WLAN configuration


Configure the WLAN function as follows:
1. Configure a radio.
2. Configure a service set, including the SSID, security profile, traffic profile, and wireless air interface.
3. Configure the wireless network.
4. Deliver the configurations to APs.

Configure multiple SSIDs for a WLAN. One SSID indicates a wireless signal for users. All the ACs and APs can be configured with multiple SSIDs, that is, one device can send multiple radio signals. Configuration: 1. Add a new service set (New WLAN-BSS/WLAN-ESS interfaces must be added.), and configure parameters such as the SSID. 2. Invoke this service set in the AP radio. 3. A single radio can invoke multiple service sets. Different radios can invoke the same service set (applicable to the AC). Note: - Creating new wireless networks has no effect on existing networks. - Each service set can be configured with different parameters such as encryption and authentication. - Each service set maps one VLAN, namely, one address pool and one IP address segment. - Do not reuse the service set on 2.4 GHz and 5 GHz frequency bands when configuring multiple SSIDs for Fat APs.

Configuring access interfaces on WLAN devices
The following example describes how to configure an access interface on a WLAN device: An access interface can connect to a user host. [HUAWEI]vlan batch 2 //Create a VLAN. [HUAWEI]interface gigabitethernet0/0/1 [HUAWEI-GigabitEthernet0/0/1]port link-type access //Set the interface type to access. [HUAWEI-GigabitEthernet0/0/1]port default vlan 2 //Add the interface to VLAN 2. [HUAWEI-GigabitEthernet0/0/1]quit

Configuring a trunk interface on a WLAN device
The following example describes how to configure a trunk interface on an AC: A trunk interface connects an AC to a switch. [HUAWEI]vlan batch 2 3 //Create VLANs. [HUAWEI]interface gigabitethernet 0/0/1 [HUAWEI-GigabitEthernet0/0/1]port link-type trunk //Set the link type of the interface to trunk. The link type of the interface is hybrid by default. [HUAWEI-GigabitEthernet0/0/1]port trunk allow-pass vlan all //Allow packets from all VLANs to pass through. By default, the interface allows only packets from VLAN 1 to pass through. [HUAWEI-GigabitEthernet0/0/1]port trunk pvid vlan 2 //(Optional) Specify VLAN 2 as the default VLAN of the interface (default: VLAN 1).

WLAN security of AR routers
WLAN security is as follows: User access security: Link authentication, access authentication, and data encryption are used to ensure validity and security of user access on wireless networks. Service security: This feature protects service data of authorized user from being intercepted by unauthorized users during transmission. For details, see WLAN Security Configuration.

