
1-11
Cisco Wireless LAN Solution Product Guide
OL-7955-01
Chapter 1 Overview
External DHCP Servers
External DHCP Servers
The operating system is designed to appear as a DHCP Relay to the network and as a DHCP Server to
clients with industry-standard external DHCP Servers that support DHCP Relay. This means that each
Cisco Wireless LAN Controller appears as a DHCP Relay agent to the DHCP Server. This also means
that the Cisco Wireless LAN Controller appears as a DHCP Server at the virtual IP Address to wireless
clients.
Because the Cisco Wireless LAN Controller captures the client IP Address obtained from a DHCP
Server, it maintains the same IP Address for that client during same-Cisco Wireless LAN Controller,
inter-Cisco Wireless LAN Controller, and inter-subnet client roaming.
Per-Wireless LAN Assignment
All Cisco WLAN Solution wireless LANs can be configured to use the same or different DHCP Servers,
or no DHCP Server. This allows operators considerable flexibility in configuring their Wireless LANs,
as further described in the “Cisco WLAN Solution Wireless LANs” section on page 1-14.
Note that Cisco WLAN Solution wireless LANs that support management over wireless must allow the
management (device servicing) clients to obtain an IP Address from a DHCP Server. See the “Using
Management over Wireless” section on page 3-14 for instructions on configuring management over
wireless.
Per-Interface Assignment
You can assign DHCP servers for individual interfaces.
• The Layer 2 management interface can be configured for a primary and secondary DHCP server. See
the “About the Management Interface” section on page 1-22 for more information on the
management interface.
• The Layer 3 AP-Manager interface can be configured for a primary and secondary DHCP server.
See the “AP-Manager Interface” section on page 1-23 for more information on the AP-Manager
interface.
• Each of the operator-defined interfaces can be configured for a primary and secondary DHCP server.
See the “Operator-Defined Interfaces” section on page 1-24 for more information on
operator-defined interfaces.
• The virtual interface does not use DHCP servers. See the “Virtual Interface” section on page 1-24
for more information on virtual interfaces.
• The service-port interface can be configured to enable or disable DHCP servers. See the “Service
Port” section on page 1-25 for more information on service-port interfaces.
Security Considerations
For enhanced security, it is recommended that operators require all clients to obtain their IP Addresses
from a DHCP server. To enforce this requirement, all wireless LANs can be configured with a DHCP
Required setting and a valid DHCP Server IP Address, which disallows client static IP Addresses. If a
client associating with a wireless LAN with DHCP Required set does not obtain its IP Address from the
designated DHCP Server, it is not allowed access to any network services.
Comentarios a estos manuales