实验需求:需要两个无线设备以太网口所接的主机,能通过无线设备互相通信。

图解:

如图,由于 A 栋与 B 栋之间的道路无法施工,为了使得 B 栋的主机能够与 A 栋的主机能够正常通信。在 A 栋与 B 栋楼顶安装无线 AP,通过 AP 中继做桥接,使得 B 栋的主机能够与 A 栋正常通信。

要求:通过配置使得 AP-2 成为无线中继,让 B 栋的 PC 通过 AP-1 获取 IP 地址能够与 A 栋PC 正常通信。

AP-1的配置:

hostname AP-1

enable password cisco

!

ip dhcp excluded-address 11.1.1.254 ip dhcp excluded-address 11.1.1.253 ip dhcp excluded-address 11.1.1.252

ip dhcp excluded-address 11.1.1.1 11.1.1.230

!

ip dhcp pool DHCP

network 11.1.1.0 255.255.255.0 default-router 11.1.1.254

!

!

!

dot11 ssid cisco authentication open

authentication key-management wpa guest-mode

wpa-psk ascii cisco888

!

interface Dot11Radio0 no ip address

no ip route-cache

!

encryption mode ciphers aes-ccm

!

ssid cisco

!

station-role root bridge-group 1

bridge-group 1 subscriber-loop-control bridge-group 1 block-unknown-source

no bridge-group 1 source-learning no bridge-group 1 unicast-flooding

!

interface Dot11Radio1 no ip address

no ip route-cache station-role root bridge-group 1

bridge-group 1 subscriber-loop-control bridge-group 1 block-unknown-source no bridge-group 1 source-learning

no bridge-group 1 unicast-flooding bridge-group 1 spanning-disabled

!

interface FastEthernet0 no ip address

no ip route-cache duplex auto speed auto bridge-group 1

no bridge-group 1 source-learning

!

interface BVI1

ip address 11.1.1.253 255.255.255.0 no ip route-cache

!

ip default-gateway 11.1.1.254

!

line con 0 line vty 0 4

password cisco

login

!

End

AP-2的配置:

hostname AP-2

!

enable secret cisco

!

dot11 ssid cisco SSID 必须与 AP-1 的匹

authentication open

authentication key-management wpa

wpa-psk ascii cisco888 密码必须和 AP-1 一样

!

interface Dot11Radio0

no ip address

no ip route-cache

!

encryption mode ciphers aes-ccm

!

ssid cisco

!

station-role workgroup-bridge 设置 AP-2 成为 AP 中继

bridge-group 1

!

interface Dot11Radio1

no ip address

no ip route-cache

dfs band 3 block

channel dfs

station-role root

bridge-group 1

bridge-group 1 subscriber-loop-control

bridge-group 1 block-unknown-source

no bridge-group 1 source-learning

no bridge-group 1 unicast-flooding

bridge-group 1 spanning-disabled !

interface FastEthernet0

no ip address

no ip route-

cache duplex

auto speed auto

bridge-group 1

bridge-group 1 spanning-disabled

!

interface BVI1

ip address 11.1.1.252 255.255.255.0 no ip route-cache

!

line con 0

line vty 0 4

password cisco

login

!

End

注:如图PC 可以通过有线连接到AP-2,也可以通过无线连接到AP-2。通过AP-2 从AP-1 那里获取IP 地址。


微思郭仔
31 声望2 粉丝

微思IT认证培训-思科、华为、红帽、oracle、VMware、PMP、CISP等,一切为了成为更好的自己,加油!!!