+ All Categories
Home > Documents > Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing...

Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing...

Date post: 25-Mar-2020
Category:
Upload: others
View: 18 times
Download: 0 times
Share this document with a friend
14
Cisco Systems, Inc. www.cisco.com 1 Cisco Catalyst 9800-L Wireless Controller Deployment Guide First Published: November 15, 2019 Table of Contents Introduction .................................................................................................................... 2 Prerequisites ................................................................................................................... 2 Requirements .............................................................................................................. 2 Components used ........................................................................................................ 2 Conventions ................................................................................................................. 2 Product Overview ............................................................................................................ 2 Platform Support ............................................................................................................. 5 Image Specifications ........................................................................................................ 5 Platform Components ...................................................................................................... 6 Front panel View .......................................................................................................... 6 Physical Ports Supported .............................................................................................. 6 Data Ports .................................................................................................................... 6 Supported SFP and SFP+ Modules ................................................................................. 8 Management LEDs and Behavior .................................................................................. 8 Rear Panel View ..........................................................................................................10 Fans ............................................................................................................................10 High Availability with SSO ...............................................................................................10 SSO Prerequisites ........................................................................................................11 Licensing ........................................................................................................................11 Performance License on 9800-L .......................................................................................12 Summary ........................................................................................................................12
Transcript
Page 1: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Systems, Inc. www.cisco.com

1

Cisco Catalyst 9800-L Wireless Controller Deployment Guide First Published: November 15, 2019

Table of Contents

Introduction .................................................................................................................... 2

Prerequisites ................................................................................................................... 2

Requirements .............................................................................................................. 2

Components used ........................................................................................................ 2

Conventions ................................................................................................................. 2

Product Overview ............................................................................................................ 2

Platform Support ............................................................................................................. 5

Image Specifications ........................................................................................................ 5

Platform Components ...................................................................................................... 6

Front panel View .......................................................................................................... 6

Physical Ports Supported .............................................................................................. 6

Data Ports .................................................................................................................... 6

Supported SFP and SFP+ Modules ................................................................................. 8

Management LEDs and Behavior .................................................................................. 8

Rear Panel View ..........................................................................................................10

Fans ............................................................................................................................10

High Availability with SSO ...............................................................................................10

SSO Prerequisites ........................................................................................................11

Licensing ........................................................................................................................11

Performance License on 9800-L .......................................................................................12

Summary ........................................................................................................................12

Page 2: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Catalyst 9800-L Wireless Controller Deployment Guide

Introduction

2

Introduction This document provides an overview of the Cisco® Catalyst® 9800-L Wireless Controllers and their deployment within the Cisco Digital Network Architecture.

Prerequisites

Requirements

There are no specific requirements for this document.

Components used

This document is not restricted to specific software and hardware versions. The information in this document was created from the devices in a specific lab environment. All of the devices used in this document started with a cleared (default) configuration. If your network is live, make sure you understand the potential impact of any command.

Conventions

Refer to Cisco Technical Tips Conventions for more information on document conventions.

Product Overview The Cisco Catalyst 9800-L, a next-generation wireless LAN controller for the midmarket segment, is built from the ground up for intent-based networking and runs Cisco IOS® XE Software. It combines over 15 years of RF innovation from our Cisco Aironet® portfolio and offers innovative wireless technologies, such as Cisco CleanAir® and Intelligent Capture, as well as a powerful networking OS that has been modernized with a modular design to give IT greater availability, programmability, and scale. The Cisco Catalyst 9800-L Wireless Controller is an integral part of the intent-based networking portfolio. It provides sup-port for 5-Gbps throughput and up to 250 access points and 5000 clients to help ensure high performance and scale for midmarket business-critical networks.

Figure 1 Cisco Catalyst 9800-L Wireless Controller

Page 3: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Catalyst 9800-L Wireless Controller Deployment Guide

Product Overview

3

Tables 1 and 2 capture some of the key specifications and attributes of the Cisco Catalyst 9800-L platform.

