Working with VSCs
VSC data flow
5-32
Note These DHCP relay agent options do not appear for the default VSC. The default VSC uses the
same settings as defined on the Controller >> Network > Address allocation page.
VSC data flow
Each VSC provides a number of configurable options, some of which apply exclusively on
controlled APs or the controller. The following diagrams illustrate how traffic from wireless
users is handled by VSC definitions on a controlled AP and controller, and shows the options
that apply on each device. For more on traffic flow, see Traffic flow for wireless users on
page 7-6.
Access control enabled
This diagram shows traffic flow when an access-controlled VSC is bound to an AP.
VSC on controlled AP
Ingress
- SSID (from association)
Features
-
- Wireless security filters
- Wireless MAC filter
Wireless IP filter
Wireless traffic
VSC on controller
Features
- Authentication (MAC, 802.1X, HTML, VPN)
- Access control features
Egress
- Routing table
- VLAN
- IP GRE tunnel
User and
authentication
traffic
Egress
- Bridged onto port 1+2 (untagged)
- Bridged onto port 1 (VLAN)
- Client data tunnel
Ingress
- SSID (Centralized data tunnel)
- SSID (LAN port via location-aware)
- VLAN (LAN or Internet port)
- Untagged (LAN port)