Brkewn 2027
Brkewn 2027
Brkewn 2027
#CLUS
Agenda • Why Outdoor Wireless is
important?
• Outdoor Wireless Components
• Cisco Outdoor Products and
Deployment Modes
• Important Outdoor Wireless
LAN Features
• Design Recommendations and
Best Practices for Cisco
Outdoor Wireless LAN
Deployments
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 3
Cisco Webex Teams
Questions?
Use Cisco Webex Teams (formerly Cisco Spark)
to chat with the speaker after the session
How
1 Find this session in the Cisco Events App
2 Click “Join the Discussion”
3 Install Webex Teams or go directly to the team space
4 Enter messages/questions in the team space
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 4
How mobile growth could affect your network?
High volumes of mobile video can clog
the airwaves
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 5
Why use Cisco Wireless?
Cisco Innovation
Wireless is Cost effective 802.11a/b/g/n/ac
Unlicensed spectrum Attention from the industry (ex. Security)
Availability of client devices ClientLink
Zero on-going communication costs CleanAir
HDX (High Density Experience)
Cisco Manageability
Wireless is Standardized
IEEE 802.11
Cisco Scalability & Ease of use
Can deliver throughput where you want it
Just keep on adding nodes
It’s global. Same Frequencies
everywhere Low impact for new sites
Outdoor extension of the indoor Wireless LAN
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 6
Outdoor Market in Growth Mode
• Outdoor market is growing 15-20% Q/Q! WW Outdoor AP Market – Dell’Oro
• Still plenty of greenfield deployments $100.0
$80.0
$60.0
$M
$40.0
Retail Higher Ed $20.0
Open-air malls, Parking lots Campus Coverage
$0.0
4Q141Q152Q153Q154Q151Q162Q163Q16
Manufacturing Hotels/Resorts
Distribution centers Pools & Open spaces
Hospitals
Recovery gardens, Inter-building coverage
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 7
It's an 802.11ac Wi-Fi World!
• 802.11ac was introduced in 2 flavors – Wave-1 &
Wave-2
• More than 90% of all new Wi-Fi devices in 2017 were
802.11ac capable
• Upwards of 50% of enterprise traffic will originate on Wi-
Fi by 2017
• 802.11ac Wave-1 can fulfill smartphone and tablet
bandwidth requirements for next 5 years
• All current and future outdoor deployment upgrades
should look at 802.11ac standard to meet the
demands
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 8
802.11 Technology Comparison
Single User MIMO (one to one) Single User MIMO (one to one) Multi User MIMO (one to many)
20/40 MHz Channel Width 40/80 MHz Channel 40/80 MHz Channel Width up to 160
MHz
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 9
Extend 802.11ac Wave 2 Wi-Fi Access to the
Outdoors
Ideal for Outdoor Enterprise and Extend access to Truck stops Higher Ed customers demand
Carrier Wi-Fi Deployments and shopping malls ubiquitous Wi-Fi coverage
Low profile, low cost outdoor Access Cost effective enabler for improved Provide More Bandwidth and Better
Point provides high performance productivity and revenue coverage for High Density Networks
802.11ac Wave 2
Cisco Continues its leadership with the most complete Outdoor portfolio
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 10
What’s next? 802.11ax (6th Gen of Wi-Fi)
Goals
• Overall goals of standard: 4x average throughput in dense
environments
• Improving average per-station throughput and aggregate area/AP
capacity/throughput
• Support for 4K/8K video; augmented and virtual reality (AR/VR)
• Outdoor range and robustness improvements
• Increase capacity by reducing overhead.
• IoT for the enterprise customers.
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 12
Elements of 802.11ax (Cont’d)
• 1024 QAM
• Two new Modulation and Coding Schemes (MCS)
10 and 11
• The coverage area of 1024 QAM (MCS 10-11) is
less than that of 256 QAM (MCS 8-9)
• Dual Downlink/Uplink MU-MIMO
• Gain by parallelizing stations in spatial domain, and
reducing channel access overhead
• Range boost
• Greater range compared to 802.11ac.
• Use lower effective data rates to get up to 8dB link
budget boost)
• Spatial Reuse
• For better density: spectral re-use among neighbor
APs supporting concurrent transmissions
• PHY preamble has BSSID info to identify “ours”
(BSS) vs. “neighbor” AP (Other BSS/OBSS)
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 13
What to expect from 802.11ax?
• 802.11ac is still the most widely used Wi-Fi standard.
• 802.11ax is designed to be forward and backward compatible with
802.11a/g/n/ac devices
• Expect early 802.11ax APs to come in the market late 2018/ early
2019.
• Expect Best in class / fully standard APs through 2019.
• Expect 802.11ax clients to come out early mid 2019
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 14
Let’s get started..
