SlideShare a Scribd company logo
1 of 13
WLAN Architecture - Considerations 
Christoffer Jacobsson
What will I talk about? 
• Some enterprise WLAN history. 
• Explaining the three working planes of a WLAN. 
• Centralized architecture, pros and cons. 
• Distributed architecture, pros and cons. 
• Summary and an extra slide on redundancy.
Where did enterprise WLAN begin? 
• Fat/Autonomous APs 
• Secondary access method 
• Unique solutions for every need 
• Limited coverage 
• Little or no visibility 
• Management nightmare
The three working planes of a WLAN 
Data plane Management plane Control plane 
• Data Forwarding • Configuration 
• Firmware 
• Monitoring/Reporting 
• Dynamic radio control 
• Mobility/Roaming 
• Load balancing 
• Encryption/Decryption 
• QoS tagging 
• Data filtering
How do we leverage these working planes? 
Management plane 
Control plane 
Data plane 
Management plane 
Control plane 
Data plane 
Management plane 
Control plane 
Data plane 
Management plane 
Control plane 
Data plane 
SSID: Awsome-Company 
Security: WPA2-PSK 
SSID: Awsome-Company 
Security: WPA2-PSK 
SSID: Awsome-Company 
Security: WPA2-PSK 
company 
Wireless Network Management System (WNMS) 
SSID: Awsome-Company 
Security: WPA2-PSK
Centralized architecture – ”The overlay implementation” 
YeahBaby Inc. WLAN project. 
500 employees, 2 devices per person. 
7 floor building. 
Trunk port including new 
WLAN client WLANs • New VLANs exist only in controller and 
Core/Distribution 
• Seamless roaming accross all floors 
• Centralized channel and power dynamics 
• Encryption from client to controller 
• One RADIUS client 
• One point of management 
s 
Management 
Control 
Data
Centralized architecture for a distributed company 
NearYou AB WLAN project. 
20 Offices spread out over the country 
All internet and server access goes through HQ 
• New VLANs exist only in HQ 
• All APs configured the same way 
• Client traffic encrypted to HQ 
• One RADIUS client 
• One point of management 
Management 
Control 
Data
Drawbacks of a centralized architecture 
NearYou AB WLAN project. 
20 Offices spread out over the country 
All internet and server access goes through HQ 
• Dependancy on controllers 
• Possible traffic U-turns and bottlenecks 
• Scalability issues 
• Controllers and licenses are expensive 
Management 
Control 
Data
Distributed architecture – Optimizing traffic flows 
UpUpAndAway Inc. WLAN project. 
4 offices globally. 
Demands local survivability. 
• Client traffic forwarded locally 
• Local RADIUS client 
• Central management on premises or in 
the cloud 
• Local shared control plane 
• Distributed architecture is redundant by 
design 
Data 
Management 
Control 
Control 
Data 
Control 
Data
Distributed architecture – an MSPs perspective 
Aranya AB, WLAN as a service. 
Customers totally separated from eachother. 
No operational dependencies on Aranya datacenter 
Management 
Control Control 
Data 
Control 
Data Data Data 
Data 
Control 
Data Data Data
Drawbacks of a distributed architecture 
Management 
Data 
Control 
Control 
Data Data Data 
• Alot of more wired side management 
• More RADIUS clients 
• Wireless encryption ends at AP 
• Changing architecture can sometimes 
require hardware replacement.
Extra redundancy considerations 
• Who and where are your RADIUS clients and servers? 
• Are those server certificates under control? 
• Are you querying more than one LDAP server? 
• Who and where are your DHCP servers and IP-helpers? 
• Always test your redundancy!
Questions and comments are welcome! 
Mail: Christoffer@aranya.se Phone: +46700 92 10 92

More Related Content

What's hot

Wide Area Networks - Jamie Reece Moore
Wide Area Networks - Jamie Reece MooreWide Area Networks - Jamie Reece Moore
Wide Area Networks - Jamie Reece MooreJamie Moore
 
Wire Harness Test Simple
Wire Harness Test SimpleWire Harness Test Simple
Wire Harness Test SimpleRon Spohrer
 
