID or wired port profile is set to VC assigned,
custom, or a static VLAN ID that does not match the VLAN ID configured in the DHCP
profiles, the AP-VPN operations are affected. For example, if a local DHCP profile is
configured with a VLAN ID of 200, the VLAN configuration on the SSID must be set to a
static VLAN ID 200.
Note
Ensure that the VLAN assignment for an SSID or wired port profile is not set to default as the
VPN tunnel is not supported on the default VLAN.
For information on enabling dynamic RADIUS proxy, see Configuring Dynamic RADIUS
Proxy Parameters (Page 216).
Configuring Enterprise Domains
By default, all
the DNS requests from a client are forwarded to the client's DNS server. In a typical AP
deployment without VPN configuration, client DNS requests are resolved by the DNS server
of clients. For the AP-VPN scenario, the enterprise domain settings on the AP are used to
determine how client DNS requests are routed. For information on how to configure
enterprise domains, see Configuring Enterprise Domains (Page 334).
Содержание SCALANCE W1750D UI
Страница 18: ...About this guide SCALANCE W1750D UI 18 Configuration Manual 02 2018 C79000 G8976 C451 02 ...
Страница 28: ...About SCALANCE W 3 3 SCALANCE W CLI SCALANCE W1750D UI 28 Configuration Manual 02 2018 C79000 G8976 C451 02 ...
Страница 108: ...IPv6 Support 10 4 Debugging Commands SCALANCE W1750D UI 108 Configuration Manual 02 2018 C79000 G8976 C451 02 ...
Страница 326: ......
Страница 356: ......
Страница 374: ......
Страница 416: ......
Страница 440: ......
Страница 450: ...Intrusion Detection 27 4 Configuring IDS SCALANCE W1750D UI 450 Configuration Manual 02 2018 C79000 G8976 C451 02 ...
Страница 470: ......
Страница 480: ......
Страница 496: ......
Страница 518: ...Hotspot Profiles 33 3 Sample Configuration SCALANCE W1750D UI 518 Configuration Manual 02 2018 C79000 G8976 C451 02 ...
Страница 528: ......
Страница 552: ......
Страница 570: ...Appendix B 3 Glossary SCALANCE W1750D UI 570 Configuration Manual 02 2018 C79000 G8976 C451 02 ...