1 2 3 4
Choose right
Design & Planning Deployment Day 1 & 2
products
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 15
Step 1: Choose the right products
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 16
Building Blocks of
Outdoor Wireless
Cisco Digital Network Architecture
Connected Mobile
DNA Center
Experience (CMX)
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 18
Cisco Wireless: Transforming the way we connect
BEST BEST BEST
WIRELESS AUTOMATION EXPERIENCE
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 19
Wireless Access Points
Cisco Aironet 802.11ac Outdoor Access Point Portfolio
DNA Ready | RF Excellence | CMX
1570
1560 • 802.11ac Wave 1
• 4x4:3 80 MHz; 1.3 Gbps
• 802.11ac Wave 2, MU-MIMO • External antenna model (EAC)
• 3x3:3, 80MHz, 1.3Gbps (I) • Cable Modem model (IC/EC)
1540 • 2x2:2, 80MHz, 867Mbps (E/D) • SFP
• 802.11ac Wave 2, MU-MIMO • Internal or External antenna model (I/E) • GPS
• 2x2:2, 80MHz, 867 Mbps • Internal directional antenna model (D) • PoE Out 802.3at (Ext Ant. only)
• Ultra low profile • SFP • Flexible Antenna Ports
• Internal antenna model (I) • Flexible Antenna Ports • CleanAir and ClientLink
• Internal directional antenna model (D) • CleanAir and ClientLink • Modularity (Ext Ant. only)
• PoE (802.3af) power • Centralized, FlexConnect, Mesh and • Centralized, FlexConnect and Mesh
• Centralized, FlexConnect, Mesh* and Mobility Express Cable Modem Version Only (IC/EC)
Mobility Express • DOCSIS 3.0, 24x8
802.11ac Wave 2 • Internal or External antenna
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 21
Access Point 1542I 1542D 1562I 1562D 1562E 1572EAC 1572IC/EC
List Price $995 $995 $1695 $1795 $1795 $4495 $5295 / $6695
Data rate (2.4/5G) Mbps 144 /867 144 / 867 216 / 1300 144 / 867 144 / 867 216 / 1300 216 / 1300
Clients per radio 100 100 200 200 200 200 200
CleanAir n n n n n
ClientLink n n n n n
Wireless mesh n n n n n n n
Mobility Express n n n n n
Environment IP-65 IP-65 IP-67 IP-67 IP-67 IP-67 IP-67
Temp Range °C -40 to 65 -40 to 65 -40 to 65 -40 to 65 -40 to 65 -40 to 65 -40 to 65
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 22
Industrial Wireless IW3700 Series Access Point
Optimized for Rail, Mining, Manufacturing, Oil & Gas
N-type antenna ports for 4x4 MIMO with
three spatial streams and support for up to
13 dBi gain antennas
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 24
Industry’s most comprehensive and innovative AP portfolio
Enterprise Class Mission Critical Best in Class
DNA Ready | RF Excellence | CMX | Centralized, FlexConnect or Mobility Express
Dual 5 GHz | Flexible Radio | HDX
Future Proof
Hyperlocation | Security
4800
3800 • 4 embedded radios
(3 Wi-Fi and 1 BLE)
1830/1850 2800 • 4x4:3SS 160 MHz
1815 • 5 Gbps Performance
• 4x4:3 SS 160 MHz
Indoor / High-powered Indoor • 4x4:3SS 160 MHz • 5 Gbps performance
Wall Plate / Teleworker • 3x3:2 SS 80 MHz/4x4:3 • 2.4 and 5GHz or • 2.4 and 5 GHz or
• 5 Gbps Performance Dual 5GHz
• 2x2:2SS 80 MHz SS 80 MHz dual 5 GHz
• 2.4 and 5GHz or • 2 GE Ports Uplink or
• 867 Mbps Performance • 867 Mbps or 1.7 Gbps • 2 GE ports uplink or
Dual 5GHz 1 GE + 1 mGig (5G)
performance
• Tx Beam Forming • 2 GE Ports Uplink
1 GE + 1 Multigigabit (5G)
• 1 or 2 GE ports uplink • CleanAir and ClientLink
• Integrated BLE Gateway • Embedded Hyperlocation
• CleanAir and ClientLink • StadiumVision
• Internal or external • Real-time analytics and
• Max Transmit Power (dBm) • Internal or External
antenna (1850) • Internal or External packet capture
per local regulations1 Antenna
• Tx beamforming Antenna
• 3 GE Local Ports, including • Smart Antenna • Cisco CleanAir and
1 PoE out2 • USB 2.0 • Smart Antenna ClientLink
Connector Connector
• Local ports 802.1x ready2 • USB 2.0 • Internal antenna
• USB 2.0
• Centralized, FlexConnect and Mobility Express
• USB 2.03
1 Available for High-powered only 2 Available for wall-plate and teleworker only 3 Available#CLUS
• Investment Proof
for teleworker only BRKEWN-2027 © 2018
ModularityCisco and/or its affiliates. All
• USB 2.0
• reserved.
rights Integrated BLE
Cisco Public 25
HDX AP Model Comparison
802.11ac Wave 1 802.11ac Wave 2
-20 to 43 °C -20 to 43 °C
Environment -40 to 65 °C NEMA enclosure -50 to +75°C -40 to 65 °C NEMA enclosure
required required
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 26
Cisco Wireless
Controllers
Cisco Wireless Controller Portfolio
Large Enterprise, Branch
Control at Central Site
Mid-size Enterprise, Branch
Control at Central Site
Cisco 8540
Small Network Cisco vWLC 6000 APs
3000 APs 64,000 clients
32000 Clients 40 Gbps
Flexconnect mode
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 30
Location & Analytics
Connected Mobile Experience (CMX)
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 32
Integration
Integrating everything together
Router Router
Aggregation/ Core DC
Switches Switches
Access
Switch
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 34
Resiliency at every level
For optimum high availability
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 35
Step 2: Designing & Planning
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 36
Design for These 3 Key RF Relationships
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 37
Environment
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 38
User Requirement
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 39
Regulatory Considerations
• 802.11 Standard
• Radio Emissions
• Transmit Power
• Dynamic Frequency Selection
(DFS) Certifications
• All this varies per country
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 40
2.4GHz vs. 5 GHz
3 23 Very
Crowded
Empty
Spectrum
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 41
Coverage Difference in 2.4GHz vs. 5GHz
Example of urban coverage
Directional Antennas
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 43
Dual Band vs. Single Band
5 GHz
Antennas
2.4GHz + 5GHz
Antennas
2.4 GHz
Antennas
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 45
Channel Utilization is KEY!
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 46
Maximizing the Spectrum
RSSI vs. SNR
Check your noise floor in
each band during peak
usage
– Packet captures with a NIC that
you trust (MacBook Pro, etc.)
