meru opdatering connection, marts 2013 brian andersen, systems engineer

44
Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Upload: natalia-darsey

Post on 31-Mar-2015

215 views

Category:

Documents


2 download

TRANSCRIPT

Page 1: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Meru opdateringConnection, Marts 2013

Brian Andersen, Systems Engineer

Page 2: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Agenda

• Forskellen på Meru og alle de andre producenter.

• Vores produkt portofølge.

• Hvilken produkter til hvilke typer af krav.

• Eksempler på nogle typiske konfigurationer.

• NSP – Support – Partner Status

• Og forhåbentlig en lang række spørgsmål undervejs.

Page 3: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Kort om WiFi og hvorfor Meru

Page 4: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Radio Physics Review

• Transmission on channels (similar to individual wires)

– Typically multiple channels available at once

• Channel is a shared medium (like a hub)

– Contention for access

– Radio is half-duplex

– Throughput is divided amongst all wireless devices

• Airtime is most precious resource

• Transmission subject to RF interference

Page 5: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

WiFi Review – Roaming

Wired LAN (Ethernet)

Channel 1 Channel 6

Station A

BSSID=xx:xx:xx:xx BSSID=xx:zz:zz:zz:zz

Station B

Page 6: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

WiFi Review – Roaming

• Station A is associated with AP 1 and decides to move towards AP 2.

Wired LAN (Ethernet)

Channel 1 Channel 1

Station A

VC: BSSID=xx:xx:xx:xx VC: BSSID=xx:xx:xx:xx

Station B

Page 7: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Channel design for service

1st kanal lag til interne brugere, 2nd kanal lag er til VoIP.3rd kanal lag er til private enheder

Page 8: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Meru’s produkter

Page 9: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Meru’s Extensive Product Portfolio

Indoor Access Points

Controllers- Appliance & VE -

Services Appliance- Appliance & VE -

Applications

MC4200500 APs5,000 clients

MC3200200 APs2,000 clients

SA200

SA2000

Scale

Service Assurance Manager

E(z)RF NMS

Spectrum

Manager

Identity ManagerGuest Management

& Smart Connect

Compliance Manager & WIP

MC60005,000 APs50,000 clients

MC155030 APs500 clients

SA250

Q3! AP8323X3:3802.11ac

AP433 & AP332 3x3:3 MIMO, 3X3:2 MIMO802.11n

AP320 3x3:2 MIMO 802.11n

OAP3803x3:2 MIMO(Outdoor)

AP10002x2:2 MIMO802.11n

AP1102x2:2 MIMO802.11n

Oct 2012

System Director 5.3 operating systemOct 2012

Page 10: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Service Assurance Application Suite

Simplify – How are various WLANs doing?

# of clients

Bandwidth Usage

Controller Availability

AP Availability

Mix of clients

Page 11: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

RF Monitoring Console Displays

Spectrogram with Event Overlay

Spectrum Analyzer

Persistence

Centralized Interference and Event Log

Page 12: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

IDM: POLICY BASED GUEST PORTALS> Dynamically generate guest portal based upon your policy using:

Location IP Address Cookies HTTP HeaderLanguage Time of Day Web Browser GET ParameterDevice OS Mobile Device POST Parameter

Page 13: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

AUTOMATED CLIENT CONFIGURATION WITH SMARTCONNECT

1. Authenticate using web authentication

2. Download an applet to configure 802.1x

Access Point

Encrypted

Encrypted

3. Automatically connect with 802.1x

Windows iPad/iPhone Apple Mac Android

and More..

