Wireless Access

 View Only
  • 1.  Roaming issue between APs in different VLAN

    Posted Dec 20, 2021 02:02 AM
    Hello Aruba experts,
    I have one issue related to roaming, the problem is the 2 APs are belongs to different VLAN.
    Please see the simple drawing here.

    When my clients roaming in vlan10(AP 1-5) OR vlan20(AP 6-210). there aren't any issue.
    But, sometimes the clients goes to the orange area, the client roaming from AP2 -> AP6, but the IP did not change, still in VLAN10 DHCP pool, the result is this client cannot connect to network.
    What we can do is disconnect and reconnect, and it will be OK. But does Aruba has a solution here? Thanks.

    ------------------------------
    Elan Cao
    ------------------------------


  • 2.  RE: Roaming issue between APs in different VLAN

    Posted Dec 20, 2021 10:04 AM
    Hi Elan,

    There are a lot of factors which have to be taken into consideration, when wanting to do such scenario. I am not sure why would you have the same SSID with different VLAN's in such scenarios (maybe you have your concerns and designed the network in such a way, i suppose).
    Are the VLAN10 AP's managed from a different wireless controller compared to VLAN20 AP's? If yes, then a fast response i can think of is IP Mobility https://www.arubanetworks.com/techdocs/ArubaOS_86_Web_Help/Content/arubaos-solutions/mobility/ip-mobi.htm


    ------------------------------
    Shpat
    ------------------------------



  • 3.  RE: Roaming issue between APs in different VLAN

    Posted Dec 20, 2021 07:13 PM
    Thank you Shpat.
    There are no meaningful concerns but all belongs to old infrastructure.
    The old VLAN typological is like this, and some unmanaged-switchs in the environment, so it's not possible to pass the unified VLAN. but this company want a unified SSID. 
    And, all APs(even in different VLAN) are managed by same controller, in same AP group. I am also thinking if this aggravate this problem.
    What if I put them in different AP groups? Will it help if no parameters can be adjusted to solve this issue?
    Thanks again.


    ------------------------------
    Elan Cao
    ------------------------------



  • 4.  RE: Roaming issue between APs in different VLAN

    Posted Dec 21, 2021 06:35 AM
    Is the virtual AP tunneled or bridged in the AP-Group?  Make sure it is tunneled.  If you have a controller-based system the ip address of the AP should not matter to the client, unless the virtual AP is bridged.

    ------------------------------
    Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.
    ------------------------------



  • 5.  RE: Roaming issue between APs in different VLAN

    Posted Dec 21, 2021 08:14 PM
    Yes, they are bridged because they are RAP in remote site. I don't want to change to tunnel at this moment because it give me trouble on IP range management and bandwidth issue.

    ------------------------------
    Elan Cao
    ------------------------------



  • 6.  RE: Roaming issue between APs in different VLAN

    Posted Dec 21, 2021 11:26 AM
    Hi Elan,

    What we usually do is the following:
    - We connect access points to a switch and we configure port on the switch as acces (lets say vlan 30) as a management vlan for the access points to be seen from the controller as well.
    - we configure SSID on the same vlan on all access points (let’s say vlan 10) for users who connect to ssid

    I will explain it as easy as i can think if:
    This is kind of a QinQ so what basically happens is that Vlan 10 will be placed inside the vlan 30 and will be sent to the wireless controller and then the wlc will depack the vlan 10 out of it.

    So
    Client -> vlan 10 -> SSID / AP -> vlan 30 -> WLC (has vlan 30 and vlan 10) -> vlan 10 -> dhcp for vlan 10


    ---------------------------------
    Shpat | MVP 2021 | ACEP | ACMP | ACCP | ACDP |
    ---------------------------------





  • 7.  RE: Roaming issue between APs in different VLAN

    Posted Dec 21, 2021 04:34 PM
    Edited by mkk Dec 21, 2021 04:36 PM
    • The access points can be in different management vlans to reach the wlc controller, this doen't impact roaming.
    • On the wlc controller you need to configure  ssid's in tunneled mode with one or more (pooled) clients vlan, recommend to stay at only one..
    • The client vlan an ip must stay the same when roaming to another AP (independed which management vlan is used by the ap).
    • All ssid traffic should be tunneled back within a GRE tunnel to your WLC where the client traffic breakout on the controller.
    Why does your client comes in another vlan?
    Do you have configured bridge-mode?
    Can you share your CLI configuration of the controller (PM is ok)?

    ------------------------------
    Marcel Koedijk | MVP Guru 2021 | ACEP | ACMP | ACCP | ACDP | Ekahau ECSE | Not an HPE Employee | Opinions are my own
    ------------------------------



  • 8.  RE: Roaming issue between APs in different VLAN

    Posted Dec 21, 2021 10:02 PM
    Thank you @shpat and @mkk, I think I already understand the reason. It should related to the remote AP deploy + bridge​ mode, since I do not want to change to tunnel mode at this moment, I would keep this issue and maybe try to push to change the old infrastructure (would be a long term job).
    Much appreciate for your help. ​​​​​

    ------------------------------
    Elan Cao
    ------------------------------