AD Campus wireless non-authenticated terminals cannot obtain an address

2025-06-22 10:17:09 Published
  • 0 Followed
  • 0Collected ,3Browsed

Network Topology

AD Campus wireless non-authenticated terminals cannot obtain an address

Problem Description

AD Campus wireless non-authenticated terminals cannot obtain an address

Process Analysis

1. Check the controller (CTL) configuration. (1) For wireless authentication-free, configure the AP non-direct interface group. (2) The VLAN configured in the service policy template is not the customer's own VLAN but the security group's VLAN.

2. If an address cannot be obtained, enable int vlan [security group ID] on the access device, then configure ip address dhcp-alloc to check if an address can be obtained. If an address can be obtained, troubleshoot the AP by enabling int vlan [security group ID] on the AP, then configure ip address dhcp-alloc to check if an address can be obtained.

If an IP address can be obtained by creating int vlan on the access device but not on the AP, check the AP configuration.

2. Check the device configuration: (1) Whether static service instance and free vlan are deployed on the leaf downlink port (2)

Solution

DHCP snooping is enabled on the AP, but the uplink port of the AP, which connects to the access device, is not configured with DHCP snooping trust

 

Please rate this case:   
0 Comments

No Comments

Add Comments: