Concept Guide

Table Of Contents
Client IP Assignment Client VLAN Assignment
Virtual Controller
assigned
If the Virtual Controller assigned is selected for client IP assignment, the VC creates
a private subnet and VLAN on the W-IAP for the wireless clients. The network address
translation for all client traffic that goes out of this interface is carried out at the
source. This setup eliminates the need for complex VLAN and IP address management
for a multi-site wireless network.
On selecting this option, the following client VLAN assignment options are displayed:
l Default: When selected, the default VLANas determined by the VC is assigned for
clients.
l Custom: When selected, you can specify a custom VLAN assignment option. You
can select an existing DHCP scope for client IP and VLAN assignment or you can
create a new DHCP scope by selecting New. For more information on DHCP
scopes, see Configuring DHCP Scopes on page 207.
Network assigned
If the Network assigned is selected, you can specify any of the following options for
the Client VLAN assignment.
l Default—On selecting this option, the client obtains the IP address in the same
subnet as the W-IAPs. By default, the client VLAN is assigned to the native VLAN on
the wired network.
l Static—On selecting this option, you need to specify a single VLAN, a comma
separated list of VLANS, or a range of VLANs for all clients on this network. Select
this option for configuring VLAN pooling.
l Dynamic—On selecting this option, you can assign the VLANs dynamically from a
Dynamic Host Configuration Protocol (DHCP) server. To create VLAN assignment
rules, click New to assign the user to a VLAN. In the New VLAN Assignment Rule
window, enter the following information:
l Attribute—Select an attribute returned by the RADIUS server
during authentication.
l Operator—Select an operator for matching the string.
l String—Enter the string to match
l VLAN—Enter the VLAN to be assigned.
Table 25: IP and VLAN Assignment for WLAN SSIDClients
9. Click Next to configure internal or external captive portal authentication, roles, and access rules for the
guest users.
If the client IP assignment mode is set to Network assigned in a guest SSID profile, the guest clients can log
out of the captive portal network by accessing the https://securelogin.arubanetworks.com/auth/logout.html
URL.
In the CLI
To configure WLAN settings for an SSID profile:
(Instant AP)(config)# wlan ssid-profile <name>
(Instant AP)(SSID Profile <name>)# essid <ESSID-name>
(Instant AP)(SSID Profile <name>)# type <Guest>
(Instant AP)(SSID Profile <name>)# broadcast-filter <type>
(Instant AP)(SSID Profile <name>)# dtim-period <number-of-beacons>
(Instant AP)(SSID Profile <name>)# multicast-rate-optimization
(Instant AP)(SSID Profile <name>)# dynamic-multicast-optimization
(Instant AP)(SSID Profile <name>)# dmo-channel-utilization-threshold
Dell Networking W-Series Instant 6.5.1.0-4.3.1.0 | User Guide Captive Portal for Guest Access | 119