配置会话模式的动态负载均衡组业务示例
适用的AC:AC6605、AC6005
适用的AP:所有形态的AP
组网需求
如图1所示,AC通过接入交换机连接和管理AP1和AP2。AP1与AP2同时覆盖区域101。
当大量用户接入到同一个AP上时,会造成AP负载过重,降低用户上网质量。企业希望通过配置负载均衡组,使用户平均的连接到均衡组内的AP上,避免某一个AP负载过重。
图1 组网配置图
数据规划
规划内容 | 规划数据 |
WLAN安全 | WEP Open-system认证,不加密 |
WLAN服务集 | Name:huawei SSID:huawei WLAN 虚接口:WLAN-ESS0 数据转发模式:隧道转发 |
AP管理VLAN | VLAN 100(由接入交换机分配) |
AP业务VLAN | VLAN 101 |
AP域 | 101 |
AC Carrier ID/AC ID | other/1 |
AP管理IP地址池 | 192.168.10.2-----192.168.10.254/24 |
AP管理网关 | 192.168.10.1/24 (AC上) |
用户上网公网地址池 | 192.168.11.2-----192.168.11.254/24 |
用户上网公网网关 | 192.168.11.1/24(AC上) |
DHCP Server | AC同时作为AP和用户的DHCP服务器 |
配置流程
按照图1进行物理连接,保证AC与IP骨干网之间网络连接正常。
配置接入交换机,保证AC与AP二层互通。
在AC上配置WLAN相关业务。
业务下发至AP,用户完成业务验证。
配置注意事项
配置负载均衡时,所有需要配置负载均衡的AP都要配置在同一域内。
接入交换机或AC上直接接AP的端口,需要打管理VLAN tag。AP上为零配置。
业务IP地址池给STA分配IP地址,管理IP地址池给AP分配IP地址,两种地址池需要分开配置。
需要将所有二层交换机在AP管理VLAN和业务VLAN内的下行口上配置端口隔离,如果不配置端口隔离,可能会在VLAN内存在不必要的广播报文,或者导致不同AP间的WLAN用户二层互通的问题。端口隔离功能未开启时,建议从接入交换机到AC之间的所有网络设备的接口都配置undo port trunk allow-pass vlan 1,防止引起报文冲突,占用端口资源。
操作步骤
1、配置接入交换机
# 使接入交换机透传管理VLAN,由接入交换机给AP管理报文添加VLAN 100 tag,需要配置AP到AC之间VLAN 100互通
<Quidway> system-view [Quidway] vlan 100 [Quidway] interface ethernet 0/0/1 [Quidway-Ethernet0/0/1] port link-type trunk [Quidway-Ethernet0/0/1] port trunk pvid vlan 100 [Quidway-Ethernet0/0/1] port trunk allow-pass vlan 100 [Quidway-Ethernet0/0/1] port-isolate enable [Quidway-Ethernet0/0/1] quit [Quidway] interface ethernet 0/0/2 [Quidway-Ethernet0/0/2] port link-type trunk [Quidway-Ethernet0/0/2] port trunk pvid vlan 100 [Quidway-Ethernet0/0/2] port trunk allow-pass vlan 100 [Quidway-Ethernet0/0/2] port-isolate enable [Quidway-Ethernet0/0/2] quit [Quidway] interface gigabitethernet 0/0/1 [Quidway-GigabitEthernet0/0/1] port link-type trunk [Quidway-GigabitEthernet0/0/1] port trunk allow-pass vlan 100 [Quidway-GigabitEthernet0/0/1] quit
2、配置AC
a、配置AC,使AP与AC之间能够传输管理报文和业务报文
# 配置AC,将接口GE0/0/1加入VLAN100、VLAN101
<AC6605> system-view [AC6605] sysname AC [AC] vlan batch 100 101 [AC] interface gigabitethernet 0/0/1 [AC-GigabitEthernet0/0/1] port link-type trunk [AC-GigabitEthernet0/0/1] port trunk allow-pass vlan 100 to 101 [AC-GigabitEthernet0/0/1] quit
b、配置AC与上层网络设备互通
说明:根据实际组网情况在AC上行口配置业务VLAN透传,和上行网络设备互通。
# 配置AC上行接口GE0/0/2加入VLAN101。
[AC] interface gigabitethernet 0/0/2 [AC-GigabitEthernet0/0/2] port link-type trunk [AC-GigabitEthernet0/0/2] port trunk allow-pass vlan 101 [AC-GigabitEthernet0/0/2] quit
c、配置AC作为AP和STA的DHCP服务器
[AC] interface Vlanif 100 [AC-Vlanif100] ip address 192.168.10.1 24 [AC-Vlanif100] dhcp select interface [AC-Vlanif100] quit [AC] interface Vlanif 101 [AC-Vlanif101] ip address 192.168.11.1 24 [AC-Vlanif101] dhcp select interface [AC-Vlanif101] quit
d、配置AC的全局参数
# 配置AC的国家码、AC ID、运营商标识和AC的源接口
[AC] wlan ac-global country-code cn Warning: Modify the country code may delete configuration on those AP which use the global country code and reset them, are you sure to continue?[Y/N]:y [AC] wlan ac-global ac id 1 carrier id other [AC] wlan [AC-wlan-view] wlan ac source interface vlanif 100
e、配置AP并上线
# 配置AP的认证方式为MAC认证
[AC-wlan-view] ap-auth-mode mac-auth
# 查询AP的设备类型
[AC-wlan-view] display ap-type all All AP