Supported Today:

Identity Manager automates the configuration through a downloadable agent from the guest portal

Page 14: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Meru’s Extensive Product Portfolio

Indoor Access Points

Controllers- Appliance & VE -

Services Appliance- Appliance & VE -

Applications

MC4200500 APs5,000 clients

MC3200200 APs2,000 clients

SA200

SA2000

Scale

Service Assurance Manager

E(z)RF NMS

Spectrum

Manager

Identity ManagerGuest Management

& Smart Connect

Compliance Manager & WIP

MC60005,000 APs50,000 clients

MC155030 APs500 clients

SA250

Q3! AP8323X3:3802.11ac

AP433 & AP332 3x3:3 MIMO, 3X3:2 MIMO802.11n

AP320 3x3:2 MIMO 802.11n

OAP3803x3:2 MIMO(Outdoor)

AP10002x2:2 MIMO802.11n

AP1102x2:2 MIMO802.11n

Oct 2012

System Director 5.3 operating systemOct 2012

Page 15: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Typisk konfiguration

Page 16: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

MC1500Qty   Product ID   Description  

Products

1   MC1500-XX  

Wireless Controller International (NOT FOR U.S.) with support for up to 5 APs. Platform can be upgraded to support up to 30 APs. Maximum throughput of 800 Mbps, and includes System Director software (release 5.3 or higher) with Air Traffic Control, element management system, wireless security, rogue AP detection. Supports N+1 Wireless Controller Redundancy. Add -xx country code suffix for power cord: CA (Canada), JP (Japan), UK (United Kingdom), EU (Europe). US/Canada power cord will be provided if no country code.

 

1   MC1500-SD-10AP  MC1500/MC1550 Software Upgrade License for 10 APs. Increases number of supported APs by 10 (MC1500 supports up to 30 APs). Note: Corresponding Support SKUs must be ordered for Software Upgrades and patches.

 

15   AP1020i   Dual radio 802.11a/b/g/n access point (AP) with integrated antennas providing 180 degrees coverage. AP can be mounted horizontally and vertically. Other optional mounting brackets and screws also available.

 

Support

1   S3-MC1500CO   7x24x365 TAC, L1, L2 & L3 Support. Includes SW upgrades, patches & Advanced Controller HW Replacement. Duration 3 years

 

1   S3-MC1500-SD-10AP   7x24x365 TAC, L1, L2 & L3 Support. Includes SW upgrades and patches on System Director OS. Duration 3 years

 

Training

           

Page 17: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

MC3200 redundant

Qty   Product ID   Description  

Products

2   MC3200-XX  

Wireless Controller International (NOT FOR U.S.) with ZERO AP licenses. Requires AP licenses to operate (part number starting with MCx000-SD). Platform can be upgraded to support up to 200 APs. Includes System Director software (5.0 or higher) with Air Traffic Control. Supports N+1 Wireless Controller Redundancy. Add -xx country code suffix for power cord: CA (Canada), JP (Japan), UK (United Kingdom), EU (Europe). US/Canada power cord will be provided if no country code.

 

1   MCx000-SD-100AP   MC3200/MC4200/MC6000 100 AP Software Upgrade License  

1   MC3200RN-1-MAX   Software Module to upgrade a N+1 Slave Wireless controller for N=1 only. Note: Does NOT include hardware, software only license. For support, use base controller options.

 

80   AP320i  Dual radio 802.11a/b/g/n access point (AP) with integrated antennas providing 180 degrees coverage. AP can be mounted horizontally (below the ceiling) and vertically (on a wall). Includes mounting bracket and screws.

 

Support

2   S3-MC3200CO   7x24x365 TAC, L1, L2 & L3 Support. Includes SW upgrades, patches & Advanced Controller HW Replacement. Duration 3 years.

 

1   S3-MCx000-SD-100AP   7x24x365 TAC, L1, L2 & L3 Software Support Only. No HW Support. Includes SW upgrades & patches. Duration 3 years

 

Training

           

Page 18: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

MC3200 og BOYD pakke

Qty   Product ID   Description  

Products

1   MC3200-50-XX  

Wireless Controller International (NOT FOR U.S.) with 50 AP licenses. Platform can be upgraded to support up to 200 APs. Includes System Director software (5.0 or higher) with Air Traffic Control. Supports N+1 Wireless Controller Redundancy. Add -xx country code suffix for power cord: CA (Canada), JP (Japan), UK (United Kingdom), EU (Europe). US/Canada power cord will be provided if no country code.

