Knowledge Search


×
 

How to configure location-policy for Wi-Fi users connecting to a specific AP

  [KB34022] Show Article Properties


Summary:

This article explains how to configure location-policy for Wi-Fi users connecting to a specific AP and should be placed in a specific VLAN.

Solution:
  1. In this example, we created an SSID named as “lp2” which connects to the client devices via “AP 9998”. The clients connecting to AP 9998 should also be placed in the VLAN “white”.

    WLC# set service-profile lp2 ssid-name lp2
    WLC# set service-profile lp2 auth-fallthru last-resort
    WLC# set service-profile lp2 psk-pharse “12345678”
    WLC# set service-profile lp2 wpa-ie auth-dot1x disable
    WLC# set service-profile lp2 rsn-ie cipher-ccmp enable
    WLC# set service-profile lp2 rsn-ie auth-psk enable
    WLC# set service-profile lp2 rsn-ie auth-dot1x disable
    WLC# set service-profile lp2 rsn-ie enable

    Note: Remember to create VLAN “white” in the switch with the DHCP Scope 192.168.2.1 – 192.168.2.50

  2. Create the same VLAN “white” in the WLC controller. Ensure that the VLAN name configured in the switch and controller are same.

    WLC# Set vlan 40 name white
    WLC# Set vlan 40 port 1 tag 40
    WLC# Set interface 40 ip 192.168.2.1 255.255.255.0
  3. Create a location policy which will place the Wi-Fi users connecting to SSID “lp2” via AP 9998 in VLAN “white”

    WLC# set location policy permit vlan white if ssid eq lp2 ap 9998
     

    Output for verification:

    User Name             SessID  Type  Address              VLAN              AP/Rdo
    --------------------- ------  ----- -------------------- --------------    -------
    LR-lp2-2931             3783* open  192.168.2.2,V6       white               9998/2
Related Links: