This section of the design and deployment guide has just briefly touched upon the capabilities of DNA Assurance. Additional design and deployment guides focused specifically on DNA Assurance will more deeply cover the use cases for wireless Assurance. If necessary click on the 802.11a/b/g/n tab to display the Antenna, Azimuth, and Elevation settings.

This is net gain for the cellular carrier. However, the user must provide and pay for an internet connection to route the femtocell traffic, and then pay an additional one-off or monthly fee to the cellular carrier. Some have objected to the idea that consumers are being asked to pay to help relieve network shortcomings. On the other hand, residential femtocells normally provide a ‘personal cell’ which provides benefits only to the owner’s family and friends. The femtocell access points themselves, which embody greater network functionality than found in macrocell basestations, such as the radio resource control functions. This allows much greater autonomy within the femtocell, enabling self-configuration and self-optimisation.


There are issues in this regard for access point base stations sold to consumers for home installation, for example. Further, a consumer might try to carry their base station with them to a country where it is not licensed. Femtocells incorporate interference mitigation techniques—detecting macrocells, adjusting power and scrambling codes accordingly. This differs from previous opinions expressed by AT&T and others.

Wireless interfaces must be defined at the Global level of the site hierarchy. Native VLAN The native VLAN configuration is specific to FlexConnect AP deployments. Since the wireless network discussed within this deployment guide assumes APs in centralized (local-mode) operation, no discussion of FlexConnect is included. AP locations and wireless coverage can be displayed from the floor maps. Floors are referenced during wireless provisioning.

For production networks, each site within the site hierarchy would reflect the actual time zone of the location. Change the Building to Building 23 | Global/Milpitas/ If you have floor map diagrams in DXF, DWG, JPG, GIF, or PNG formats you can add them to any defined floors. For this deployment guide the floor plan archive was exported from Cisco Prime Infrastructure version 3.5. On the PSK mode, wireless access can’t be individually or centrally managed. One password applies to all users, and it should be manually changed on all the wireless clients once it’s manually modified on the original wireless router or AP. UNDERSTAND WHAT TYPE OF WIRELESS TECHNOLOGY IS BEST FOR YOUR ENVIRONMENT AND THE BUILDING LAYOUT — Your environment influences the type of WAPs you choose and where they will be installed.

For the Typical RF profile channel width is set for 20 MHz. For the Low RF profile channel width is set for 20 MHz. Selects the channel width for the 5 GHz band.

At this point in the provisioning process, the Policy Profiles and the WLAN Profiles are not mapped to any Policy Tag applied to any AP. This will be discussed below, when the APs are provisioned with Cisco DNA Center. These which of the following enterprise wireless deployment are referred to as the Local IP and Remote IP addresses within the Web UI of the Catalyst 9800 Series WLCs. A pop-up window will inform you that the WLCs will be rebooted once they are placed high availability mode.

This will configure a traditional auto-anchor relationship between the enterprise WLC and the guest WLC. Typically, the guest WLC is located within an Internet Edge DMZ segment of the campus network. When you are completed, the new enterprise wireless network should appear in the Wireless Network Settings dashboard, as shown in the figure above. Wireless sensor settings Wireless sensors provide the ability to run diagnostic tests on the WLAN as well as perform packet captures. Wireless sensors are not discussed within this design and deployment guide. This design and deployment guide uses a single time zone, since this is a lab network.

This selection is only available if Web Auth is selected within LEVEL OF SECURITY. Determines the web portal / authentication server for Web Auth. This assigns the wireless profile named corporate to the Milpitas area. Since the wireless profile contains the lab3employee SSID, this also ensures that when WLCs and APs are assigned to the Milpitas area, the APs will broadcast the lab3employee SSID.

Click the Finish button to add the lab3employee enterprise wireless network. Since the network for this design and deployment guide was a lab network, a single DNS domain, cisco.local, was configured. The following information was entered for the DHCP Server section. The following table summarizes the site hierarchy for this design and deployment guide. A single area with multiple buildings (Buildings 23 & 24), each with multiple floors is provisioned. Femtocells are an alternative way to deliver the benefits of fixed–mobile convergence .

  • For the High RF profile, the sliders are set so that the range of power levels is from a minimum of 7 dBM to a maximum of 30 dBM is available to TPC.
  • For this this deployment guide the TYPICAL RF profile was selected.
  • Under Fabric, select No from the radio button options.
  • There are several ways to achieve this, such as alternative power sources or fallback to existing telephone infrastructure.
  • In this process, you will configure AAA, DHCP, DNS, syslog, and SNMP services that align to the site hierarchy in Cisco DNA Center.
  • This section of the design and deployment guide has just briefly touched upon the capabilities of DNA Assurance.

In the figure above all wireless clients has been selected. Click on a wireless client to display even more detailed monitoring information regarding wireless clients on your network. The next set of panels provides even more detailed monitoring information regarding wireless clients on your network.

The Juniper BT11 is an enterprise-grade access point exclusively for Bluetooth® Low Energy. The Juniper AP41 series are high-performance 802.11ac Wave 2 access points with integrated patented virtual Bluetooth® LE and Internet of Things . Apply a Zero Trust framework to your data center network security architecture to protect data and applications.