– Fluke AirCheck
– Spectrum Expert
– Metageek Chanalyzer for Clean
Air
Sources of Noise:
• Non Wi-Fi Interferers
• Probing Clients, Rogue APs
• High Co-Channel Interference
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 47
Design and Planning
General consideration
Distance = 1 km
In real world scenario you need to take in
MAP consideration obstacles Add more APs to have
RAP Line of Sight (LOS)
Client type (smart phones, tablets, etc): weakest link
typically would be the Uplink on a smart phone
For backhaul set the data rate to auto
The number of MAPs per RAP should be less than
32 but really depends on the application and
bandwidth you want
Max hop count is 8. Less than Four hops
recommended
Use the range and capacity calculator
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 48
MAP
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 50
Coverage and Capacity Calculator
Online now!
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 51
Typical Throughput
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 56
Tools
For Active & Predictive Site Survey
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 57
Which APs to use for site survey?
AP 1540
AP 1530
AP 1560
AP 1550
& Future Access
AP 1570
Points
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 58
Site Survey and Deployment
Get creative use different tools
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 59
Site Survey and Deployment
Get creative use different tools
Backhaul on
Cable
Full Hanging
rights Power from
Stand
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 60
Mounting the APs
• Mount the Root AP to have a good view of the area to be covered
• Understand RAP coverage. Use Directional Antennas for the RAPs on the Roof Tops.
• Max recommended height for MAPs is 30 feet/10 meters
• Recommend placing the APs at the same height
• Minimum recommendation is 20~25 dB of SNR, RSSI of -67 dBm for all data rates, 15% cell overlap
• Do not install the MAPs in an area where structures, trees, or hills obstruct radio signals to and from the access
point
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 63
Supported Outdoor Modes
FlexConnect/
Autonomous Mobility Express Centralized
Flex+Bridge
C
WAN Intranet
• Simple and cost- • Simple and cost-effective for • Highly scalable for large • Simplified operations with
effective for small small-Medium networks number of remote branches centralized control for
networks • Simple wireless operations Wireless
Benefits with DC hosted controller • Wireless Traffic visibility at
the controller
• Bridge/Local modes
• Low scale • Moderate Scale • L2 roaming only • System throughput
Key Considerations • P2P • L2 roaming only • WAN BW and latency
requirements
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 64
Outdoor Deployment
Autonomous APs
Outdoor Autonomous
The root in a point to point (P2P) or Designed to connect to Root Designed to connect as a client to
point to multipoint (P2MP) deployment. Bridge mode autonomous the unified wireless architecture.
Designed to take on non-root bridges, access points. Allows wired Can bridge up to 20 wired clients.
but can also accept associations from and wireless clients on non- Recommended for mobile units.
clients on non-backhaul radio backhaul radio
Install Mode - Uses a series of LED flashes to measure link RSSI between bridges.
Allows installers to align access points
http://www.cisco.com/c/en/us/td/docs/wireless/access_point/15_2_4_JA/configuration/guide/scg15-2-4_book.html
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 66
Cisco Autonomous Deployment Overview
Bridging
L3/L2 switch
Root Bridge 5GHz/2.4 GHz Non Root Bridge L2 switch
Point To Point
L2 switch
Internet
Point To Multipoint
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 67
Cisco Prime Management of Autonomous APs
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 68
Use Case: Bridging Buildings using Autonomous
• 1572/ 1532 Access Points
• Directional Antennas
• Autonomous Mode
• No need for a WLC
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 69
Autonomous – Additional Information
• Quick Start Configuration Template:
• https://supportforums.cisco.com/document/61936/autonomous-ap-and-
bridge-basic-configuration-template
• Autonomous Configuration Guide
• http://www.cisco.com/c/en/us/td/docs/wireless/access_point/15_2_4_J
A/configuration/guide/scg15-2-4_book.html
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 70
Outdoor Deployment
Cisco Mobility Express
Cisco Mobility Express: Simple by Design
Controller Function embedded into the access point
DNA Ready for Small to Medium Size, Single or Multi site Deployments
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 74
Which Access Points can run Mobility Express?
50 1000 50 1000 100 2000
AIR-AP1815I-x-K9C AIR-AP1852-x-K9C AIR-AP3800-x-K9C
The C suffix in the Part Number denotes the Mobility Express image
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 75
Mobility Express: Best dashboard for Wi-Fi
New software notification
icon
Troubleshooting alert
Interferers
Higher scalability already
built-in the dashboard
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 76
Expert View
Introduces a wealth of options for wireless experts
Enable 2.4 GHz Band
Enable EDRRM
Enable CleanAir
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 77
Outdoor Deployment
Centralized & FlexConnect
Controller Based Access Point Modes Overvie
Cisco Access Points Support:
• Local mode
• Monitor mode W2 Indoor APs do not yet
• Flexconnect Mode support bridge mode
• Bridge Mode
(18xx, 28xx, 38xx)
• Flex + Bridge Mode (from 8.0 release)
• Sniffer Mode
• Rogue Detector Mode
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 79
Local Mode vs. Bridge Mode
Local Mode Bridge Mode
+ 100% Client Access on both 2.4 - 5GHz for Backhaul, can be
and 5GHz shared for 5GHz client access
- Requires wired Ethernet drop per + Does not require wired Ethernet
AP including cabling and installation drop, only power
costs
Should be used for High Density Should be used to cover large
Deployments areas
Use Case: Large City deployment Use Case: Open Mining Facility
(Extension to indoor enterprise (Temporary deployments)
deployment outdoors)
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 80
Use Case: High Density City Deployment
WLC 8540
with HA
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 84
Adaptive Wireless Path Protocol (AWPP)
establishes the best path to the Root
Blocked AWPP packets (Adj req, resp, beacon) – Parent not associated yet
parent selection
Authorized
CAPWAP Authorized
Open ALL packets
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 85
Security with Cisco Mesh
AP X.509 Certificate Authentication
Controller
Dynamic VLAN
Assignment EAP for Encrypted
IPSec VPN
Links Si
Intranet
Controller
Up to 72 Controllers can be
part of an 1:1, N+1 or N+N+1 cluster
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 89
Bridge Groups
Sectorization (Bridge Group)
3 Hops 2 Hops
Logically groups APs and controls the
association of the radios
1 Hop For adding capacity we recommend that you
have more than one RAP in the same sector,
with the same BGN, but on different channels
Having multiple RAPs with same BGN in an
area is good for redundancy: when a RAP goes
down its MAPs will join a different sector with
same name
RAP
A factory default BGN is empty (NULL VALUE).
