cancel
Showing results for 
Search instead for 
Did you mean: 

Which A3 topology with just a single router, and A3 in different subnet to AP.

Which A3 topology with just a single router, and A3 in different subnet to AP.

Anonymous
Not applicable

Hi,

Just in the process of setting up the network as per the installation usage guide:

https://docs.aerohive.com/330000/docs/help/english/documentation/A3-v3.2.0-InstallationAndUsageGuide...

The A3 is sitting in a different subnet to the access point, so deploying the L3 topology as per below:

 

8deee6cefaba453fbe51d4b44e9e0c70_88a695d4-bc14-4852-8c24-e056c14f5fb5.png

The issue I have is that I only have one router in my topology, not 2, as per the example above.

This seems to be an issue due the the Registration and Isolation VLANs V2 and V3 seem to be the same VLAN ID for remote (Top) and local (Bottom).

The fact they are different subnets is not an issue, but if they are on the same router (EXOS) I can’t use the same VLAN ID.

The topology seems to suggest they must be the same, if so, what might be the solution bearing in mind the A3 is in a different subnet / VLAN to the AP so can’t be L2 topology?

Many thanks.

1 ACCEPTED SOLUTION

Anonymous
Not applicable

 

Think this answers it on page 18:

90240f4d722b449a9393eaa8d8a8391f_d7634fc2-f805-40af-abb7-9b97532534c0.png

 

Maybe the option is the Hybrid model, issue with that is the guide doesn’t provide a guide for that deployment, so not sure how to implement it.

90240f4d722b449a9393eaa8d8a8391f_a9c14bc2-7299-4ad8-a97d-8d393e9542fc.png

 

I think the reason for this is that its reliant on the Web ACL enforcement, which will use ACL rules on the switch for registration and isolation related restrictions instead of using dynamic VLAN assignment?

Thanks

View solution in original post

2 REPLIES 2

Anonymous
Not applicable

Found the below in the Packet Fence Guide, which seems to indicate that the VLAN ID’s don’t need to be the same both sides:

a728df4c95d54e309ba60c0fe98e46ab_c07715f8-ada2-4deb-b24b-fd8004a92b80.png

 

Equally there is configuration examples that allow you to configure the topology either without the registration or isolation VLANs being required on the A3 side or being required at all. This seems to be feature adds as the A3 has progressed revisions.

 

Anonymous
Not applicable

 

Think this answers it on page 18:

90240f4d722b449a9393eaa8d8a8391f_d7634fc2-f805-40af-abb7-9b97532534c0.png

 

Maybe the option is the Hybrid model, issue with that is the guide doesn’t provide a guide for that deployment, so not sure how to implement it.

90240f4d722b449a9393eaa8d8a8391f_a9c14bc2-7299-4ad8-a97d-8d393e9542fc.png

 

I think the reason for this is that its reliant on the Web ACL enforcement, which will use ACL rules on the switch for registration and isolation related restrictions instead of using dynamic VLAN assignment?

Thanks

GTM-P2G8KFN