Table 1 Key Hardware Specifications

Chassis Height 1 Rack Unit (RU)

Throughput 5 Gbps

Maximum AP Support 250

Maximum Client Support 5000

Data Ports 2x 10G/Multigigabit copper or 2x 10G/Multigigabit fiber, 4x 2.5G/1G copper

Console Port Dual RJ-45 + micro-B USB console port

USB Port Single USB 3.0

Environmental Specifications

Operating temperature: 32° to 113°F (0° to 45°C) Note: The maximum temperature is derated by 1.0°C for every 1000 ft (305 m) of altitude above sea level. Nonoperating temperature: –13° to 158°F (–25° to 70°C) Operating humidity: 10% to 95% noncondensing Nonoperating humidity: 0% to 95% (noncondensing) Altitude:

■ Operating altitude: 0 to 3000 m (0 to 10,000 ft)

■ Nonoperating altitude: 0 to 12,192 m (0 to 40,000 ft)

Electrical input: ■ AC input frequency range: 47 to 63 Hz

■ AC input range: 90 to 264 VAC

Maximum power: ■ 9800-L-C maximum measured power: 86.9W (with 4.5W USB

load)

■ 9800-L-F maximum measured power: 84.5W (assumes 2pc 2.5W SFP and with 4.5W USB load)

Maximum heat dissipation: ■ 9800-L-C: 296.4 Btu/hr (with 4.5W USB load)

■ 9800-L-F: 288.2 Btu/hr (assumes 2pc 2.5W SFP and with 4.5W USB load)

Sound power level measure: ■ Normal: 40 dBA at 25C

■ Maximum: 42.9 dBA at 40C

Power adapter: ■ Input power: 100 to 240 VAC, 50/60 Hz

Page 4: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Catalyst 9800-L Wireless Controller Deployment Guide

Product Overview

4

Power 79.3W

Dimensions 1.58 x 8.50 x 9.06 in 4.01 x 21.59 x 23.01 cm

Weight C9800-L-C: 3.95 lb. (1.79 kg) C9800-L-F: 4.01 lb. (1.82 kg)

Table 2 Key Attributes Deployment modes Centralized (local), Distributed Branch (Cisco FlexConnect®), SD-Access

Wireless (fabric)

Maximum Scale 250 APs 5000 Clients

Connectivity 2x 10G/Multigigabit copper or 2x 10G/Multigigabit fiber 4x 2.5G/1G copper

Maximum number of rogue APs man-agement

1000

Maximum number of rogue client management

2500

Maximum number of local users 4000

Maximum number of RFIDs 5000

Maximum VLANs supported 4096

Maximum WLANs supported 4096

Fast secure roaming clients/maximum pairwise master key (PMK) cache en-tries

10,000

Max number of multicast groups 4096

Max number of interface groups 100

Max number of interfaces per inter-face group

64

Max number of mobility groups 72

Max number of guest anchor tunnels 72

Max number of access control lists (ACLs)

128

Maximum number of sleeping clients 5000

Maximum number of web-authentica-tion clients

5000

Page 5: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Catalyst 9800-L Wireless Controller Deployment Guide

Platform Support

5

Maximum number of APs per radio resource management (RRM) group

1000

Maximum AP join profiles 250

Maximum flex profiles 250

Maximum policy profiles 4096

Maximum RF profiles 500

Maximum site tags 250

Maximum RF tags 250

Maximum policy tags 4096

Maximum number of Application Visi-bility and Control (AVC) flows

80,000

Maximum number of RADIUS servers 17

Maximum number of scalable group tags (SGTs)

256

Maximum number of unique security group ACLs (SGACLs)

64

Maximum number of access control entries (ACEs) per SGACL

128

Platform Support The Cisco Catalyst 9800-L Wireless Controller is available in two SKUs as an appliance:

■ Copper model: C98000-L-C-K9

■ Fiber model: C9800-L-F-K9

Both SKUs support the following 802.11ax and 802.11ac Wave 1 and Wave 2 access point models:

■ Cisco Catalyst 9115AX, 9117AX, and 9120AX Series

■ Cisco Aironet 1800 Series, 2800, 3800,4800, 1540 Series, and 1560 Series

■ Cisco Aironet 1700, 2700, 3700, and 1570 Series

Image Specifications The Cisco Catalyst 9800-L Wireless Controller supports all of the features of Cisco Catalyst Wireless software release 16.12.

Page 6: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Catalyst 9800-L Wireless Controller Deployment Guide

Platform Components

6

Platform Components

Front panel View

The Cisco Catalyst 9800-L Wireless Controller supports LED indicators, USB ports, console ports, 4x 2.5G/1G RJ-45 ports, and a 10G/Multigigabit port on the front panel.

Figure 2 Front Panel

Physical Ports Supported

Figure 3 Physical Ports Supported

Data Ports

■ 2x 10G/Multigigabit ports that can be auto-negotiated to 1G, 2.5G, 5G, and 10G speeds.

■ 4x 2.5G/Multigigabit ports that can be auto-negotiated to 1G or 2.5G speeds.

■ Ports 0 and 1 are 10G/Multigigabit copper or 10G/1G fiber. Ports 0, 1, 2, and 3 are 2.5G/1G copper.

■ Service port: 1x GE port.

■ High availability (HA) port: 1x GE port.

With this form factor, two controllers can be placed in the same rack to conserve rack space, as shown in the figure below.

Page 7: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Catalyst 9800-L Wireless Controller Deployment Guide

Platform Components

7

Page 8: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Catalyst 9800-L Wireless Controller Deployment Guide

Platform Components

8

Supported SFP and SFP+ Modules

Network ports for this controller support the following Cisco SFP and SFP+ modules:

SFP

■ GLC-BX-D

■ GLC-BX-U

■ GLC-SX-MMD

■ GLC-ZX-SMD

SFP+

■ SFP-10G-SR

■ SFP-10G-SR-X

■ SFP-H10GB-ACU7M

■ SFP-H10GB-ACU10M

Management LEDs and Behavior

Figure 4 shows the LEDs on the front panel of the Cisco Catalyst 9800-L Wireless Controller:

1. RP ( Redundancy Port ) LED

2. SP ( Service Port ) LED

3. System LED

4. Alarm LED

5. HA ( High Availability ) LED

Figure 4 Front Panel LEDs

Page 9: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Catalyst 9800-L Wireless Controller Deployment Guide

Platform Components

9

Table 3 LED Descriptions LED label Description

Power Green when on, unlit when off.

USB Green when connected and powered on, unlit when off.

1G port Solid green when linked, blinking green with activity, and unlit when off.

Multigigabit port Solid green when linked, blinking green with activity, and unlit when off.

RP Solid Green when HA Port paired with peer controller LED Off when HA disabled

SP Solid Green when Linked, Blinking green with activity, and unlit when off

Table 4 System LED Descriptions

Color Description

Off System not receiving power. System crash Firmware upgrade Temperature error

Blinking Green System boot

Red Controller error. For example, an internal voltage error exists.

Table 5 Alarm LED Descriptions Color Description

Blinking Green Controller image upgrade

Amber Controller status activity, such as firmware upgrade

Red Controller error. For example, a temperature error exists.

Table 6 High Availability LED

State Status

HA disabled Off

HA active On

HA Hot Standby Slow Blink

Page 10: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Catalyst 9800-L Wireless Controller Deployment Guide

High Availability with SSO

10

Rear Panel View

The rear of the chassis supports: 1. 6-pin power connector for an external 12VDC/110W power adapter (C9800-AC-PWR).

2. Kensington lock feature

Figure 5 shows the rear of the 9800-L controller.