Vehicular Area Networks - McAdams
Vehicular Area Networks - McAdamsVehicular Area Networks - McAdams
Vehicular Area Networks - McAdamsTravis McAdams
 
Network Cabling
Network CablingNetwork Cabling
Network Cablingxinxinxin
 
Understanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN TechnologyUnderstanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN TechnologyCisco Canada
 
Past, Present and Future of Mobile Computing
Past, Present and Future of Mobile ComputingPast, Present and Future of Mobile Computing
Past, Present and Future of Mobile ComputingDavid Livingston J
 
Wi-Fi vs Bluetooth
Wi-Fi vs BluetoothWi-Fi vs Bluetooth
Wi-Fi vs BluetoothArun ACE
 

What's hot (9)

Wide Area Networks - Jamie Reece Moore
Wide Area Networks - Jamie Reece MooreWide Area Networks - Jamie Reece Moore
Wide Area Networks - Jamie Reece Moore
 
Clearences
ClearencesClearences
Clearences
 
Wire Harness Test Simple
Wire Harness Test SimpleWire Harness Test Simple
Wire Harness Test Simple
 
Vehicular Area Networks - McAdams
Vehicular Area Networks - McAdamsVehicular Area Networks - McAdams
Vehicular Area Networks - McAdams
 
cisco file
cisco filecisco file
cisco file
 
Network Cabling
Network CablingNetwork Cabling
Network Cabling
 
Understanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN TechnologyUnderstanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN Technology
 
Past, Present and Future of Mobile Computing
Past, Present and Future of Mobile ComputingPast, Present and Future of Mobile Computing
Past, Present and Future of Mobile Computing
 
Wi-Fi vs Bluetooth
Wi-Fi vs BluetoothWi-Fi vs Bluetooth
Wi-Fi vs Bluetooth
 

Viewers also liked

RF planning for high-densities of mobile devices and bandwidth-hungry mobile ...
RF planning for high-densities of mobile devices and bandwidth-hungry mobile ...RF planning for high-densities of mobile devices and bandwidth-hungry mobile ...
RF planning for high-densities of mobile devices and bandwidth-hungry mobile ...Aruba, a Hewlett Packard Enterprise company
 
The Aruba Tech Support Top 10: WLAN design, configuration and troubleshooting...
The Aruba Tech Support Top 10: WLAN design, configuration and troubleshooting...The Aruba Tech Support Top 10: WLAN design, configuration and troubleshooting...
The Aruba Tech Support Top 10: WLAN design, configuration and troubleshooting...Aruba, a Hewlett Packard Enterprise company
 

Viewers also liked (20)

Mobile Devices and Wi-Fi
Mobile Devices and Wi-FiMobile Devices and Wi-Fi
Mobile Devices and Wi-Fi
 
Advanced RF Design & Troubleshooting
Advanced RF Design & TroubleshootingAdvanced RF Design & Troubleshooting
Advanced RF Design & Troubleshooting
 
RF planning for high-densities of mobile devices and bandwidth-hungry mobile ...
RF planning for high-densities of mobile devices and bandwidth-hungry mobile ...RF planning for high-densities of mobile devices and bandwidth-hungry mobile ...
RF planning for high-densities of mobile devices and bandwidth-hungry mobile ...
 
Getting the most out of the Aruba Policy Enforcement Firewall
Getting the most out of the Aruba Policy Enforcement FirewallGetting the most out of the Aruba Policy Enforcement Firewall
Getting the most out of the Aruba Policy Enforcement Firewall
 
Fast-track your career by going from wireless to mobility engineer
Fast-track your career by going from wireless to mobility engineerFast-track your career by going from wireless to mobility engineer
Fast-track your career by going from wireless to mobility engineer
 
Wi-Fi Security Fundamentals
Wi-Fi Security FundamentalsWi-Fi Security Fundamentals
Wi-Fi Security Fundamentals
 
Packets never lie: An in-depth overview of 802.11 frames
Packets never lie: An in-depth overview of 802.11 framesPackets never lie: An in-depth overview of 802.11 frames
Packets never lie: An in-depth overview of 802.11 frames
 
High-density 802.11ac Wi-Fi design and deployment for large public venues
High-density 802.11ac Wi-Fi design and deployment for large public venuesHigh-density 802.11ac Wi-Fi design and deployment for large public venues
High-density 802.11ac Wi-Fi design and deployment for large public venues
 
The Aruba Tech Support Top 10: WLAN design, configuration and troubleshooting...
The Aruba Tech Support Top 10: WLAN design, configuration and troubleshooting...The Aruba Tech Support Top 10: WLAN design, configuration and troubleshooting...
The Aruba Tech Support Top 10: WLAN design, configuration and troubleshooting...
 
A-to-Z design guide for the all-wireless workplace
A-to-Z design guide for the all-wireless workplaceA-to-Z design guide for the all-wireless workplace
A-to-Z design guide for the all-wireless workplace
 
Aruba WLANs 101 and design fundamentals
Aruba WLANs 101 and design fundamentalsAruba WLANs 101 and design fundamentals
Aruba WLANs 101 and design fundamentals
 
Wlan
WlanWlan
Wlan
 
Breakout - Airheads Macau 2013 - WLAN Management & Troubleshooting with AirWave
Breakout - Airheads Macau 2013 - WLAN Management & Troubleshooting with AirWaveBreakout - Airheads Macau 2013 - WLAN Management & Troubleshooting with AirWave
Breakout - Airheads Macau 2013 - WLAN Management & Troubleshooting with AirWave
 
Breakout - Airheads Macau 2013 - Cloud WiFi
Breakout - Airheads Macau 2013 - Cloud WiFiBreakout - Airheads Macau 2013 - Cloud WiFi
Breakout - Airheads Macau 2013 - Cloud WiFi
 
E Rate Modernization Overview
E Rate Modernization Overview E Rate Modernization Overview
E Rate Modernization Overview
 
Make Your Own Meridian Mobile App Workshop #AirheadsConf Italy
Make Your Own Meridian Mobile App Workshop #AirheadsConf ItalyMake Your Own Meridian Mobile App Workshop #AirheadsConf Italy
Make Your Own Meridian Mobile App Workshop #AirheadsConf Italy
 
IDC Aruba Webinar - 3 Feb 15
IDC Aruba Webinar - 3 Feb 15IDC Aruba Webinar - 3 Feb 15
IDC Aruba Webinar - 3 Feb 15
 
Aruba Instant Workshop #AirheadsConf Italy
Aruba Instant Workshop #AirheadsConf ItalyAruba Instant Workshop #AirheadsConf Italy
Aruba Instant Workshop #AirheadsConf Italy
 
Advanced Aruba Mobility Access Switch Workshop #AirheadsConf Italy
Advanced Aruba Mobility Access Switch Workshop #AirheadsConf ItalyAdvanced Aruba Mobility Access Switch Workshop #AirheadsConf Italy
Advanced Aruba Mobility Access Switch Workshop #AirheadsConf Italy
 
Aruba Networks at WFD6
Aruba Networks at WFD6 Aruba Networks at WFD6
Aruba Networks at WFD6
 

Similar to WLAN Architecture - Considerations

Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...SWITCHPOINT NV/SA
 
Dave Chandler Presents SDN at World Wide Technology's TECday - St. Louis
Dave Chandler Presents SDN at World Wide Technology's TECday - St. LouisDave Chandler Presents SDN at World Wide Technology's TECday - St. Louis
Dave Chandler Presents SDN at World Wide Technology's TECday - St. LouisWorld Wide Technology
 
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloudSD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloudVeloCloud Networks, Inc.
 
CloudStack challenges for China customers
CloudStack challenges for China customersCloudStack challenges for China customers
CloudStack challenges for China customersgavin_lee
 
The right Wireless Architecture for you
The right Wireless Architecture for youThe right Wireless Architecture for you
The right Wireless Architecture for youCisco Canada
 
VMworld 2013: Designing Network Virtualization for Data-Centers: Greenfield D...
VMworld 2013: Designing Network Virtualization for Data-Centers: Greenfield D...VMworld 2013: Designing Network Virtualization for Data-Centers: Greenfield D...
VMworld 2013: Designing Network Virtualization for Data-Centers: Greenfield D...VMworld
 
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'OpenStack Korea Community
 
Network Functions Virtualization and CloudStack
Network Functions Virtualization and CloudStackNetwork Functions Virtualization and CloudStack
Network Functions Virtualization and CloudStackChiradeep Vittal
 
Lisa Guess - Embracing the Cloud
Lisa Guess - Embracing the CloudLisa Guess - Embracing the Cloud
Lisa Guess - Embracing the Cloudcentralohioissa
 
VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX VMworld
 
Wired and Wireless In-Depth Convergence Through eSight, Significantly Simpli...
 Wired and Wireless In-Depth Convergence Through eSight, Significantly Simpli... Wired and Wireless In-Depth Convergence Through eSight, Significantly Simpli...
Wired and Wireless In-Depth Convergence Through eSight, Significantly Simpli...Huawei Enterprise Hong Kong
 
Create and Manage a Micro-Segmented Data Center – Best Practices
Create and Manage a Micro-Segmented Data Center – Best PracticesCreate and Manage a Micro-Segmented Data Center – Best Practices
Create and Manage a Micro-Segmented Data Center – Best PracticesAlgoSec
 
cyfuture-dc-services
cyfuture-dc-services cyfuture-dc-services
cyfuture-dc-services Vishal Yadav
 
Amplify Hybrid WAN ROI with SD-WAN - VeloCloud
Amplify Hybrid WAN ROI with SD-WAN - VeloCloudAmplify Hybrid WAN ROI with SD-WAN - VeloCloud
Amplify Hybrid WAN ROI with SD-WAN - VeloCloudVeloCloud Networks, Inc.
 
The Evolving Data Center – Past, Present and Future
The Evolving Data Center – Past, Present and FutureThe Evolving Data Center – Past, Present and Future
The Evolving Data Center – Past, Present and FutureCisco Canada
 
Virtualization and cloud computing
Virtualization and cloud computingVirtualization and cloud computing
Virtualization and cloud computingDeep Gupta
 
NephoScale Elastic Networking
NephoScale Elastic NetworkingNephoScale Elastic Networking
NephoScale Elastic NetworkingNephoScale
 
Data networking at UCL - Networkshop44
Data networking at UCL - Networkshop44Data networking at UCL - Networkshop44
Data networking at UCL - Networkshop44Jisc
 
CloudCast
CloudCastCloudCast
CloudCastGeneXus
 

Similar to WLAN Architecture - Considerations (20)

Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
 
Dave Chandler Presents SDN at World Wide Technology's TECday - St. Louis
Dave Chandler Presents SDN at World Wide Technology's TECday - St. LouisDave Chandler Presents SDN at World Wide Technology's TECday - St. Louis
Dave Chandler Presents SDN at World Wide Technology's TECday - St. Louis
 
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloudSD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
 
CloudStack challenges for China customers
CloudStack challenges for China customersCloudStack challenges for China customers
CloudStack challenges for China customers
 
The right Wireless Architecture for you
The right Wireless Architecture for youThe right Wireless Architecture for you
The right Wireless Architecture for you
 
VMworld 2013: Designing Network Virtualization for Data-Centers: Greenfield D...
VMworld 2013: Designing Network Virtualization for Data-Centers: Greenfield D...VMworld 2013: Designing Network Virtualization for Data-Centers: Greenfield D...
VMworld 2013: Designing Network Virtualization for Data-Centers: Greenfield D...
 
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
 
Network Functions Virtualization and CloudStack
Network Functions Virtualization and CloudStackNetwork Functions Virtualization and CloudStack
Network Functions Virtualization and CloudStack
 
Lisa Guess - Embracing the Cloud
Lisa Guess - Embracing the CloudLisa Guess - Embracing the Cloud
Lisa Guess - Embracing the Cloud
 
VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX
 
Wired and Wireless In-Depth Convergence Through eSight, Significantly Simpli...
 Wired and Wireless In-Depth Convergence Through eSight, Significantly Simpli... Wired and Wireless In-Depth Convergence Through eSight, Significantly Simpli...
Wired and Wireless In-Depth Convergence Through eSight, Significantly Simpli...
 