It allows the MAP to do the first association
MAP
MAP
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 90
How to Configure Bridge Groups
Setting Bridge Group Name (BGN)
• config ap bridgegroupname set MESH-BGN AP_NAME
• Use bridge group names to logically group the mesh access points to avoid two networks on the same channel from
communicating with each other
• If BGN is mismatched, the AP will join a mesh network of another BGN, but after 15 mins, the AP will drop AWPP and
scan for its own BGN
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 91
Preferred Parent
Preferred Parent will be selected for the following conditions:
• P.P parent is the best parent
• P.P link SNR is at least 20dB (In this case, other parents,
however good, are ignored)
• P.P has link SNR between 12 and 20 dB, but no other
parent is significantly better (SNR more than 20% better).
For lower than 12dB SNR, P.P configuration is ignored
• P.P is not blacklisted
• P.P is not in silent mode due to DFS.
• P.P is in the same Bridge Group Name (BGN). If no other
parent available in the same BGN, the child will join the
P.P using the default BGN
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 92
Strict BGN Matching
• Scan 10 times for finding the matched BGN
parent WLC GUI:
Wireless->AP_NAME->Mesh
• After 10 scans, if no parent with matched BGN,
connect to the non-matched BGN
• After 15 mins, break connection and scan again
• Adds a higher AWPP priority on BGN but does
not strand AP with mis-configured BGNs
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 93
Mesh Traffic and
Convergence
How does Traffic pass in a Bridge Mode
Deployment?
Deployment flexibility
WLAN
Controller
Intranet
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 95
How does Traffic pass in a Bridge Mode
Deployment?
Deployment flexibility
WLAN
RAP
Controller
Intranet
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 96
How does Traffic pass in a Bridge Mode
Deployment?
Deployment flexibility MAP
WLAN
RAP
Controller
Intranet
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 97
How does Traffic pass in a Bridge Mode
Deployment?
Deployment flexibility MAP
WLAN
RAP
Controller
Intranet
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 98
How does Traffic pass in a Bridge Mode
Deployment?
Deployment flexibility MAP
WLAN
RAP
Controller
Intranet
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 99
How does Traffic pass in a Bridge Mode
Deployment?
Deployment flexibility MAP
WLAN
RAP
Controller
Intranet
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 100
How does Traffic pass in a Bridge Mode
Deployment?
Deployment flexibility MAP
Ethernet in
mesh header
WLAN
RAP
Controller
Intranet
Mesh header
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 101
How does Traffic pass in a Bridge Mode
Deployment?
Deployment flexibility MAP
Ethernet in
mesh header
WLAN
RAP
Controller
Intranet
Mesh header
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 102
How does Traffic pass in a Bridge Mode
Deployment?
Deployment flexibility MAP
Ethernet in
mesh header
WLAN
RAP
Controller
Intranet
WLAN
RAP
Controller
Intranet
WLAN
RAP
Controller
Intranet
MESH AP
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 106
Evolution of Wi-Fi Mesh –
Background Scanning for Fast Convergence
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 107
Mesh Fast Convergence
Parent Loss Detection / DHCP / CAPWAP
Channel Scan/Seek Time per hop (sec)
Keep Alive Timers Information
4 sec / Off-Channel
CCN/BG Scan Scan/Seek only channels Maintain DHCP and
scan every 3 sec and 8-10sec
Fast/VF found in same bridge group CAPWAP
stay for 50ms
*Number are shown for same WLC, same channel, and same subnet. Times are longer if these variables are changed
WLC CLI Configuration only (Warning: Decreasing convergence time may lead to more parents changes)
Mesh convergence configuration - (Cisco Controller) > config mesh convergence { standard | fast | very-fast } all
Background scanning configuration - (Cisco Controller) > config mesh background-scanning {enable | disable}
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 108
How Mesh APs scan DFS and non-DFS bands?