Figure 5 Rear Panel View

Fans

An internal blower provides forced-air cooling. Fan control is based on a simple linear, closed-loop, continuously variable voltage circuit that monitors the CPU temperature and external heatsink temperature. Built-in temperature hysteresis eliminates needless fan cycling. Airflow is from front I/O side to the rear of the chassis. Do not block or obstruct airflow.

High Availability with SSO The 9800-L supports full access point and client Stateful Switchover (SSO). Client SSO is supported for clients that have al-ready completed the authentication and Dynamic Host Configuration Protocol (DHCP) phase and have started passing traf-fic. With client SSO, a client's information is synced to the standby wireless controller when the client associates to the wireless controller or the client’s parameters change. Fully authenticated clients—the ones in the run state—are synced to the standby, thus avoiding client reassociation on switchover and making the failover seamless for the APs as well as for the clients. This process results in zero client service downtime and zero SSID outage. The overall goal for the addition of AP and client SSO support to the Cisco Catalyst 9800-L Wireless Controller is to reduce major downtime in wireless net-works due to failure conditions that may occur due to box failover, network failover, or a power outage at the primary site.

Figure 6 High Availability with SSO

Page 11: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Catalyst 9800-L Wireless Controller Deployment Guide

Licensing

11

SSO Prerequisites

■ An HA pair can be formed only between two wireless controllers of the same form factor.

■ Both controllers must be running the same software version in order to form an HA pair.

■ Maximum rendezvous point (RP) link latency is 80 milliseconds round-trip time (RTT), minimum bandwidth is 60 Mbps, and minimum maximum transmission unit (MTU) is 1500.

Licensing The Cisco Catalyst 9800-L supports Smart Licensing (SL) as the default mode. The functionality is in line with the Cisco Cata-lyst 9800 Series Wireless Controller platforms. License registration is supported via Cisco Smart Software, and the various supported by the Smart licensing component for connecting to the Smart Licensing Server are supported. Specific License Registration (SLR) is also supported. Four types of licensing are available: Network Essentials with an add-on of Cisco DNA Essentials, and Network Advantage with an add-on of Cisco DNA Advantage.

Page 12: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Catalyst 9800-L Wireless Controller Deployment Guide

Performance License on 9800-L

12

Performance License on 9800-L

Figure 7 Performance License on 9800-L

(*) Max throughput is calculated with large packets, with IMIX traffic and small packets the numbers will be lower. The 9800-L controller can be upgraded in scale and capacity using a performance license with Release 17.1. The benefits are that the same device can scale up to higher number of APs and clients, higher throughput, and complete investment protection with the ability to upgrade at any point without having to buy new hardware. This license is not tied to the 9800-L hardware so it can be used by any 9800-L controller on a first come first basis.

Table 7 Scale Comparison on Base 9800-L and 9800-L with Performance License

Features 9800-L 9800-L with Performance License

APs Supported 250 500

Clients Supported 5000 10000

Throughput with IMIX 5 Gbps 5 Gbps

Throughput without IMIX *With 1374 Byte size of packet

5 Gbps 10 Gbps

In order to enable the license on the controller, execute the following command: Device(config)#license wireless high-performance

Note: Need a reboot of the controller to get the performance license to take effect. The license wireless high-performance CLI is synced to the standby controller. However, the standby control-

ler also needs to have a performance license to get the upgraded capacity. The license can be released back to the license pool by un-configuring the high-performance license. This will release the license to the license pool so that another controller can make use of it, if needed. In the case of RMA, the customer should call TAC to remove the product instances from customer virtual account so that all the licenses used by the controller will be returned to license pool and can be used on the new hardware.

Summary The Cisco Catalyst 9800-L next-generation controller for the midmarket segment delivers a modernized modular OS that supports IT simplicity and robust security. With flexible connectivity to uplinks with copper and fiber, it offers investment protection into the future. It is open and programmable with standards-based APIs that make bridging IT processes seam-less. With support for high availability and seamless software updates, it is ideal for mission-critical networks with up to

Page 13: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Catalyst 9800-L Wireless Controller Deployment Guide

Summary

13

250 APs. It supports all deployment modes and seamless roaming with existing AireOS platforms as well, for a seamless migration.