Create and Manage a Micro-Segmented Data Center – Best Practices
Create and Manage a Micro-Segmented Data Center – Best PracticesCreate and Manage a Micro-Segmented Data Center – Best Practices
Create and Manage a Micro-Segmented Data Center – Best Practices
 
cyfuture-dc-services
cyfuture-dc-services cyfuture-dc-services
cyfuture-dc-services
 
PLB
PLBPLB
PLB
 
Amplify Hybrid WAN ROI with SD-WAN - VeloCloud
Amplify Hybrid WAN ROI with SD-WAN - VeloCloudAmplify Hybrid WAN ROI with SD-WAN - VeloCloud
Amplify Hybrid WAN ROI with SD-WAN - VeloCloud
 
The Evolving Data Center – Past, Present and Future
The Evolving Data Center – Past, Present and FutureThe Evolving Data Center – Past, Present and Future
The Evolving Data Center – Past, Present and Future
 
Virtualization and cloud computing
Virtualization and cloud computingVirtualization and cloud computing
Virtualization and cloud computing
 
NephoScale Elastic Networking
NephoScale Elastic NetworkingNephoScale Elastic Networking
NephoScale Elastic Networking
 
Data networking at UCL - Networkshop44
Data networking at UCL - Networkshop44Data networking at UCL - Networkshop44
Data networking at UCL - Networkshop44
 
CloudCast
CloudCastCloudCast
CloudCast
 

More from Aruba, a Hewlett Packard Enterprise company

More from Aruba, a Hewlett Packard Enterprise company (20)

Airheads Tech Talks: Cloud Guest SSID on Aruba Central
Airheads Tech Talks: Cloud Guest SSID on Aruba CentralAirheads Tech Talks: Cloud Guest SSID on Aruba Central
Airheads Tech Talks: Cloud Guest SSID on Aruba Central
 
Airheads Tech Talks: Understanding ClearPass OnGuard Agents
Airheads Tech Talks: Understanding ClearPass OnGuard AgentsAirheads Tech Talks: Understanding ClearPass OnGuard Agents
Airheads Tech Talks: Understanding ClearPass OnGuard Agents
 
Airheads Tech Talks: Advanced Clustering in AOS 8.x
Airheads Tech Talks: Advanced Clustering in AOS 8.xAirheads Tech Talks: Advanced Clustering in AOS 8.x
Airheads Tech Talks: Advanced Clustering in AOS 8.x
 
EMEA Airheads_ Advance Aruba Central
EMEA Airheads_ Advance Aruba CentralEMEA Airheads_ Advance Aruba Central
EMEA Airheads_ Advance Aruba Central
 
EMEA Airheads_ Aruba AppRF – AOS 6.x & 8.x
EMEA Airheads_ Aruba AppRF – AOS 6.x & 8.xEMEA Airheads_ Aruba AppRF – AOS 6.x & 8.x
EMEA Airheads_ Aruba AppRF – AOS 6.x & 8.x
 
EMEA Airheads- Switch stacking_ ArubaOS Switch
EMEA Airheads- Switch stacking_ ArubaOS SwitchEMEA Airheads- Switch stacking_ ArubaOS Switch
EMEA Airheads- Switch stacking_ ArubaOS Switch
 
EMEA Airheads- LACP and distributed LACP – ArubaOS Switch
EMEA Airheads- LACP and distributed LACP – ArubaOS SwitchEMEA Airheads- LACP and distributed LACP – ArubaOS Switch
EMEA Airheads- LACP and distributed LACP – ArubaOS Switch
 
Introduction to AirWave 10
Introduction to AirWave 10Introduction to AirWave 10
Introduction to AirWave 10
 
EMEA Airheads- Virtual Switching Framework- Aruba OS Switch
EMEA Airheads- Virtual Switching Framework- Aruba OS SwitchEMEA Airheads- Virtual Switching Framework- Aruba OS Switch
EMEA Airheads- Virtual Switching Framework- Aruba OS Switch
 
EMEA Airheads- Aruba Central with Instant AP
EMEA Airheads- Aruba Central with Instant APEMEA Airheads- Aruba Central with Instant AP
EMEA Airheads- Aruba Central with Instant AP
 
EMEA Airheads- AirGroup profiling changes across 8.1 & 8.2 – ArubaOS 8.x
EMEA Airheads- AirGroup profiling changes across 8.1 & 8.2 – ArubaOS 8.xEMEA Airheads- AirGroup profiling changes across 8.1 & 8.2 – ArubaOS 8.x
EMEA Airheads- AirGroup profiling changes across 8.1 & 8.2 – ArubaOS 8.x
 
EMEA Airheads- Getting Started with the ClearPass REST API – CPPM
EMEA Airheads-  Getting Started with the ClearPass REST API – CPPMEMEA Airheads-  Getting Started with the ClearPass REST API – CPPM
EMEA Airheads- Getting Started with the ClearPass REST API – CPPM
 
EMEA Airheads - AP Discovery Logic and AP Deployment
EMEA Airheads - AP Discovery Logic and AP DeploymentEMEA Airheads - AP Discovery Logic and AP Deployment
EMEA Airheads - AP Discovery Logic and AP Deployment
 
EMEA Airheads- Layer-3 Redundancy for Mobility Master - ArubaOS 8.x
EMEA Airheads- Layer-3 Redundancy for Mobility Master - ArubaOS 8.xEMEA Airheads- Layer-3 Redundancy for Mobility Master - ArubaOS 8.x
EMEA Airheads- Layer-3 Redundancy for Mobility Master - ArubaOS 8.x
 
EMEA Airheads- Manage Devices at Branch Office (BOC)
EMEA Airheads- Manage Devices at Branch Office (BOC)EMEA Airheads- Manage Devices at Branch Office (BOC)
EMEA Airheads- Manage Devices at Branch Office (BOC)
 
EMEA Airheads - What does AirMatch do differently?v2
 EMEA Airheads - What does AirMatch do differently?v2 EMEA Airheads - What does AirMatch do differently?v2
EMEA Airheads - What does AirMatch do differently?v2
 
Airheads Meetups: 8400 Presentation
Airheads Meetups: 8400 PresentationAirheads Meetups: 8400 Presentation
Airheads Meetups: 8400 Presentation
 
Airheads Meetups: Ekahau Presentation
Airheads Meetups: Ekahau PresentationAirheads Meetups: Ekahau Presentation
Airheads Meetups: Ekahau Presentation
 
Airheads Meetups- High density WLAN
Airheads Meetups- High density WLANAirheads Meetups- High density WLAN
Airheads Meetups- High density WLAN
 
Airheads Meetups- Avans Hogeschool goes Aruba
Airheads Meetups- Avans Hogeschool goes ArubaAirheads Meetups- Avans Hogeschool goes Aruba
Airheads Meetups- Avans Hogeschool goes Aruba
 

Recently uploaded

Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsMark Billinghurst
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationSafe Software
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Mattias Andersson
 
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Wonjun Hwang
 
Pigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticscarlostorres15106
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 3652toLead Limited
 
APIForce Zurich 5 April Automation LPDG
APIForce Zurich 5 April  Automation LPDGAPIForce Zurich 5 April  Automation LPDG
APIForce Zurich 5 April Automation LPDGMarianaLemus7
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupFlorian Wilhelm
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...shyamraj55
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesSinan KOZAK
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii SoldatenkoFwdays
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationSlibray Presentation
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfAlex Barbosa Coqueiro
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationRidwan Fadjar
 

Recently uploaded (20)

Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR Systems
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
 
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort ServiceHot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food Manufacturing
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?
 
