User's Manual

Table Of Contents
3/11/05 Virtual Interface
OL-7426-02
Each Operator-Defined Interface must be configured for the following:
VLAN number.
Fixed IP Address, IP netmask, and default gateway.
Physical port assignment.
Primary and Secondary DHCP Servers.
Access Control List, if required.
Refer to the Configuring the Cisco Wireless LAN Controllers
section for configuration instructions.
About the Virtual InterfaceVirtual Interface
The Virtual Interface controls Layer 3 Security and Mobility manager communications for Cisco Wireless
LAN Controllers. It maintains the DNS Gateway hostname used by Layer 3 Security and Mobility
managers to verify the source of certificates when Layer 3 Web Auth is enabled.
The Virtual Interface must be configured for the following:
Any fictitious, unassigned, unused Gateway IP Address.
DNS Gateway Host Name.
Refer to the Configuring the Cisco Wireless LAN Controllers
section for configuration instructions.
About the Service PortService Port
The physical Service port on the Cisco 4100 Series Wireless LAN Controller front panel is a 10/
100BASE-T Ethernet port dedicated to Operating System service, and was formerly known as the
Management port. The Service Port is controlled by the Service-Port Interface.
The Service Port is configured with an IP Address, subnet mask, and IP assignment protocol different
from the Management Interface. This allows the operator to manage the Cisco 4100 Series Wireless
LAN Controller directly or through a dedicated Operating System service network, such as 10.1.2.x,
which can ensure Operating System device service access during network downtime.
Cisco created the Service port to remove the Cisco SWAN device service from the network data stream
to improve security and to provide a faster service connection.
Note that you cannot assign a Gateway to the Service port, so the port is not routable, unlike the other
front-panel 10/100BASE-T ports. However, you can set up dedicated routes to network management
devices.
Also note that the Service Port is not auto-sensing, unlike the other front-panel 10/100BASE-T ports:
you must use the correct straight-through or crossover Ethernet cable to communicate with the Service
Port.
Refer to the Configuring Other Ports and Parameters
for information on how to configure the Service
Port.
About the Service-Port InterfaceService-Port Interface
The Service-Port Interface controls communications through the dedicated Cisco 4100 Series Wireless
LAN Controller front-panel Service Port
.
The Service-Port Interface uses the burned-in Cisco 4100 Series Wireless LAN Controller Service Port
MAC address, and must be configured for the following:
Note: The Service-Port Interface can only be assigned to the dedicated Cisco 4100
Series Wireless LAN Controller front-panel Service Port.