AP first scans the serving on-channel
(DFS or Non-DFS) to find any neighbors
Off-Channel Scanning
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 109
Mesh Convergence - Building the Off-Channel
List
RAP1 – Ch 36 MAP1
WLC
Switch
RAP2 – Ch 44,48
RAP3 – Ch 40 MAP3 – Ch 40
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 110
Mesh Convergence - Building the Off-Channel
List
RAP1 – Ch 36 MAP1
WLC
Switch
RAP2 – Ch 44,48
RAP3 – Ch 40 MAP3 – Ch 40
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 111
Mesh Convergence - Building the Off-Channel
List
RAP1 – Ch 36 MAP1
WLC
Switch
RAP2 – Ch 44,48
RAP3 – Ch 40 MAP3 – Ch 40
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 112
Mesh Convergence - Building the Off-Channel
List
RAP2 – Ch 44,48
RAP3 – Ch 40 MAP3 – Ch 40
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 113
Mesh Convergence - Building the Off-Channel
List
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 114
Mesh Convergence – Background Scan &
Messaging
RAP1
Ch 60
1. MAP1 Scan for parents
MAP1 MAP2
RAP2
Ch 100
RAP3
Ch 140
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 115
Mesh Convergence – Background Scan &
Messaging
RAP1
Ch 60
1. MAP1 Scan for parents
2. Finds Best Parent
MAP1 MAP2
RAP2
Ch 100
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 116
Mesh Convergence – Background Scan &
Messaging
RAP1
Ch 60
1. MAP1 Scan for parents
2. Finds Best Parent
3. Background Scans all parents
MAP1 MAP2
RAP2
Ch 100
80MHz 80MHz
• Both 1532s and 1572s in Bridge Mode can utilize this configuration
• Master MAP & Slave MAP are operating on different 5GHz channels to maximize throughput across the
mesh link
• BGN configuration and the Preferred Parent command are recommended to maintain the mesh tree
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 123
Daisy-Chaining: Mixing Access Points
WLAN MAP AP
Controller RAP (Master) (Slave)
80MHz
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 124
Daisy-chaining: Dedicated Client Access Device
Deployments
WLAN MAP
Controller RAP (Master) Local AP
5GHz
• Local AP is dedicated for Client Access, while Master MAP will provide 2.4/5GHz
the mesh backhaul link
• In this configuration, LocalAP should be in local mode or flex-connect
mode
• The Master MAP must have Ethernet bridging enabled
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 125
Configuring Daisy-chaining
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 126
Use Case: Roadside Video Surveillance
High Throughput over
RAP
Multiple Mesh Hops
Daisy-Chain Daisy-Chain Daisy-Chain
• Daisy-Chaining allows 5GHz backhaul to operate on different channels maximizing throughput over distance
Centralized
• New AP mode that allows Flexconnect behavior Traffic
across mesh-enabled AP
• Control plane supports:
• Connected (WLC is reachable)
• Standalone (WLC not reachable)
• Data Plane supports:
• Centralized (split MAC) WAN
• Local (local MAC) Remote
Local
• Flexconnect Groups Traffic
Office
• Max 8 Mesh hops, Max 32 MAPs per RAP
• Local AAA support
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 129
How does Traffic pass in a Flex + Bridge Mode
Deployment?
WLAN
Controller
WAN
Local
Intranet
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 130
How does Traffic pass in a Flex + Bridge Mode
Deployment?
MAP
WLAN
RAP
Controller
WAN
Local
Intranet
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 131
How does Traffic pass in a Flex + Bridge Mode
Deployment?
MAP
WLAN
RAP
Controller
WAN
Local
Intranet
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 132
How does Traffic pass in a Flex + Bridge Mode
Deployment?
MAP
Ethernet in
mesh header
WLAN
RAP
Controller
WAN
Local
Intranet
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 133
How does Traffic pass in a Flex + Bridge Mode
Deployment?
MAP
Ethernet in
mesh header
WLAN
RAP
Controller
WAN
Local
Intranet
Flexconnect WLAN
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 134
How does Traffic pass in a Flex + Bridge Mode
Deployment?
MAP
Ethernet in
mesh header
WLAN
RAP
Controller
WAN
Local
Intranet
Flexconnect WLAN
Ethernet in
Flex+Bridge carries the following traffic: mesh header
Wired client traffic Mesh header
Local Wireless client traffic
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 135
How does Traffic pass in a Flex + Bridge Mode
Deployment?
MAP
Ethernet in
mesh header
WLAN
RAP
Controller Central WLAN
WAN
Local
Intranet
Flexconnect WLAN
Ethernet in
Flex+Bridge carries the following traffic: mesh header
Wired client traffic Mesh header Central Wireless
Local Wireless client traffic CAPWAP client traffic
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 136
How does Traffic pass in a Flex + Bridge Mode
Deployment?
MAP
Ethernet in
mesh header
WLAN
RAP
Controller Central WLAN
WAN
Local
Intranet
Flexconnect WLAN
Ethernet in
Flex+Bridge carries the following traffic: mesh header
Wired client traffic Mesh header Central Wireless
Local Wireless client traffic CAPWAP client traffic
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 137
How does Traffic pass in a Flex + Bridge Mode
Deployment?
MAP
Ethernet in
mesh header
WLAN
RAP
Controller Central WLAN
WAN
Local
Intranet
Flexconnect WLAN
Ethernet in
Flex+Bridge carries the following traffic: mesh header
Wired client traffic Mesh header Central Wireless
Local Wireless client traffic CAPWAP client traffic
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 138
How does Traffic pass in a Flex + Bridge Mode
Deployment?
MAP
Ethernet in
mesh header
WLAN
RAP
Controller Central WLAN
WAN
Local
Intranet
Flexconnect WLAN
Ethernet in
Flex+Bridge carries the following traffic: mesh header
Wired client traffic Mesh header Central Wireless
Local Wireless client traffic CAPWAP client traffic
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 139
Use Case: Open Mining Facility
Flex + Bridge to increase Reliability
WAN
Local Applications
• Remote Mining Site:
• Flex WLC at the Corporate Data Center
• RAP/MAPs operating in Flex+Bridge Mode around mine
• WGB controlling vehicle connects via mesh network
• Local Applications continue to operate, even if the WAN link is down
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 140
Additional New Features
for Outdoor Mesh
Native VLAN Support
• Pre 8.0, VLAN 1 assigned on all
backhaul links
• Now the native VLAN can be
assigned to match switchport
interface GigabitEthernet0/1
RAP MAP
switchport trunk encapsulation dot1q
switchport trunk native vlan 161
switchport mode trunk
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 144
RRM on 5GHz when in Bridge Mode
RAP MAP
Channel 149
Power Level 3
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 145
RRM on 5GHz when in Bridge Mode
RAP
Channel 149
Power Level 3
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 146
RRM on 5GHz when in Bridge Mode
RAP
Channel 149
Power Level 3
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 147
RRM on 5GHz when in Bridge Mode
RAP
Channel 149
Power Level 1 (TPC)
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 148
RRM on 5GHz when in Bridge Mode
RAP
Channel 149
Power Level 1 (TPC)
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 149
RRM on 5GHz when in Bridge Mode
RAP
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 150
Mesh 2.4 GHz Backhaul
• MAPs Backhaul issue prior to version 8.2
• In some countries 5 GHz backhaul is not permitted
• Some customers may prefer both 5 GHz and 2.4 GHz backhauls
• Backhaul selection from Parent RAP propagates to all MAP children in a tree
• Extra precaution should be used when using different versions controller software
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 151
Cisco Outdoor Mesh 2.4 GHz and 5GHz Backhauls
Root AP Mesh AP
Backhaul 5 GHz
2.4 GHz Access
L3/L2 switch
Root AP Mesh AP
Backhaul 2.4GHz L2 switch
5 GHz Access
WLC Backhaul 2.4GHz
CPI
WGB
Wired access MAP
MSE
5 GHz Access
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 152
High Availability anti-stranded features
Stranded: a MAP that is not able to associate and find a path to WLC
• DEFAULT BGN (Bridge Group Name): Mesh APs with incorrect BGN, can still
join a running network using BGN named “DEFAULT”. With “DEFAULT”
BGN:
• MAP associates clients, and forms mesh relationships
• After 15 minutes APs will go to SCAN state rather than rebooting
• Do not confuse an unassigned BGN (null value) with DEFAULT, which is a
mode that the access point uses to connect when it cannot find its own
BGN
• DHCP fall back: this features allow a MAP configured with a wrong static IP
address to fall back to DHCP and find a WLC. If even this fails, AP then
attempts to discover a controller in Layer 2 mode
• FULL SECTOR DFS: DFS functionality allows a MAP that detects a radar
signal to transmit that up to the RAP, which then acts as if it has
experienced radar and moves the sector
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 153
Enable/disable mesh AP as leaf node
Mesh Leaf Node Support WLC CLI
(Cisco Controller) >config mesh block-child <ap_name>
{enable|disable}
• Mesh AP relationships
• Parent access point - Offers the best route back
to the RAP
• Child access point - Selects the parent access
point as its best route back to the RAP
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 154
Workgroup Bridge
(WGB)
Mesh: Stationary Network
WGB: Roaming/Nomadic Network
• HSR aka Fast WGB Roaming
• WGB Roaming Coordination (8.4)
• 802.11r on WGB (8.6)
• Ethernet daisy chain
Workgroup Bridge • Wireless Bridge Auto-
/ Autonomous Negotiation (8.5)
BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 156
IoT Wireless WGB Roaming Evolution
2. Roaming Coordination decouples roaming events on the 2.4 and 5 GHz interfaces
3. Traffic distribution using PRP over Wi-Fi effectively overcomes single channel handover or failure
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 158
WGB Roaming Coordination
• When two radios that work under WGB mode are connected to each other, there is a
roaming coordination mechanism between the two radios to prevent them from
roaming at the same time
• Roaming coordination mechanism can be applied to two scenarios
• Two connected radios on two separate IW3702s in WGB mode
• Two radios on the single IW3702, both configured as WGB
• When a WGB, needs to roam, it sends an indication to the other WGB indicating it
wants to start roam, the other WGB shall wait for 100ms (configurable) by default if it
also needs to roam , once the roam event on the WGB is complete or if the timeout
expires, the other WGB is free to roam
• Roaming Coordination mechanism facilitates seamless connectivity when multiple RF
paths are involved such as in case of PRP or DLEP
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 159
PRP over Wireless Redundancy Options
Dual WGB, Dual Radio - WLC 8.4 Single WGB, Dual Radio - WLC 8.5
5GHz 5GHz
2.4GHz 5GHz
WGB WGB
• External PRP switch as RedBox (redundancy box) • WGB as RedBox (redundancy box) performs packet
performs packet duplication/duplication discard duplication/duplication discard function
function
• Redundant path available via 2.4GHz and 5GHz
• Redundant path available via two 5GHz radios on two radios on single WGB
WGBs
• Network infrastructure side PRP switch as RedBox
• Network infrastructure side PRP switch as RedBox
• Application examples: Autonomous vehicles and
• Application examples: Train to track side, industrial straddle carriers and mission critical application etc.
automation and amusement ride applications
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 160
Guidelines for Dual WGB PRP Configuration
• Redundant path in the network
• Duplicated traffic is mapped to two SSID A and SSID B, each within specified VLAN
• Each WGB is configured to associate to either SSID A or SSID B
• Redundant 5GHz wireless paths are provided for wired clients behind the WGB, traffic from/to the client
are duplicated, MGMT frames and other traffic are not duplicated
• It is recommended that wired clients behind WGB use different VLAN from the VLANs assigned to
SSID A or SSID B
• Traffic between aggregate switch and APs are in QinQ format to identify which path they come from
• QinQ function on AP is enabled by PRP feature
• QinQ function on Aggregate switch is enabled by switch configuration
• Pair of WGBs support roaming coordination function by connection between their second Gigabit
Ethernet interface
• Currently only FlexConnect mode (central authentication, local switching) is supported
• Supported platforms - Infrastructure side AP: IW3702, AP1572 series, WGB: IW3702
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 161
Guidelines for Single WGB PRP Configuration
• Redundant wireless path in the network
• Duplicated traffic is mapped to two SSID A and SSID B, each within specified VLAN
• Each radio on single WGB is configured to associate to either SSID A or SSID B
• Redundant 2.4GHz and 5GHz wireless paths are provided for wired clients behind the WGB, traffic
from/to the client are duplicated, MGMT frames and other traffic are not duplicated
• It is recommended that wired clients behind WGB use different VLAN from the VLANs assigned to
SSID A or SSID B
• Traffic between aggregate switch and APs are in QinQ format to identify which path they come from
• QinQ function on AP is enabled by PRP feature
• QinQ function on Aggregate switch is enabled by switch configuration
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 162
Sample Configuration – Network Infrastructure
Side
• WLC configuration • Aggregate Switch - QinQ configuration • PRP Switch - PRP configuration
interface FastEthernet1/0/1 interface PRP-channel1
• Create WLAN with SSID (PRP1/PRP2) description *** Port to AP *** switchport mode trunk
switchport trunk encapsulation dot1q
• Enable local switching for each WLAN switchport trunk native vlan 201 !