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
 
Pigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping Elbows
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
 
APIForce Zurich 5 April Automation LPDG
APIForce Zurich 5 April  Automation LPDGAPIForce Zurich 5 April  Automation LPDG
APIForce Zurich 5 April Automation LPDG
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project Setup
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen Frames
 
DMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special EditionDMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special Edition
 
Vulnerability_Management_GRC_by Sohang Sengupta.pptx
Vulnerability_Management_GRC_by Sohang Sengupta.pptxVulnerability_Management_GRC_by Sohang Sengupta.pptx
Vulnerability_Management_GRC_by Sohang Sengupta.pptx
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck Presentation
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdf
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 Presentation
 

WLAN Architecture - Considerations

  • 1. WLAN Architecture - Considerations Christoffer Jacobsson
  • 2. What will I talk about? • Some enterprise WLAN history. • Explaining the three working planes of a WLAN. • Centralized architecture, pros and cons. • Distributed architecture, pros and cons. • Summary and an extra slide on redundancy.
  • 3. Where did enterprise WLAN begin? • Fat/Autonomous APs • Secondary access method • Unique solutions for every need • Limited coverage • Little or no visibility • Management nightmare
  • 4. The three working planes of a WLAN Data plane Management plane Control plane • Data Forwarding • Configuration • Firmware • Monitoring/Reporting • Dynamic radio control • Mobility/Roaming • Load balancing • Encryption/Decryption • QoS tagging • Data filtering
  • 5. How do we leverage these working planes? Management plane Control plane Data plane Management plane Control plane Data plane Management plane Control plane Data plane Management plane Control plane Data plane SSID: Awsome-Company Security: WPA2-PSK SSID: Awsome-Company Security: WPA2-PSK SSID: Awsome-Company Security: WPA2-PSK company Wireless Network Management System (WNMS) SSID: Awsome-Company Security: WPA2-PSK
  • 6. Centralized architecture – ”The overlay implementation” YeahBaby Inc. WLAN project. 500 employees, 2 devices per person. 7 floor building. Trunk port including new WLAN client WLANs • New VLANs exist only in controller and Core/Distribution • Seamless roaming accross all floors • Centralized channel and power dynamics • Encryption from client to controller • One RADIUS client • One point of management s Management Control Data
  • 7. Centralized architecture for a distributed company NearYou AB WLAN project. 20 Offices spread out over the country All internet and server access goes through HQ • New VLANs exist only in HQ • All APs configured the same way • Client traffic encrypted to HQ • One RADIUS client • One point of management Management Control Data
  • 8. Drawbacks of a centralized architecture NearYou AB WLAN project. 20 Offices spread out over the country All internet and server access goes through HQ • Dependancy on controllers • Possible traffic U-turns and bottlenecks • Scalability issues • Controllers and licenses are expensive Management Control Data
  • 9. Distributed architecture – Optimizing traffic flows UpUpAndAway Inc. WLAN project. 4 offices globally. Demands local survivability. • Client traffic forwarded locally • Local RADIUS client • Central management on premises or in the cloud • Local shared control plane • Distributed architecture is redundant by design Data Management Control Control Data Control Data
  • 10. Distributed architecture – an MSPs perspective Aranya AB, WLAN as a service. Customers totally separated from eachother. No operational dependencies on Aranya datacenter Management Control Control Data Control Data Data Data Data Control Data Data Data
  • 11. Drawbacks of a distributed architecture Management Data Control Control Data Data Data • Alot of more wired side management • More RADIUS clients • Wireless encryption ends at AP • Changing architecture can sometimes require hardware replacement.
  • 12. Extra redundancy considerations • Who and where are your RADIUS clients and servers? • Are those server certificates under control? • Are you querying more than one LDAP server? • Who and where are your DHCP servers and IP-helpers? • Always test your redundancy!
  • 13. Questions and comments are welcome! Mail: Christoffer@aranya.se Phone: +46700 92 10 92