 

45   AP320i  Dual radio 802.11a/b/g/n access point (AP) with integrated antennas providing 180 degrees coverage. AP can be mounted horizontally (below the ceiling) and vertically (on a wall). Includes mounting bracket and screws.

 

1   IDM-VMW-BYOD  Small Network Bundle #1 - Virtual Service Appliance for Identity Manager, Guest Management License for up to 100 concurrent users, Smart Connect software license for 500 Active Users. 1 year software technical support included.

 

Support

1   S3-MC3200-50-CO   7x24x365 TAC, L1, L2 & L3 Support. Includes SW upgrades, patches & Advanced Controller HW Replacement. Duration 3 years.

 

Training

           

Page 19: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Større sager og tilbud

• Non Standard Pricing = NSP

– Priser via disti samt Eivind Lunde

• Deal registration via partner portalen.

– Denne kommer så til Eivind

• Konfigurationer typisk via Brian

Page 20: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Support generelt

• Support.merunetworks.com, skal have en konto

• Mail til [email protected] og der oprettes en ticket.

• Hvis hardware fejl sender support sagen videre til RMA

• Med controller replacement aftale sendes ny controller til kunde, hvorefter kunde sender den defekte retur.Der kommer en ”tom” controller som kunde/partner skal sætte i drift......

• På AP’er er der lifetime warrenty, med sende ind service, efter RMA godkendelse i support.

Page 21: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Slut

Brian Andersen

[email protected]

+45 20 70 27 22

Page 22: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

802.11ac standard

Page 23: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Indholdet I 802.11ac Standarden

• Very High Throughput (VHT) – op til 10x sammenlignet med .11n

– Bredere kanaler: 80MHz, 160MHz, 80+80MHz (4X)

– Ny modulation: 256-QAM (1.3X)

– Flere MIMO streams: op til 8 (2X)

• Veldefineret BeamForming

• Multi-User-MIMO (MU-MIMO) – Tillader samtidge transmissioner for op til fire stationer.

Page 24: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Data Rater I 802.11ac

20MHz 40MHz 80MHz 160MHz

1 stream 86.7 200 433.3 866.7

2 streams 173.3 400 866.7 1733.3

3 streams 288.9 600 1300 2340

4 streams 346.7 800 1733.3 3466.7

5 streams 433.3 1000 2166.7 4333.3

6 streams 577.8 1200 2340 5200

7 streams 606.7 1400 3033.3 4095

8 streams 693.3 1600 3466.7 6933.3

Forventet I første generation af chips

Rates in Mbps

Page 25: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

DFS

Not allowed in Europe

Bredere kanaler: 80Mhz og 160Mhz

Region DFS 40 MHz 80 MHz 160 MHz 80+80 MHz

USYes 8 4 1 2

No 4 2 - 1

EuropeYes 9 5 2 2

No 2 1 - -

Available Channels for 802.11ac

48IEEE channel #20 MHz40 MHz

80 MHz

5170MHz

5330MHz

5490MHz

5730MHz

5735MHz

5835MHz

160 MHz

36 40 44 6052 64 116

56 136

132

124

120

108

100

104

128

112

165

161

157

140

153

Weather radar

Not allowed in North America

149

144

Dynamic Frequency Selection

Page 26: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Beam Forming

• Sender signalet I retning af klienten. Giver øget dækning ved samme båndbredde

• Fordelen er når klienter befinder sig ved kanten af et AP’s dækning

• Specielt vigtigt for MU-MIMO

• Men men, der er begrænset effekt når AP og klient er tætte (RSSI > -60)

Meru 11ac

Klient 1

Klient 2

Standard omni-directional antenne

Page 27: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Design af Meru net

Page 28: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Configuration Topology

• Goal is to push wireless service parameters out to access points

• “Profiles” contain sets of configuration parameters

• The arrows show information flow

• Not necessarily a 1-to-1 mapping between profiles

Actually ESS-Interface Tables

Page 29: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Best Practice - kanal valg ,, Virtual Cell ol..

