Multiple SSID's on Cisco Wireless Controller

I have a question about multiple SSID's on a Cisco 2504 WLC.  Let me first give you some details of my network.  My network looks as follows:

Cisco 2821 Router
               |
Cisco ASA5510
               |
Cisco 2950 Switch (WLC and WAP's comes off this switch)
               |
Cisco 2950 Switch (WAP's come off this switch)
               |
Cisco 2950 Switch (WAP's come off this switch)
               |
Cisco 2950 Switch (WAP's come off this switch)

I have a one VLAN network (Vlan1) on the 192.168.1.0/24 network.  My management interface of the WLC is the the same network (vlan 1), and there is only one SSID as of right now.  I would like to configure another SSID on my network for a certain group of individuals.  I have Layer 2 2950 switches, and you can only have one Vlan (no shut) at a time.  So my question is how do I create this second SSID on another subnet?
LVL 4
denver218Asked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Soulja53 6F 75 6C 6A 61 Commented:
I would introduce a layer 3 switch in the mix. If cost is an issue, used 3560 and even 3550's are going cheap these days. Otherwise you would have to do a router-on-the stick setup off of your 2821 router, assuming your ASA is just inspecting and in transparent mode.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
Craig BeckCommented:
You don't need a layer3 switch for this.

The 2950 will only allow one VLAN interface to be up at a time, but that's for management of the switch only.  You can still have multiple VLANs on the switch and traffic will pass through them freely without having an IP address on any of those VLANs on the switches.

The ASA will be either routing or transparent, but either way you have the ability to route at either the ASA or the 2821 router.

So, on the switches just create a new VLAN.  You don't need to add an IP address to that new VLAN on the switches...

conf t
vlan 10
 name WIFI
end


That's all you need.  If you have trunks between the switches you might need to add the new VLAN to those trunks, but if you post the config from your switches and tell us which ports are the links between them we can tell you what you need to do.

You'll also need to either create a trunk up to your ASA, or connect a new interface to the 2950.
0
denver218Author Commented:
Thanks
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Wireless Networking

From novice to tech pro — start learning today.