要求
开整
SW1部分
配置一下接口trunk
AC1配置
vlan batch 100
interface Vlanif100
ip address 10.101.100.2 255.255.255.0interface GigabitEthernet0/0/1
port link-type trunk
port trunk allow-pass vlan 100q
capwap source interface vlanif100
wlan
regulatory-domain-profile name czp
q
ssid-profile name czp
ssid huawei1q
security-profile name czp
security wpa2 psk pass-phrase a1234567 aesq
vap-profile name czp
forward-mode tunnel
service-vlan vlan-id 101
ssid-profile czp
security-profile czpq
ap-group name czp
q
以下是核心
ap-system-profile name czp
primary-access ip-address 10.101.100.2
backup-access ip-address 10.101.100.3
q
ap-id 1 ap-mac 00e0-fc08-0e70
ap-name AP1
ap-group czp
vap-profile czp wlan 1 r 0q
ap-id 2 ap-mac 00e0-fc67-5a60
ap-name AP2ap-group czp
q
ap-group name czp
ap-system-profile czp
regulatory-domain-profile czp
vap-profile czp wlan 1 radio 0
AC2配置
AC2除了IP地址不一样以外,其他一样,不过多赘述
AC2: vlan 100
int vlan 100
ip add 10.101.100.3 24
启动备份
AC1: wlan
ac protect enable
ap-rest all
AC2: wlan
ac protect enable
ap-rest all
例 子(不用写进ensp)
[AC1-wlan-view] ap-system-profile name wlan-net
[AC1-wlan-ap-system-prof-wlan-net] primary-access ip-address 10.23.100.2
[AC1-wlan-ap-system-prof-wlan-net] backup-access ip-address 10.23.100.3
[AC1-wlan-ap-system-prof-wlan-net] quit
[AC1-wlan-view] ap-group name ap-group1
[AC1-wlan-ap-group-ap-group1] ap-system-profile wlan-net
[AC1-wlan-ap-group-ap-group1] quit
[AC1-wlan-view] ac protect enable
补充一下,由于使用的隧道转发STA数据需要经过AC所以AC和交换机之间必须放行业务vlan101
否则STA无法获取地址
SW1: int g 0/0/01 / int g0/00/2
p l t
p t a v 101
AC1/2 : int g 0/0/01
p l t
p t a v 101
效果
可以看出AC主是AC1
断开ac1试试
稍等一会切换好了