Wireless Access

 View Only
Expand all | Collapse all

Mulitple SSIDs on separate networks

This thread has been viewed 3 times
  • 1.  Mulitple SSIDs on separate networks

    Posted Aug 18, 2020 03:11 PM

    Background: currently we have Cisco switches and access points, and we only have a single WLAN SSID that's on a separate internet connection from our corporate network for guest access. Employees connect to that and use VPN if they want wireless access to the internal network, but now that we're moving to Aruba switches and APs I'd like to introduce a corporate WLAN so they don't need to use VPN while in the office. We will be keeping the outside internet connection for guest wifi so that there is no physical connection between the guest and corporate networks

     

    We purchased some AP-515 units to go along with our 3810M switches, but I can't figure out how to serve multiple SSIDs on segregated networks in Aruba Central. Ideally I'd like Eth0 on each AP to connect to the guest network, and Eth1 connected to the corporate network, but I can't find anything specifying how to restrict an SSID to one specific port. Is this possible? 



  • 2.  RE: Mulitple SSIDs on separate networks

    Posted Aug 19, 2020 01:55 PM

    Use trunk port (VLANs) and configure VLAN-A to corporate network, and VLAN-B to guest network.

    Set firewall or ACL to limit connection between the VLANs.

    If only using single switch, you can set vlan-B using dummy IP (different from ISP-Guest). Connect access port VLAN-B to modem, and let the DHCP from modem. This way, guest wont be able to connect internal or even the switch it self.

      

     

    Best Regadrs

    Yopianus Linga