EasyManuals Logo

Juniper AX411 Configuration And Deployment Guide

Juniper AX411
25 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #5 background imageLoading...
Page #5 background image
Copyright © 2011, Juniper Networks, Inc. 5
APPLICATION NOTE - Configuring and Deploying the AX411 Wireless Access Point
L3 Management Mode
In this mode, each access point is connected to a different subnet on the branch services gateway. Traffic between
access points is routed and inspected by the branch device.
Figure 2: L3 management mode
Analogous to these, customer traffic can be forwarded using either one of these modes on a per access point basis, i.e.,
any given access point can be connected to the gateway either in L2 or L3 mode. With this in mind, it is important to
understand the different tradeoffs between these modes.
Table 2: L2 vs. L3 Forwarding Mode
FEATURE L2 MODE L3 MODE
Access point to access point
communication (and client to client
communication when clients are in
dierent access points)
Done in hardware at line rate but without
any security inspection.
Firewall and UTM services are available,
but at the expense of forwarding
performance.
Firewall authentication Not supported for L2 switched trac. Yes
Client to client isolation Not always possible (proxy-arp can be
used to force all client to client trac to
be sent to the gateway, where security
policies can be enforced).
Yes
QoS Not supported for client to client trac. Yes
Configuration complexity Simpler configuration, since a single L3
interface is shared between all access
points.
Complex, as each access point is
connected to a dierent L3 interface, with
each requiring the configuration of an IP
address, a DHCP server, security zones,
and policies.
Roaming Client roaming is supported, if MAC
authentication or no authorization
protocol is used. If authentication is used,
clients will have to log in every time they
associate to a new access point.
Roaming will require clients to send a
new DHCP request in order to obtain a
new IP address.
Configuration
The configuration is found under [wlan] hierarchy. In Junos OS release 10.0, each access point has to be configured
individually. Junos OS 10.1 includes the ability to group access points into clusters, where all access points share the
same configuration. Access points in a cluster exchange both configuration and operational information and do not
require operators to make changes to each individual access point. The clustering feature will be discussed in a future
version of this document.
OFFICE
Client
INTERNET
ge-0/0/3.0
192.168.3.1/24
ge-0/0/2.0
192.168.2.1/24
ge-0/0/1.0
192.168.1.1/24
DHCP
Handles out addresses in multiple pools
(192.168.1.0/24, 192.168.2.0/24, 192.168.3.0/24)
Ports
All access point facing ports are connected to interfaces
in switching mode and associated to the default vlan
SRX
Series

Other manuals for Juniper AX411

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Juniper AX411 and is the answer not in the manual?

Juniper AX411 Specifications

General IconGeneral
BrandJuniper
ModelAX411
CategoryWireless Access Point
LanguageEnglish

Related product manuals