# 根据查询到的AP设备类型ID(AP6010DN-AGN type-id为19),离线添加AP
# 将AP加入指定域
[AC-wlan-view] ap-region id 101 [AC-wlan-ap-region-101] quit [AC-wlan-view] ap id 1 [AC-wlan-ap-1] region-id 101 [AC-wlan-ap-1] quit [AC-wlan-view] ap id 2 [AC-wlan-ap-2] region-id 101 [AC-wlan-ap-2] quit
# 查看AP的上线状态
[AC-wlan-view] display ap all All AP
f、配置WLAN-ESS虚接口
[AC] interface wlan-ess 0 [AC-Wlan-Ess0] port hybrid pvid vlan 101 [AC-Wlan-Ess0] port hybrid untagged vlan 101 [AC-Wlan-Ess0] quit
g、配置AP的各项参数
# 配置射频
[AC] wlan [AC-wlan-view] wmm-profile name huawei-ap1 [AC-wlan-wmm-prof-huawei-ap1] quit [AC-wlan-view] radio-profile name huawei-ap1 [AC-wlan-radio-prof-huawei-ap1] channel-mode fixed [AC-wlan-radio-prof-huawei-ap1] wmm-profile name huawei-ap1 [AC-wlan-radio-prof-huawei-ap1] quit
# 配置安全模板
[AC-wlan-view] security-profile name huawei-ap [AC-wlan-sec-prof-huawei-ap] security-policy wep [AC-wlan-sec-prof-huawei-ap ] wep authentication-method open-system [AC-wlan-sec-prof-huawei-ap] quit
# 配置流量模板
[AC-wlan-view] traffic-profile name huawei-ap [AC-wlan-wmm-traffic-huawei-ap] quit
# 配置AP1和AP2的服务集,设置数据转发模式为隧道转发
[AC-wlan-view] service-set name huawei [AC-wlan-service-set-huawei] ssid huawei [AC-wlan-service-set-huawei] wlan-ess 0 [AC-wlan-service-set-huawei] service-vlan 101 [AC-wlan-service-set-huawei] security-profile name huawei-ap [AC-wlan-service-set-huawei] traffic-profile name huawei-ap [AC-wlan-service-set-huawei] forward-mode tunnel [AC-wlan-service-set-huawei] quit
h、配置AP对应的VAP并下发配置
[AC-wlan-view] ap 1 radio 0 [AC-wlan-radio-1/0] radio-profile name huawei-ap1 [AC-wlan-radio-1/0] channel 20mhz 1 [AC-wlan-radio-1/0] service-set name huawei [AC-wlan-radio-1/0] quit [AC-wlan-view] commit ap 1 Warning: Committing configuration may cause service interruption,continue?[Y/N] y [AC-wlan-view] ap 2 radio 0 [AC-wlan-radio-2/0] radio-profile name huawei-ap1 [AC-wlan-radio-2/0] service-set name huawei [AC-wlan-radio-2/0] channel 20mhz 6 [AC-wlan-radio-2/0] quit [AC-wlan-view] commit ap 2 Warning: Committing configuration may cause service interruption,continue?[Y/N] y
i、配置动态负载
# 包括使能STA动态负载均衡功能,配置STA动态负载均衡模式、阈值,以及AC允许的最大关联次数。
[AC] wlan [AC-wlan-view] sta-load-balance enable [AC-wlan-view] sta-load-balance mode session [AC-wlan-view] sta-load-balance session gap 20 [AC-wlan-view] sta-load-balance associate-threshold 5 [AC-wlan-view] sta-load-balance enable [AC-wlan-view] commit ap 1 Warning: Committing configuration may cause service interruption,continue?[Y/N] y [AC-wlan-view] commit ap 2 Warning: Committing configuration may cause service interruption,continue?[Y/N] y
3、验证配置结果
完成配置后,用户可通过无线PC搜索到huawei的无线网络。
用户关联到无线网络上后,无线PC能够被分配相应的IP地址。
同时处在AP1和AP2的覆盖范围内的用户STA4接入无线网络后,执行命令display station load-balance sta sta4-mac-address,可以看到参与负载均衡的AP ID和AP的射频ID。
[AC]display station load-balance sta 14cf-9208-9abf
------------------------------------------------------------------------------
sta load balance group AP ID Radio ID
------------------------------------------------------------------------------ 2 0
1 0
------------------------------------------------------------------------------
Station load balance mode: Session
Station load balance status: Balance