Editor's Notes

  1. Welcome the audience and introduction of me and my presentation.
  2. Go through the agenda with the audience. Tell the audience that it´s not forbidden to take notes, you just don´t have to. Get my email in the end to get the presentation.
  3. Talk about Fat/Autonomous APs, how they were deployed and the challenges associated with it. Clicks: Brings out another line of how old WLAN was to talk about. Next: The three working planes of a WLAN.
  4. Explain the three working planes of a WLAN. Click1: Data plane appears with Data forwarding. Click2: Management plane appears with Configuration, Firmware and Monitoring Click3: Control Plane appears with Dynamic radio control, Roaming, Load balancing, Encryption, QoS, Data filtering Next: Autonomous APs configured with a WNMS
  5. An old implementation of Autonomous accesspoints where one is misconfigured. Explain what the effects of this is and how it can be hard to find. Click1: X marks the error. Click2: WNMS is installed. Click3: Management plane is centralized. Click4: Error is corrected. Next: Centralized Architecture, the overlay implementation.
  6. Explain how you would rarely want wireless devices mixed up with wired devices in a VLAN and the roaming issues involved with changing VLANs when roaming. A new group of VLANs are needed for this implementation and configuring them on all the access switches and trunk ports to APs can be a pain. Click1: Brings out the units on the design drawing Explain how easily a centralized architecture solves these issues and makes this implementation very quick and easy. Click2: Brings out the benefits of this setup. Next: Centralized architecture for a distributed company
  7. Explain the setup with centralized resources and internet access. No local resources on site. Click1: Brings out the devices on the design drawing. Explain how simply we can deploy remote APs like this using DNS / DHCP options and centrally configure them in one place. Talk about how you could centrally separate them into their own configuration groups and VLANs to be able to make changes per site. Click2: Brings out the benefits of this setup. Next: Drawbacks of a centralized architecture
  8. Click1: Brings out the possible drawbacks of this centralized setup. Explain the single point of failure scenario of this setup and how to implement redundancy. Pretend that they implement a file server in Maastricht branch and how traffic would then U-turn in HQ. Explain how the controller uplink can be a bottleneck traffic wise with the high throughputs of 802.11n and 802.11ac. (maybe not in this picture) Explain the continual scalability issue with a controller based architecture. Sit with a big empty controller and wait for growth or buy small controllers as you go? Neither is good or effective. Explain the big costs associated with controllers and licenses. Next: Distributed architecture: Optimizing traffic flow
  9. Explain how there offices all have their own internet access and local file/application/authentication servers. Explain how moving in with a centralized architecture in one site is out of the question and deploying controllers everywhere maybe is unnecessary. Click1: Brings out the devices in the design drawing. Explain that I´ve chosen to go with a distributed architecture to handle Data plane and control plane locally while maintaining a centralized point of configuration with a WNMS in own datacenter or in the cloud. Click2: Bring out the benefits of this setup. Explain how distributed architecture is redundant by design. Explain what happens when management server is unreachable.
  10. Explain what a managed services provider is and how they want to be able to add and expand customers freely. Click1: Adds Customer A Click2: Adds the working planes of this setup. Explain why this setup works good for MSPs and how it´s redundant by design. Also explain how the customer WLAN isn´t dependant on Aranya datacenter to be up and running. Click3: Add Customer B Explain that with less central hardware limitations we can add customers and sites of existing customers easily. Next: Extra redundancy considerations
  11. Explain what a managed services provider is and how they want to be able to add and expand customers freely. Click1: Adds Customer A Click2: Adds the working planes of this setup. Explain why this setup works good for MSPs and how it´s redundant by design. Also explain how the customer WLAN isn´t dependant on Aranya datacenter to be up and running. Click3: Add Customer B Explain that with less central hardware limitations we can add customers and sites of existing customers easily. Next: Extra redundancy considerations
  12. Quote the picture and tell something about the redundancies we´ve discussed so far. Click1: Who and where are your RADIUS clients and servers? Explain that in a centralized architecture the controller is most commonly the RADIUS client while in a distributed architecture it´s mostly the APs or a virtual IP on the APs. You should be aware and configure your RADIUS servers accordingly. Click2: Are those server certificates under control? Explain how it´s one of the biggest reasons for ”WLAN down” scenarios that the server certificates expire. Even though it´s a server issue, the customer will blame the WLAN and plug in a cable. Click3: Are you querying more than one LDAP server? Explain how it´s commonly seen to point functionality to one LDAP server and then never implement a backup one. Make sure you do! The AD administrators won´t feel bad for you when it fails over. Click4: Who and where are your DHCP servers and IP-helpers? Explain that you mean plural, redundancy is important even when it comes to DHCP servers. Make sure you know where the DHCP packet from your client will end up, who will forward this packet and who´re the servers that will be answering this request. Avoid those incidents regarding full scopes by monitoring them. Click5: Always test your redundancy! Next: Questions? The end.
  13. Thank the audience and take questions etc.