Solved

Cisco 1130AG WAP multiple SSID with cisco 877

Posted on 2011-09-13
5
655 Views
Last Modified: 2013-12-27
Hi all,

i think im almost at the completed stage of configuring this, i can conect to my ssids but am unable to route traffic as yet

im having trouble with BVI 15 on the 877 router, all my configs are below
the problem i think is that BVI15 wont come up!

thanks for any hel
------------ ROUTER ----------------- 
interface FastEthernet0
!
interface FastEthernet0.10
 encapsulation dot1Q 10 native
 no cdp enable
!
interface FastEthernet0.15
 encapsulation dot1Q 15
 no cdp enable
!
interface Vlan15
 no ip address
 no ip unreachables
 ip nat inside
 ip virtual-reassembly
 no ip route-cache cef
 no ip route-cache
 bridge-group 15
 bridge-group 15 spanning-disabled
!
interface BVI15
 ip address 192.168.15.253 255.255.255.0
 ip nat inside
 ip virtual-reassembly
!
 bridge 15 protocol ieee
bridge 15 route ip

CWAR#sh ip int brief
Interface                  IP-Address      OK? Method Status                Protocol
BVI15                      192.168.15.253  YES manual down                  down
FastEthernet0              unassigned      YES unset  up                    up
FastEthernet0.10           unassigned      YES unset  up                    up
FastEthernet0.15           unassigned      YES unset  up                    up
FastEthernet1              unassigned      YES unset  up                    up
FastEthernet2              unassigned      YES unset  up                    down
FastEthernet3              unassigned      YES unset  up                    up
Vlan15                     unassigned      YES manual up                    down

Open in new window

------------- WAP ----------------
dot11 mbssid
dot11 vlan-name GUEST vlan 10
dot11 vlan-name INTERNAL vlan 15
!
dot11 ssid CW-AR
   vlan INTERNAL
   authentication open
   authentication key-management wpa
   mbssid guest-mode
   wpa-psk ascii 7 xxxxxxxxxxxxxxxx
!
dot11 ssid CW-Guest
   vlan GUEST
   authentication open
   authentication key-management wpa
   mbssid guest-mode
   wpa-psk ascii 7 xxxxxxxxxxxxxxxxxxxxxxxxxxx
!
dot11 network-map
power inline negotiation prestandard source
!
!
username xxxxxxxxxxxxxxxxxxx privilege 15 password 7 xxxxxxxxxxxxxxxxxx
!
bridge irb
!
!
interface Dot11Radio0
 no ip address
 no ip route-cache
 !
 encryption vlan GUEST mode ciphers tkip
 !
 encryption vlan INTERNAL mode ciphers tkip
 !
 ssid CW-AR
 !
 ssid CW-Guest
 !
 channel 2452
 station-role root
!
interface Dot11Radio0.10
 encapsulation dot1Q 10 native
 no ip route-cache
 bridge-group 1
 bridge-group 1 block-unknown-source
 no bridge-group 1 source-learning
 no bridge-group 1 unicast-flooding
!
interface Dot11Radio0.15
 encapsulation dot1Q 15
 no ip route-cache
 bridge-group 15
 bridge-group 15 subscriber-loop-control
 bridge-group 15 block-unknown-source
 no bridge-group 15 source-learning
 no bridge-group 15 unicast-flooding
 bridge-group 15 spanning-disabled
!
interface Dot11Radio1
 no ip address
 no ip route-cache
 shutdown
 no dfs band block
 channel dfs
 station-role root
 bridge-group 1
 bridge-group 1 subscriber-loop-control
 bridge-group 1 block-unknown-source
 no bridge-group 1 source-learning
 no bridge-group 1 unicast-flooding
 bridge-group 1 spanning-disabled
!
interface FastEthernet0
 no ip address
 no ip route-cache
 duplex auto
 speed auto
 bridge-group 1
 no bridge-group 1 source-learning
 bridge-group 1 spanning-disabled
!
interface FastEthernet0.10
 encapsulation dot1Q 10
 no ip route-cache
!
interface FastEthernet0.15
 encapsulation dot1Q 15
 no ip route-cache
 bridge-group 15
 bridge-group 15 subscriber-loop-control
 bridge-group 15 block-unknown-source
 no bridge-group 15 source-learning
 no bridge-group 15 unicast-flooding
 bridge-group 15 spanning-disabled
!
interface BVI1
 ip address dhcp client-id FastEthernet0
 no ip route-cache
!
interface BVI15
 ip address 192.168.15.254 255.255.255.0
 no ip route-cache
 
 
 AR-WIFI#sh ip int brief
Interface                  IP-Address      OK? Method Status                Protocol
BVI1                       unassigned      YES DHCP   up                    up
BVI15                      192.168.15.254  YES manual up                    up
Dot11Radio0                unassigned      YES NVRAM  up                    up
Dot11Radio0.10             unassigned      YES unset  up                    up
Dot11Radio0.15             unassigned      YES manual up                    up
Dot11Radio1                unassigned      YES NVRAM  administratively down down
FastEthernet0              unassigned      YES NVRAM  up                    up
FastEthernet0.10           unassigned      YES unset  up                    up
FastEthernet0.15           unassigned      YES unset  up                    up

Open in new window

0
Comment
Question by:awilderbeast
  • 3
  • 2
5 Comments
 
LVL 3

Expert Comment

by:shbasm
ID: 36528496
interface FastEthernet0.10
 encapsulation dot1Q 10 native
 no cdp enable
!
interface FastEthernet0.15
 encapsulation dot1Q 15
 no cdp enable
 


you need to put ip address for these interfaces
0
 
LVL 3

Expert Comment

by:shbasm
ID: 36528526
0
 
LVL 1

Author Comment

by:awilderbeast
ID: 36529540
you cant in the 800 series you apply the ip address to a vlan then put the fa port into a vlan, which i ahve done with encap dot1q 15

and since i was using bvi interfaces on the vlans i added the ip addresses to those instead or the vlans


0
 
LVL 1

Accepted Solution

by:
awilderbeast earned 0 total points
ID: 36892617
cisco 877 does not support subinterfaces... theres approx 8 hours of my life wasted! lol
0
 
LVL 1

Author Closing Comment

by:awilderbeast
ID: 36915493
as above
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
This paper addresses the security of Sennheiser DECT Contact Center and Office (CC&O) headsets. It describes the DECT security chain comprised of “Pairing”, “Per Call Authentication” and “Encryption”, which are all part of the standard DECT protocol.
Viewers will learn how to connect to a wireless network using the network security key. They will also learn how to access the IP address and DNS server for connections that must be done manually. After setting up a router, find the network security…
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…

803 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question