Catalyst 9800 Non

In May 2010, SoftBank Mobile launched the first free femtocell offer, providing open access femtocells free of charge to its residential and business customers. In 2009, China Unicom announced its own femtocell network. NTT DoCoMo in Japan launched their own femtocell service on 10 November 2009. The TPC Power Threshold ranges from -80 to -50 dBM.

Make sure the CLI, SNMP, and NETCONF credential ON/OFF toggle switches are set to On. All Catalyst 9800 Series WLCs require NETCONF for discovery and provisioning. The userid/password used for NETCONF access to the WLCs is the same as the SSH password. All Catalyst 9800 Series WLCs already have hostnames configured (WLC , WLC , and WLC-9800-CL). This will allow the devices to be identified by their hostnames within Cisco DNA Center inventory after discovery.

Selecting No will automatically cause the Select Interface field to appear. Fill in the Interface Name and VLAN ID for the wireless interface corresponding to the enterprise VLAN and click the Add button. If this is the first time you have configured the network hierarchy, you may only have a single Global entry in the hierarchy. For this design and deployment guide, the following information was entered. WPA-Personal is a common method to secure wireless networks, and it is suitable for most home networks.

The Update Image side panel will take you through a three-step workflow. In this step of the workflow you can choose when you want to distribute the image from the Cisco DNA Center server to the WLCs you have selected. You can choose to distribute the new image now or schedule the distribution for a future date and time. From the main Cisco DNA Center dashboard navigate to Provision This will take you to the main provisioning screen that displays the devices within the inventory. The following table shows the hostnames, platform models, and IP addresses of the WLCs for this design and deployment guide.

You can view, edit the date & time of the task, or cancel the task from this panel. When the task begins, an icon will appear next to it indicating that the update is in progress. You can expand on the task to see the specifics regarding the distribution and activation of the image, as shown in the following figure. Navigate to the main Cisco DNA Center dashboard. Click on Design, and then click on Image Repository.

For example, in the figure above, it can be seen that the overall health score of the client is based on the score for Onboarding, and the score for Connectivity. The score for Onboarding is based on whether the device successfully onboarded. Onboarding itself consists of associating to an AP, receiving an IP address from a DHCP server , and authenticating to the network.

Make your network threat aware with Juniper Connected Security. Learn how Juniper’s Experience-First Networking delivers differentiated experiences to service providers and their customers. KNOW THE TECHNOLOGY — The first step is a general information gathering phase. You want to understand the technology and the differences between various wireless specifications.

However, you must fill in the IP address, Gateway IP address, LAG/Port Number and Subnet Mask fields. The following steps provision the corporate wireless profile created within the Design the wireless network section of this document to the Catalyst 9800-CL guest anchor WLC (WLC-9800-CL). You can expand each section to see the details of the configuration. The configuration is based on the corporate wireless profile, created during the Design the wireless network section of this deployment guide. UNDERSTAND WHICH DEVICES WILL USE THE WIRELESS NETWORK AND YOUR CAPACITY NEEDS — Answer some important questions about the makeup of your applications. What types of devices will be accessing the wireless network and how many people will be using Wi-Fi at one time?

From the main Cisco DNA Center dashboard navigate to Assurance. This will take you to the Overall Health dashboard within DNA Assurance. Locate and check the boxes next to each of the APs to be provisioned. Fill in the necessary information and click the Configure HA button. Repeat the previous procedure for the Catalyst 9800-CL guest WLC (WLC-9800-CL).

This will take you back to the Authentication and Policy Servers dashboard. The new Cisco ISE server should appear with a Status of Active. You can edit the server if you need to change or correct any settings by selecting it and clicking on Edit. The password is stored on the wireless clients. Therefore, anyone on the computer can connect to the network and also see the password.

In most cases, the user must then declare which mobile phone numbers are allowed to connect to their femtocell, usually via a web interface provided by the MNO. When these mobile phones arrive under coverage of the femtocell, they switch over from the macrocell to the femtocell automatically. Most MNOs provide a way for the user to know this has happened, for example by having a different network name appear on the mobile phone. All communications will then automatically go through the femtocell. When the user leaves the femtocell coverage area, their phone hands over seamlessly to the macro network.


International location change of a femtocell is not permitted because the femtocell transmits licensed frequencies which belong to different network operators in different countries. The TPC Power Threshold is used to control the desired power levels at the cell boundaries of the APs, and hence the coverage behavior of the system. Selects the channels which Dynamic Channel Assignment will operate in automatic mode within in the 2.4 GHz band. The default setting is channels 1, 6, and 11. The Network Devices panel within Overall Health dashboard can be used to quickly identify the health of WLCs and Access Points. For example, in the figure above it can be seen that there are four WLCs , and that the overall health of all four controllers is solid green indicating good health.

Configures the amount of time a wireless client is excluded from attempting to authenticate after maximum authentication failures has been exceeded. For Catalyst 9800 Series WLCs, the Fastlane check box enables Auto QoS in Fastlane mode. Auto QoS in Fastlane mode configures the Fastlane EDCA profile for both the 5 GHz and 2.4 GHz bands.