switchport trunk allowed vlan 201,801,802 interface GigabitEthernet0/1
switchport mode trunk
• Configure AP to flexconnect mode, enable VLAN switchport mode trunk
no ptp enable
mapping
no cdp enable
interface FastEthernet1/0/3
prp-channel-group 1
Enable WGB multiple vlan support description ***Port to AP***
•
!
switchport trunk encapsulation dot1q
(WLC) >config wgb vlan enable interface GigabitEthernet0/2
switchport trunk native vlan 201
switchport mode trunk
switchport trunk allowed vlan 201,801,802
• Enable PRP under WLAN (CLI) - GUI available switchport mode trunk no ptp enable
starting WLC 8.5 no cdp enable
(WLC) >config wlan wgb prp enable ? prp-channel-group 1
interface FastEthernet1/0/7
<WLAN id> Enter WLAN Identifier between 1 and 512 description ***Port to PRP SW***
switchport access vlan 801
switchport mode dot1q-tunnel To create PRP channel and group, follow the PRP
configuration guide at
interface FastEthernet1/0/8 http://www.cisco.com/c/en/us/td/docs/switches/la
description *** Port to PRP SW *** n/industrial/software/configuration/guide/b_prp_ie
switchport access vlan 802 4k_5k.html#task_1055346
switchport mode dot1q-tunnel
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 163
Sample Configuration – Dual WGB PRP
Configuration
• WGB1 Configuration – Client VLAN 800, SSID VLAN 801 • WGB2 Configuration – Client VLAN 800, SSID VLAN 802
hostname WGB1 hostname WGB2
dot11 ssid PRP1 dot11 ssid PRP2
vlan 801 vlan 802
authentication open authentication open
interface Dot11Radio1 interface Dot11Radio1
no ip address no ip address
ssid PRP1 ssid PRP2
station-role workgroup-bridge station-role workgroup-bridge
! !
interface Dot11Radio1.800 interface Dot11Radio1.800
encapsulation dot1Q 800 encapsulation dot1Q 800
bridge-group 2 bridge-group 2
bridge-group 2 spanning-disabled bridge-group 2 spanning-disabled
! !
interface Dot11Radio1.801 interface Dot11Radio1.802
encapsulation dot1Q 801 native encapsulation dot1Q 802 native
bridge-group 1 bridge-group 1
bridge-group 1 spanning-disabled bridge-group 1 spanning-disabled
! !
interface GigabitEthernet0.800 interface GigabitEthernet0.800
encapsulation dot1Q 800 encapsulation dot1Q 800
bridge-group 2 bridge-group 2
! !
interface GigabitEthernet0.801 interface GigabitEthernet0.802
encapsulation dot1Q 801 native encapsulation dot1Q 802 native
bridge-group 1 bridge-group 1
! !
workgroup-bridge unified-vlan-client
workgroup-bridge unified-vlan-client
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 164
Sample Configuration – Single WGB PRP
Configuration
• Client Vlan 800, SSID PRP1 VLAN 801, SSID PRP2 bridge-group 50 spanning-disabled speed auto
VLAN 802, BVI VLAN 900 ! bridge-group 1
interface Dot11Radio0.801 bridge-group 1 spanning-disabled
• dot11 wgb prp encapsulation dot1Q 801 !
no shutdown bridge-group 100 interface GigabitEthernet0.800
bvi-vlanid 900 bridge-group 100 spanning-disabled encapsulation dot1Q 800
! ! bridge-group 50
dot11 ssid PRP1 interface Dot11Radio1 bridge-group 50 spanning-disabled
vlan 801 ssid PRP2 !
authentication open packet retries 32 drop-packet workgroup-bridge unified-vlan-client
no ids mfp client station-role workgroup-bridge
! rts retries 32
dot11 ssid PRP2 bridge-group 1
vlan 802 bridge-group 1 spanning-disabled
authentication open !
no ids mfp client interface Dot11Radio1.800
! encapsulation dot1Q 800
interface Dot11Radio0 bridge-group 50
ssid PRP1 bridge-group 50 spanning-disabled
packet retries 32 drop-packet !
station-role workgroup-bridge interface Dot11Radio1.802
rts retries 32 encapsulation dot1Q 802
bridge-group 1 bridge-group 200
bridge-group 1 spanning-disabled bridge-group 200 spanning-disabled
! interface GigabitEthernet0
interface Dot11Radio0.800 no ip address
encapsulation dot1Q 800 load-interval 30
bridge-group 50 duplex auto
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 165
Step 3: Deployment
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 166
Making sure few things before installation…
• By default the following parameters are set
• AP Role: MAP
• Default 2.4GHz and 5GHz channels are selected
• Default Transmit Power is set: Power Level 1
• Default Mesh Distances estimation is set to 12000ft
• Default BGN
• Backhaul Client Access is enabled
• Default Mesh Encryption type is EAP
• DCHP Sever
• Option 43 – IP addresses of Wireless LAN Controllers
• Option 60 – AP Type
• Option 82 – DHCP Relay Information
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 167
Don’t forget the powering requirements...
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 168
AP Accessories
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 169
Ensuring tight connections
•
•
•
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 170
Deployment
Environmental Impact
Equipment
Inside
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 171
Deployment
Environmental Impact
Equipment
Inside
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 172
Deployment
Environmental Impact
Equipment
Inside
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 173
Deployment
Environmental Impact
Equipment
Inside
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 174
Provisioning
Network Plug-N-Play – Simple, Secure, Scalable
Today’s Process Business Challenges
Direct Costs
Central Staging Facility
Ships • Shipping after Configuring device
equipment • Travel costs for IT installer
• Install OS
• Install Config
Network • Prime device Complexity
Reseller/Partner Admin
• Config errors
• Different products / processes
Security
• 3rd party not secure
Installer
Time/Productivity
Site-1 Site-2 Site-3
• Manual process
• Shipping , Storage, Travel
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 176
Day 0 Deployment options
01 OTAP Over-the-Air-Provisioning
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 177
Over-The-Air Provisioning Devices
Cisco Wireless App (Free Download!)
Laptop
Provision Monitor
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 178
Deploying via Over-the-Air Provisioning method
CREATE WIRELESS
CREATE ADMIN ACCOUNT SET UP YOUR CONTROLLER CONFIRM SETTINGS
NETWORK
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 179
Network Plug-N-Play – Simple, Secure, Scalable
Today’s Process Network
Central Staging Facility
Ships
equipment 1 Pre Provision
Projects/Sites
• Install OS
• Install Config
• Prime device Network Admin
Network
Reseller/Partner Admin
Installer
Installer
Network Admin
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 180
Deploying Cisco Mobility Express
APIC-EM/Network Plug and Play Options
01 Private
Cloud
Express Access Point in customer premises. Access
Point can then download the controller configuration file
from Network Plug and Play service.
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 181
Network Plug and Play – Private Cloud
ip dhcp pool pnp_device_pool
network 192.168.1.0 255.255.255.0
default-router 192.168.1.1 Master AP
option 43 ascii running PnP
"5A1N;B2;K4;I192.168.1.123;J80" Agent
LAN/Internet
LAN
PnP Server uses
PnP Server
self signed SSL
certificate
DHCP Request
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 182
Network Plug and Play – Cisco Cloud Redirect
Master AP
running PnP Cisco Cloud
Agent Redirect Server
DHCP Request
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 183
Outdoor Deployment with Mobility Express
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 184
Step 4: Day 1 & Day 2
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 185
Best Practices
Infrastructure Apple
Enable High Availability (AP and Client SSO) FastLane
Enable AP Failover Priority
Enable AP Multicast Mode
AVC
Enable Multicast VLAN
Enable Pre-image download
Enable AVC AP
Enable NetFlow Groups
Enable Local Profiling (DHCP and HTTP)
Enable NTP
RF
Modify the AP Re-transmit Parameters
Groups
Enable Fast SSID change
Enable Per-user BW contracts
Client
Enable Multicast Mobility
SSO
Enable Client Load balancing
Disable Aironet IE
FlexConnect Groups and Smart AP Upgrade
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 187
Wireless/ RF Less than
4 SSIDs
Disable 802.11b data rates
Restrict number of WLAN below 4
RRM
Channel bonding – 40 or 80 MHz
Enable Band Select
Use RF Profiles and AP Groups CleanAir
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 188
Mesh Set BGN
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 189
Security dot1x
SSID
Enable 802.1x and WPA/WPA2 on WLAN
Enable 802.1x authentication for AP AP dot1x
Supplicant
Change advance EAP timers
Enable SSH and disable telnet
Disable Management Over Wireless Disable
Telnet
Disable WiFi Direct
Secure Web Access (HTTPS)
https web
Enable User Policies acces
Enable Client exclusion policies
Enable rogue policies and Rogue Detection RSSI User
Strong password Policies policies
Enable IDS
BYOD Timers
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 190
Make it Easy Make
Makeit work
it Work Make
Make itit perform
Perform
Enable High Availability (AP and Client SSO)
Enable AP Failover Priority Enable 802.1x and WPA/WPA2 on WLAN
Enable AP Multicast Mode Enable 802.1x authentication for AP
Enable Multicast VLAN Change advance EAP timers
Enable SSH and disable telnet
INFRASTRUCTURE
SECURITY
Enable Pre-image download
Enable AVC Disable Management Over Wireless
Enable NetFlow Disable WiFi Direct
Enable Local Profiling (DHCP and HTTP) Secure Web Access (HTTPS)
Enable NTP Enable User Policies
Modify the AP Re-transmit Parameters Enable Client exclusion policies
Enable Fast SSID change Enable rogue policies and Rogue Detection RSSI
Enable Per-user BW contracts Strong password Policies
Enable Multicast Mobility Enable IDS
Enable Client Load balancing BYOD Timers
Disable Aironet IE
FlexConnect Groups and Smart AP Upgrade Disable 802.11b data rates
Restrict number of WLAN below 4
Set Bridge Group Name Enable channel bonding – 40 or 80 MHz
WIRELESS / RF
Set Preferred Parent Enable Band Select
Multiple Root APs in each BGN Use RF Profiles and AP Groups
Set Backhaul rate to "Auto"
MESH
Enables mesh APs to join pre-determined Bridge Groups using the BGN
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 193
Mesh : Set Preferred Parent
• Wireless All APs AP Name Mesh Preferred Parent
Allow the backhaul data rate to change dynamically as the quality of the link fluctuates
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 196
Mesh : Set Backhaul Channel width to 40/80
MHz
To avoid poor backhaul links that lead to poor overall mesh performance
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 198
Mesh : Avoid DFS channels for Backhaul
• Wireless Access Points Radios 802.11a/n/ac Configure
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 203
Complete your online session evaluation
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 204
Continue
your Demos in
the Cisco
Walk-in
self-paced
Meet the
engineer
Related
sessions
education campus labs 1:1
meetings
#CLUS BRKEWN-2027 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 205
Thank you
#CLUS
#CLUS