cancel
Showing results for 
Search instead for 
Did you mean: 

Q regarding IP ranges/routing and SSIDs

jp
New Contributor III

Dear all,

I am a (prospective) Ruckus newbie interested in the following setup with a couple of R650’s: the R650's would be connected over 2.5Gb Ethernet to a Mikrotik router 10.1.0.1 offering dhcp within 10.1.0.0/16; 10.1.0.1 is a NAT-gateway towards the Internet.

 

I would then like to span 3 SSIDs (each 5 and 2.4 GHz) over the R650’s:

  • SSID1 should simply bridge to 10.1.0.0/16.
  • SSID2 and SSID3 should be different subnets, say 10.2.0.0/16 and 10.3.0.0/16, and route (no NAT) via 10.1.0.1 towards the Internet. Access to 10.1.0.0/16 should be restriced, access from 10.1.0.0/16 to 10.2 and 10.3 should be allowed.

 

Can this be set up with Unleashed? What would be the preferred way: VLANs for 10.2.0.0/24 and 10.3.0.0/24 with dhcp, frewalling, etc. handled by 10.1.0.1; or SSID1 and SSID2 configured on the master R650 e.g. as Guest WLANs with local dhcp-servers and routing?

 

Thanks a bunch to anyone who cares to read & answer!

 

                Joachim.

13 REPLIES 13

Joachim,

Please send me an email with your contact details to michael.stellmann@commscope.com. I will get you connected to the local sales team in Germany.

Viele Grüße

Michael

eizens_putnins
Valued Contributor II

Making routing, ACLs, etc in router is not only faster and better, it is also simpler -- as you do all of this in 1 place, not on each AP. So go with standard and recommended design - separate VLANs for each SSID, and routing/NATing/etc them on the router. Same with DHCP server for you subnets - use router for that. It's actually correct approach for any WiFi system not for Ruckus only.

jp
New Contributor III

So, thanks to all! I got the message, I'll leave them alone with layer 2 :-).
Now I just have to finde a way to buy some for an acceptable price here in Europe..

Cheers, Joachim.

jp
New Contributor III

Here's a short update: With the help of people from Ruckus support/sales I was able to buy two R650s and deployed them last weekend. The hardest bit was to configure the VLANs on my Mikrotik infrastructure, all else was straightforward and it now works like a charm. I wish I had discoovered Ruckus earlier...