08-26-2015 10:37 AM
08-26-2015 10:51 AM
AP does the tunneling to the controller for the client data. AP needs to be able to communicate with the controller from whichever location the AP is at. Once connected to the controller and proper firewall configuration is in place to allow the required ports, the AP will form a GRE tunnel with the SZ100 and data will be transmitted within this tunnel. VLAN for each WLAN service can be sent to the core (datacenter) for processing of the client data.
Hope this helps.
08-26-2015 10:55 AM
08-26-2015 11:19 AM
Here are the ports you need for the SmartZone 100 to communicate with the AP effectively and other things.
AP to SmartZone Control Plane communication needs TCP port 443 for registration using certificate
AP to SmartZone Control Plane SSH Tunnel requires TCP port 22
AP to SmartZone CP for firmware updates and more needs TCP port 91
AP to SZ-CP for time sync requires UDP port 123
AP to RADIUS server if needed requires UDP port 1812 and 1813 and can be changed as needed
AP to SmartZone Data Plane for R-GRE tunnel formation and maintenance needs port 23233 and can be changed as needed in the SZ-100
AP to SmartZone DP for R-GRE traffic transmission of client data requires TCP port 23232. This is not configurable.
IP on SZ-DataPlane needs to be able to reach SZ-Control Plane IP on port 80 for internal communication - Just FYI
SZ-D to SZ-CP requires ports 443 and 6868 for other services internal to the controller, again these are FYI as both refer to internal controller functions
Hope this helps.
08-26-2015 01:24 PM