• Check at parent BSSID er ens pr. radio interface

– Via ESS-AP table

• Fra SD 5.3 kan vi på AP1000/AP332 vælge mellem 2 typer af Virtuel Cell:

– VC = shared BSSID (default setting)

– VP = privat BSSID

Page 30: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Check ap kommandoer m.m.

• Show ap-neighbor (4 kolonner L1,L2,L3,L4)

• Show ap-neighbor ap-id interface-id

– Show ap-neighbor 5 2 (ap-id 5 og interface 2 (5Ghz))

• Station dashboard: signal strength

• På radio diagnostics kan noice level ses

• Til sammen giver det SnR. Helst over 20. 25 ved voice

• Radio dashboard: channel utilization

• Packet loss / retry

Page 31: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Backup af controllere

• Show controller

• Copy running-config startup-config

• Copy running-config filnavn

• Filnavn = for eksempel dato-v-SD-version.cfg

• 091112-5096.cfg

• Copy running-config ftp://kunde-091112-5096.cfg

• Så kan vi begynde at opgradere

Page 32: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Opgradering af controllere

• Show controller

• Show flash (viser hvilke software image der er på controller)

• Copy ftp://bruger:pwd@ip-på-ftp/filnavn .

• Filnavn = meru-5.1-90-MC1500-rpm.tar

• Show flash

• Configure terminal -> Auto-ap-upgrade disable

• Upgrade controller 5.1-90 => reboot controller

• Upgrade ap same all

• Configure terminal -> Auto-ap-upgrade enable

Page 33: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Support og fejlsøgning

Page 34: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Support generelt

• http://support.merunetworks.com , også meget gerne på vores partner portal: http://www.merunetworks.com/partners/partners.html

•Mail til [email protected] og der oprettes en ticket.

• Hvis hardware fejl sender support sagen videre til RMA

• Med controller replacement aftale sendes ny controller til kunde, hvorefter kunde sender den defekte retur.Der kommer en ”tom” controller som kunde/partner skal sætte i drift......

• På AP’er er der lifetime warrenty, med sende ind service, efter RMA godkendelse i support.

Page 35: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Recommended SD Matrix

Page 36: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Recommended SD Matrix

Page 37: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Stages of Connection

Page 38: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

What are We Trying to Do?

SwitchGateway/Firewall

NTPRADIUS

Switch

SIPDHCPDNS

Page 39: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

SD - Station Dashboard

Page 40: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

SD - Station Logging

1. 40

Page 41: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

SD - Interactive Station Logging

• Used to track stations

• Needs to be enabled in 5.2 and beyond

• Station logs sent to NM without being enabled

totoro(15)# station-logInteractive Per-Station Event Logging Shell (enter "help" for help)By default logging is Disabled (enter "enable" to Enable logging)station-log> ?

Interactive Event Logging Shell Usage:

help, ? This help messageexit, quit Exit/Quit

enable Enable logging of events to consoledisable Disable logging of events to console

Page 42: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

SD – Radio Dashboard

• Check Retry and Loss

• Check Ambient Channel Noise

• Check Association count

• Check Channel Utilization

• Check Management Overhead

Page 43: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

SD - Filtering Packets

• The built-in ethereal sniffer lets you filter packets.

• Syntax:

– -R primitive[[equivalence value]

– No spaces are allowed in filter specification

– Equivalences are: == (equal to), != (not equal to)

• Capture only SIP packets:

– name# capture-packets -R sip

• Capture traffic from an IP address:

– name# capture-packets -R ip.addr==192.168.10.50

• For more complex filtering, capture files to laptop and use Wireshark

Page 44: Meru opdatering Connection, Marts 2013 Brian Andersen, Systems Engineer

Slut

Brian Andersen

[email protected]

+45 20 70 27 22