Hello@listena,
Glad to answer for you
It is assumed that the current networking is AC-POE-AP, and the management and service VLANs are the same. The connection of the POE is a trunk port and the PVID as a management VLAN.
By default, CAPWAP packets sent by AP wired interfaces do not carry management VLAN tags. Usually, the PVID on the interface of the access switch directly connected to the AP adds a management VLAN tag to it. That is, the management VLAN tag is not marked.
By default, the AP wired port allows all VLANs. VLAN 1 is added to the AP wired port in untagged mode, and other VLANs are added to the AP wired port in tagged mode. That is, the service VLAN tag is marked.
When the management and service VLAN is the same, the packets sent by the switch to the AP are untagged due to the PVID, that is, the management and service VLAN data arriving at the AP are untagged.
Although the AP can receive management VLAN data normally, the service VLAN data cannot reach users. This will result in wireless service failure.
You can use the following methods to solve the problem that the management and service VLANs are the same and the service is not in VLAN 1. The POE downlink port does not have PVID, that is, trunk pvid is not configured. The AP wired interface allows packets with management VLAN tags to pass. That is, management-VLAN is configured.
Glad to help you! Any further questions, let us know.