Page 14: Cisco Catalyst 9800-L Wireless Controller Deployment Guide · High availability with SSO Licensing Summary Data port behavior: • If the 10G/Multigigabit copper port (or 10G/1G fiber

Cisco Catalyst 9800-L Wireless Controller Deployment Guide

Summary

14

Legal Information

THE SPECIFICATIONS AND INFORMATION REGARDING THE PRODUCTS IN THIS MANUAL ARE SUBJECT TO CHANGE WITH-OUT NOTICE. ALL STATEMENTS, INFORMATION, AND RECOMMENDATIONS IN THIS MANUAL ARE BELIEVED TO BE ACCU-RATE BUT ARE PRESENTED WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED. USERS MUST TAKE FULL RESPONSI-BILITY FOR THEIR APPLICATION OF ANY PRODUCTS. THE SOFTWARE LICENSE AND LIMITED WARRANTY FOR THE ACCOMPANYING PRODUCT ARE SET FORTH IN THE INFOR-MATION PACKET THAT SHIPPED WITH THE PRODUCT AND ARE INCORPORATED HEREIN BY THIS REFERENCE. IF YOU ARE UNABLE TO LOCATE THE SOFTWARE LICENSE OR LIMITED WARRANTY, CONTACT YOUR CISCO REPRESENTATIVE FOR A COPY. The Cisco implementation of TCP header compression is an adaptation of a program developed by the University of Califor-nia, Berkeley (UCB) as part of UCB’s public domain version of the UNIX operating system. All rights reserved. Copyright © 1981, Regents of the University of California. NOTWITHSTANDING ANY OTHER WARRANTY HEREIN, ALL DOCUMENT FILES AND SOFTWARE OF THESE SUPPLIERS ARE PROVIDED “AS IS” WITH ALL FAULTS. CISCO AND THE ABOVE-NAMED SUPPLIERS DISCLAIM ALL WARRANTIES, EXPRESSED OR IMPLIED, INCLUDING, WITHOUT LIMITATION, THOSE OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OR ARISING FROM A COURSE OF DEALING, USAGE, OR TRADE PRACTICE. IN NO EVENT SHALL CISCO OR ITS SUPPLIERS BE LIABLE FOR ANY INDIRECT, SPECIAL, CONSEQUENTIAL, OR INCIDENTAL DAMAGES, INCLUDING, WITHOUT LIMITATION, LOST PROFITS OR LOSS OR DAMAGE TO DATA ARISING OUT OF THE USE OR INABILITY TO USE THIS MANUAL, EVEN IF CISCO OR ITS SUPPLIERS HAVE BEEN ADVISED OF THE POSSIBILITY OF SUCH DAM-AGES. Any Internet Protocol (IP) addresses and phone numbers used in this document are not intended to be actual addresses and phone numbers. Any examples, command display output, network topology diagrams, and other figures included in the document are shown for illustrative purposes only. Any use of actual IP addresses or phone numbers in illustrative con-tent is unintentional and coincidental. All printed copies and duplicate soft copies are considered un-Controlled copies and the original on-line version should be referred to for latest version. Cisco has more than 200 offices worldwide. Addresses, phone numbers, and fax numbers are listed on the Cisco website at www.cisco.com/go/offices.

Cisco Trademark

Cisco and the Cisco logo are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S. and other coun-tries. To view a list of Cisco trademarks, go to this URL: www.cisco.com/go/trademarks. Third-party trademarks mentioned are the property of their respective owners. The use of the word partner does not imply a partnership relationship be-tween Cisco and any other company. (1110R)

Cisco Copyright

© 2019-2020 Cisco Systems, Inc. All rights reserved.


Recommended